Decloak is an AI-powered web security intelligence platform that scans a site's HTTP/TLS posture, JavaScript, and third-party scripts to produce a report anyone can read. This guide is part of Decloak's library of practical, source-backed security guidance.
In this guide
- Key takeaways
- What is the Lovable sign - up URL?
- Which authentication methods does Lovable support?
- Who is eligible to create a Lovable account?
- What happens after I complete the sign - up?
- How to sign up using Single - Sign - On (SAML or OIDC)?
- Common sign - up issues and how to fix them
- How to verify your newly created workspace and credit allowance?
- Summary
Key takeaways
- Lovable sign - up is available at https://lovable.dev/signup.
- You can register with email + password or social providers (Google, GitHub, Apple) and SSO (SAML or OIDC) for Business/Enterprise plans.
- Anyone with a valid email can join for free; you must be 18 years old or have parental permission.
- After sign - up a personal workspace is provisioned automatically with a 5 - credit daily allowance (up to 30 credits per month).
What is the Lovable sign - up URL?
The Lovable registration page is https://lovable.dev/signup. Opening this URL in a browser displays the sign - up form and the list of supported authentication methods.
Which authentication methods does Lovable support?
Lovable lets new users choose from:
- Email and password (standard form fields).
- Google OAuth.
- GitHub OAuth.
- Apple Sign - In.
- For Business or Enterprise plans, Single - Sign - On via SAML or OIDC is also available. Each option redirects you to the provider’s login screen and returns a token that Lovable validates before creating the account.
Who is eligible to create a Lovable account?
Anyone with a valid email address can register for the free tier. The Terms of Service require that the user be at least 18 years old, or have permission from a parent or guardian if younger. No credit - card information is needed for the free plan.
What happens after I complete the sign - up?
After you submit the registration form, Lovable automatically:
- Creates your first personal workspace on the free plan.
- Grants a daily allowance of 5 credits, which can be used up to 30 credits per month.
- Sends you to the dashboard where you can start building apps immediately. The workspace and credit limits are visible in the dashboard’s usage panel.
How to sign up using Single - Sign - On (SAML or OIDC)?
For Business or Enterprise customers, the sign - up page includes a "Sign up with SSO" button. Clicking it opens a SAML or OIDC flow that your identity provider (IdP) must support. After successful authentication, Lovable creates the account linked to your IdP’s user identifier.
Common sign - up issues and how to fix them
- Forgot password: Use the "Forgot password?" link on the sign - up page to receive a reset email.
- Social login blocked: Ensure third - party cookies are enabled in your browser, otherwise the OAuth redirect may fail.
- SSO configuration error: Verify that your IdP’s metadata URL and certificate are correctly entered in the Lovable admin console before attempting sign - up.
How to verify your newly created workspace and credit allowance?
Log in after registration and navigate to the dashboard. The left - hand sidebar shows the workspace name, and the top - right usage badge displays "5 credits used today" (or the remaining balance). You can also view a detailed usage log under the "Credits" section.
Summary
Creating a Lovable account is straightforward: visit the sign - up URL, choose an authentication method, meet the age eligibility, and you’ll receive an automatically provisioned workspace with a daily credit allowance. Use the dashboard to monitor credits and start building right away.
Related guides
How to Build Continuous Web - Security Scans with Scheduled Decloak Checks and Ticket Automation
Learn how to schedule Decloak scans via the REST API, compare results across runs, and push new or regressed findings to Jira or Linear automatically.
How can Decloak give auditor - ready proof for SOC 2 and ISO 27001 without weeks of manual work?
Decloak’s free and paid scans generate evidence packages and framework mappings that satisfy SOC 2 and ISO 27001 auditors quickly and automatically.
How can I quickly scan my single-page app for exposed secrets and vulnerable third - party scripts?
Use Decloak’s free 15 - second scan to detect hard - coded keys, outdated libraries, missing SRI and mixed content in a single - page app before a formal audit.