Authentication
Self-registration and MFA, in the Authentication section of Auth Settings.
- Self-Registration — lets users create their own account without an admin invite.
- When on, additional controls appear: Default Role (the role assigned to self-registered users), Allow Role Selection (lets the user pick their own role at signup), and — if role selection is allowed — Selectable Roles, a checklist of which roles they can choose from. Only roles that aren’t admin/owner-level appear as options.
- Multi-Factor Authentication — requires the Pro plan or above, and a TOTP authenticator app (Google Authenticator, Microsoft Authenticator, Authy) at sign-in. On plans without MFA, the toggle is disabled with an Upgrade to Pro link.
Common issues
- MFA toggle is disabled — Requires a Pro plan or above; upgrade from the Upgrade to Pro link next to the toggle.
- No roles to pick from under Selectable Roles — Create at least one non-admin role first, under Security → Roles.