Last verified May 2026
Every extra field is a tax on your conversion rate. Pay it on purpose.
signupdrop.com · 2026 edition · last verified May 2026
Signup drop-off is not a form problem. It is a decision-making problem.
Every team - product, legal, security, marketing - defends the field it added, while the drop-off rate compounds quietly. This site collects the research, runs the math, and hands you the memo.
Sourced from Baymard Institute, Nielsen Norman Group, Luke Wroblewski, Segment, Statsig, Auth0, NIST SP 800-63B, and seven published company case studies. Every number cited.
SIGNUP FLOW COST CALCULATOR
ANNUAL SIGNUPS
27,000
PER-EXTRA-FIELD COST/YR
$3.8M
POTENTIAL ANNUAL SAVINGS
$13.4M
by applying research-backed friction reduction (+28pp)
What signup drop-off is
Signup drop-off is the cumulative percentage of users who start a signup flow and do not complete it. A product with 10,000 monthly signup starts and a 40% completion rate is dropping 6,000 potential customers every month. Each one cost something to acquire.
This is distinct from onboarding drop-off (what happens after signup, during first-run activation) and from checkout abandonment (the ecommerce equivalent). The remedies are different. This site focuses on the signup layer: the form, the auth method, the verification step, and the password rules.
Signup drop-off
User starts the form, does not complete it
Onboarding drop-off
User signs up, does not reach first-run activation
Checkout abandonment
Ecommerce equivalent - payment, not registration
Churn
Active user stops using the product
The research, in one glance
60-80%
Median SaaS signup drop-off
Segment 2024, Statsig benchmarks
~10pp
Average drop per additional field
Baymard aggregated + Formisimo/Zuko
+15-25pp
OAuth lift over email+password
Segment 2023, Auth0 case data
Six common killers
Each pattern has a named drop-off rate in the research literature. Each is preventable.
Too many fields
Apply the Baymard 8pp rule: every field beyond 2 costs you.
Required phone number
Ask after signup, when there is a real reason.
Hard email-verify gate
Verify-later recovers 8-20pp with minimal abuse increase.
Captcha friction
Switch to Cloudflare Turnstile or reCAPTCHA v3 invisible.
NIST-violating password rules
Length beats complexity. NIST 800-63B says so explicitly.
Country dropdown defaulting USA
IP-based defaulting with manual override eliminates 1-3pp drop.
Case studies at a glance
Seven companies with documented, cited signup flow decisions.
Dropbox
Referral loop conversion lift
Slack
No OAuth, no password on creation
Stripe
Deliberate friction as trust signal
Notion
Primary signup method
Shopify
Progressive profiling default
Airbnb
App Store Apple Sign In compliance
Figma
Personalisation at signup
Who this site is for
Growth PMs
The calculator, per-field table, and case studies to build the case for cutting fields.
CRO consultants
The citations and field-by-field table to put in client decks without a Baymard paywall.
Product designers
Wroblewski, NN/g, mobile-vs-desktop, and password strength UI to back the design argument.
Founders
NIST guidance, OAuth-vs-email, magic-link, and case studies to get the first signup flow right.
We are not anti-field. We are anti-unexamined-field.
B2B enterprise, financial services, healthcare, and regulated industries all legitimately require more friction. Anti-fraud, KYC, HIPAA compliance, and enterprise SSO provisioning all have valid reasons to add fields and verification steps. This site helps you decide which friction earns its keep and which is the default everyone forgot to challenge.
When friction is good: B2B vs B2C norms →DIGITAL SIGNET CONSULTING
Need an outside eye on your signup funnel?
Digital Signet runs two-week signup-funnel audits. We map the drop-off at every step, attach the dollar cost to each field using the same framework as the calculator above, and deliver the memo your growth team will sign.
See the engagement formatThe product-ops editorial series
Six publications covering the six main leaks in a SaaS business.
featurebloat.com
Why your signup got long in the first place: every team adds a field. Product layer.
codesmellcost.com
Engineering quality correlates with auth-stack friction. Engineering layer.
contextcost.com
Context-switching cost for users and operators. Cross-link for progressive profiling.
renewaltrap.com
The retention-side twin. signupdrop is the front door, renewaltrap is the exit.
billcreep.com
Pricing page drop-off and billing friction. The billing layer.
signupdrop.com
You are here. The signup and auth layer.
Frequently asked questions
What is signup drop-off?+
The percentage of users who begin a signup flow but do not complete it. SaaS median is 60-80% drop-off per Segment 2024 and Statsig benchmarks, meaning fewer than half who start typically finish.
What is a typical signup conversion rate?+
Email plus password: 35-55%. Google OAuth: 55-75%. Magic link: 70-85%. B2B enterprise is lower due to required qualification fields. Mobile is 5-15pp lower than desktop. Source: Segment, Statsig, Auth0.
How many fields should a signup form have?+
B2C: 1-3 fields. B2B SaaS: 3-6 is defensible. Every field beyond 2 costs approximately 8-10pp of conversion per Baymard research. The most common unnecessary fields are confirm-password, required phone, and required company at signup.
Does OAuth increase signup conversion?+
Yes, typically +10-25pp for B2C and +8-15pp for B2B per Segment 2023. But Apple Sign In hides the user's email, corporate OAuth can be blocked by admins, and OAuth-only accounts have no fallback login path if the provider has an outage.
Should I use a magic link instead of a password?+
Magic links lift signup conversion +15-30pp per Auth0 case data and Slack and Notion's disclosed patterns. But they slow repeat login since users must check email every session. The hybrid pattern - magic link on first signup, optional password or passkey set later - captures the best of both.
When is friction good at signup?+
Financial services (KYC), healthcare (HIPAA), enterprise SaaS (SSO provisioning), and anti-abuse contexts all legitimately require more verification. Friction earns its keep when the cost of a bad actor through the door exceeds the cost of a legitimate user bouncing.