Security

Password policy, session timeouts, and multi-factor authentication readiness.

Password Policy
Applied when a user sets or changes their password.

Require uppercase letter

Require lowercase letter

Require a number

Require a special character

Session Management
Leave a timeout blank to fall back to the platform's JWT expiry defaults.
Multi-Factor Authentication
Policy readiness only — the platform does not yet enforce an MFA challenge during login. This records the organization's intent so MFA can be enabled without further configuration migration once implemented.

Require MFA for all users