Account Security
This guide covers password management, multi-factor authentication (MFA), and session security in Taskr.Accessing Security Settings
Navigate to Account > Security or go to/account/security.
Password Management
Password Requirements
Strong passwords must include:Changing Your Password
- Go to Account > Security
- Click Change Password
- Enter current password
- Enter new password
- Confirm new password
- Click Update Password
Forgot Password
If you can’t log in:- Click Forgot Password on login page
- Enter your email
- Check email for reset link
- Click link and create new password
Multi-Factor Authentication (MFA)
What is MFA?
MFA adds a second verification step beyond your password, significantly improving account security.MFA Options
Setting Up MFA
Authenticator App (Recommended)
- Go to Account > Security
- Click Setup MFA
- Choose Authenticator App
- Scan QR code with your app:
- Google Authenticator
- Microsoft Authenticator
- Authy
- 1Password
- Enter the 6-digit code
- Save backup codes
SMS Verification
- Go to Account > Security
- Click Setup MFA
- Choose SMS
- Enter phone number
- Verify with code sent to phone
- Save backup codes
Backup Codes
After setting up MFA, you receive backup codes:- Store securely - These are one-time use
- Print or save - Keep in safe place
- Use when needed - If you lose device access
- Generate new - If you run out
Using MFA at Login
- Enter email and password
- When prompted, enter MFA code
- Code from authenticator app or SMS
- Optionally “Remember this device”
Disabling MFA
- Go to Account > Security
- Click Disable MFA
- Enter your password to confirm
- MFA is removed
Note: Your organization may require MFA. If so, you cannot disable it.
MFA Setup Page
Initial MFA Setup
If required during login:- After password, you’re redirected to
/mfa/setup - Choose MFA method
- Complete setup process
- Continue to dashboard
MFA Verification
When logging in with MFA:- Enter credentials
- Redirected to
/mfa/verify - Enter code from app or SMS
- Access granted
Session Management
Active Sessions
View your active login sessions:- Go to Account > Security
- Scroll to Active Sessions
- See list of devices/browsers
Session Details
Ending Sessions
To log out from a specific device:- Find session in list
- Click End Session
- That device is logged out
- Click End All Sessions
- All devices logged out
- You’ll need to log in again
Security Recommendations
Password Best Practices
- Use unique password for Taskr
- Don’t share your password
- Change if you suspect compromise
- Use a password manager
MFA Best Practices
- Enable MFA immediately
- Use authenticator app over SMS
- Save backup codes securely
- Keep authenticator app updated
Session Best Practices
- Log out on shared devices
- Review sessions periodically
- End unfamiliar sessions
- Report suspicious activity
Troubleshooting
Common Issues
Account Locked
If your account is locked:- Wait 15 minutes and try again
- Use password reset if needed
- Contact administrator if issue persists
MFA Recovery
If you lose access to MFA device:- Use a backup code
- Contact administrator
- Admin can reset MFA
- Set up MFA again
Organization Security Policies
Your organization may enforce:
Check with your administrator for specific policies.
Security Notifications
You may receive notifications for:- New device login
- Password changed
- MFA settings changed
- Failed login attempts
- Suspicious activity
Back to Account Overview | Back to Documentation Index