Account Security & Password Recovery
Secure the account with multi-factor authentication and regain access when the password is forgotten.
From settings the user enables MFA by entering the 6-digit verification code sent to their phone. If they ever lose access, the password-reset path takes them through submitting their email, verifying the one-time passcode sent to that email, and creating a new password.
4
screens
4
built
7
endpoints
Screen sequence · 4 steps · ⚙️ Settings/More
1. two-factor-auth
built4 ep
2. /reset-password.
built1 ep
3. reset-password/otp
built1 ep
4. reset-password/new-password
built1 ep
Endpoints across this flow
Flow endpoints · 7 endpoints, 2 confirmed in code · the Backend agent owns these
GET /auth/2faPOST /auth/2fa/setupPOST /auth/2fa/enablePOST /auth/2fa/disablePOST /auth/forgot-passwordPOST /auth/verify-reset-otpPOST /auth/reset-password