Security
Password policy, session timeouts, and multi-factor authentication readiness.
Password Policy
Applied when a user sets or changes their password.
Require uppercase letter
Require lowercase letter
Require a number
Require a special character
Session Management
Leave a timeout blank to fall back to the platform's JWT expiry defaults.
Multi-Factor Authentication
Policy readiness only — the platform does not yet enforce an MFA challenge during login. This records the organization's intent so MFA can be enabled without further configuration migration once implemented.
Require MFA for all users
