Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Two-Factor Authentication for New Account Sign-ups #1060

Open
nickaddy opened this issue Sep 19, 2023 · 1 comment
Open

Two-Factor Authentication for New Account Sign-ups #1060

nickaddy opened this issue Sep 19, 2023 · 1 comment

Comments

@nickaddy
Copy link
Contributor

nickaddy commented Sep 19, 2023

[History/Context]
Two-factor authentication (2FA) is not currently enforced for new candidate account sign-ups, meaning that it would be easy to set up an account with a mistyped email address.

User Story
As a user, when I create a new account, I would like a verification email be sent to the email address provided so that my email address is verified and for added security.

Options
What is the best mechanism - email verification link, email code, e.g. 5-digit number, mobile phone input?

Question(s)
Should 2FA be enforced each time a candidate logs on to the platform or just the first time?

[Task list]
[] Discuss with Product Owner options available
[] Implement agreed option

[Definition of Done]
[]

[User Testing Steps]
[]

[Ticket Champion]
Nick

@nickaddy nickaddy changed the title 2-Factor Authentication for New Account Sign-ups Two-Factor Authentication for New Account Sign-ups Sep 19, 2023
@nickaddy
Copy link
Contributor Author

nickaddy commented Sep 19, 2023

@warrensearle Created following our conversation on Friday. Would be good to get your thoughts on the best option?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant