How to enable multi-factor authentication (MFA)?
Multi-factor authentication (MFA)
Multi-factor authentication strengthens your account security by adding a temporary code (TOTP) to your password. It can be enabled by each user individually or made mandatory for the entire company by an administrator.
Enable MFA for the entire company (Admin)
- Go to Settings > Security section.
- Enable the "MFA required" toggle.
Once enabled, all users will be prompted to set up MFA at their next login.
Set up MFA as a user
- Log in to Spacefill. If MFA is required or if you wish to enable it, a QR code will appear.
- Open your authenticator app (Google Authenticator, Microsoft Authenticator, 2FAS, etc.).
- Scan the QR code or enter the secret key manually in the app.
- Enter the 6-digit code generated by the app to confirm the setup.
Note: codes are valid for 30 seconds. If MFA is mandatory, you can postpone setup for 30 days, after which Spacefill enforces it automatically.
Admin features related to MFA
As an administrator, you can:
- View the MFA status of each user: Enabled, Pending activation, or Skipped
- Reset a user's MFA (useful if the user changes their phone) from the team member profile