Add an extra layer of security to your clariBI account.
MFA Overview
What Is MFA?
MFA requires two forms of verification:
1. Something you know (password)
2. Something you have (phone/app)
Availability
MFA is available on Professional and Enterprise plans.
Supported Methods
- TOTP App: Google Authenticator, Authy, etc.
- Backup Codes: One-time recovery codes
Setting Up MFA
Step 1: Access Security Settings
- Click your avatar
- Go to Settings > Security
- Find Multi-Factor Authentication
Step 2: Enable MFA
- Click Enable MFA
- Enter your password to confirm
- Choose authentication method
Step 3: Configure TOTP App
- Install authenticator app on your phone:
- Google Authenticator
- Authy
- Microsoft Authenticator - Scan QR code with app
- Enter 6-digit code to verify
- MFA is now active
Step 4: Save Backup Codes
- Copy your backup codes
- Store in secure location
- Each code works once
- Use if phone unavailable
Using MFA
Login Process
With MFA enabled:
1. Enter email and password
2. Open authenticator app
3. Enter current 6-digit code
4. Access granted
Code Timing
- Codes change every 30 seconds
- Enter code before it expires
- If expired, wait for next code
Managing MFA
View MFA Status
In Security settings:
- MFA enabled/disabled
- Date enabled
- Methods configured
Regenerate Backup Codes
If codes are used or compromised:
1. Go to Security settings
2. Click Regenerate Backup Codes
3. Enter password
4. Enter current TOTP code
5. Save new codes securely
Disable MFA
If needed:
1. Go to Security settings
2. Click Disable MFA
3. Enter password
4. Enter current TOTP code
5. MFA removed
Recovery Options
Lost Phone
If you lose your authentication device:
1. Use a backup code to log in
2. Each backup code works once
3. Re-setup MFA with new device
No Backup Codes
Contact support:
1. Email from registered address
2. Verify identity
3. Admin can reset MFA
Organization MFA Policies
For Administrators
Enforce MFA for all users:
1. Go to Organization > Security
2. Enable Require MFA
3. Set enforcement date
4. Users prompted to enable
Monitoring Compliance
View MFA status:
- Team page shows MFA status
- Export compliance report
- Identify non-compliant users
Best Practices
Setup
- Enable MFA immediately
- Use reputable authenticator app
- Store backup codes offline
- Don't share codes
Ongoing Security
- Keep phone secure
- Update authenticator app
- Review backup codes periodically
- Report suspicious activity