Enabling MFA
MFA can be configured in two ways: Per user — Open the user’s profile via Team Members → Edit. Toggle MFA on for that individual. The user will be required to verify via OTP on their next login. Globally for all users — In publisher settings, enable the Enforce MFA option. This applies MFA to every user under that publisher immediately.OTP mechanics
| Detail | Value |
|---|---|
| Code length | 6 digits |
| Code validity | 5 minutes |
| Max wrong attempts | 5 |
| Lockout duration | 15 minutes |
Admin password override
Publishers Admins, Super Admins, and any custom role with the Manage Members permission can set a new password for any team member directly from the dashboard — without needing the member’s current password. Where to find it: Go to Team Members → Edit for the relevant member. Scroll to the Security section and click Manage Password to expand the form. How it works:- Enter the new password and confirm it.
- A confirmation dialog shows the member’s name and what will happen — click Confirm to proceed.
- On success, the member receives an email notifying them their password was changed by an admin.
- The member’s existing sessions remain active, but they must use the new password on their next login.
The Security section is only visible to members who have the Manage Members permission. It is not rendered for other roles.