MFA
Two-factor authentication (TOTP) is available for all accounts. Enroll once and every future sign-in challenges for the 6-digit code.
Enrolling
Go to /settings/mfa. Scan the QR code with your authenticator (Apple Passwords, 1Password, Bitwarden, Google Authenticator, or anything else that supports TOTP), enter the current 6-digit code to confirm, and you're done.
Recovery
Lost your authenticator? Email support@baseframelabs.com from the address on your account. We will verify ownership before disabling MFA. There are no recovery codes today; that's a planned addition.
When MFA is enforced
- Every sign-in for an enrolled account.
- The admin console refuses to load at single-factor strength when MFA is enrolled.
For everyday workspace use, MFA is optional but recommended if your workspace handles production API keys.