Sign in securely
- 1
Open the correct company
Use the company code on /login or the company’s dedicated login URL.
- 2
Enter your own email and password
Accounts are checked against the selected company. Do not share credentials.
- 3
Verify your email when required
An unverified account is directed to the email-verification flow before normal access continues.
- 4
Enter the Email PIN when enabled
After password sign-in, enter the 6-digit code sent to your verified email.
- 5
Change a temporary password when required
Accounts marked for a forced password change must update the password before normal workspace access continues.
Email PIN 2FA
The emailed 6-digit PIN expires after 10 minutes. A new code cannot be requested more often than the 60-second resend cooldown.
- Email PIN 2FA is optional and configured per user.
- The user needs a verified email before the feature can be used reliably.
- Never share a one-time PIN with another person or with support staff.
Password rules and recovery
- Password length: 12 to 128 characters.
- Do not begin or end a password with spaces.
- Avoid common weak passwords, the email name, or the company name.
- Use Forgot Password when you cannot sign in with the current password.
- Admins can reset supported user access; temporary credentials should be shared privately.
Why sign-in can be blocked
- Wrong company or invalid credentials
- Disabled user account
- Inactive company
- Unverified email
- Required password change
- Email PIN challenge not completed when enabled
Security practices
- Use an individual account for each person.
- Disable access promptly when someone leaves the company.
- Use the lowest role appropriate for the person’s work.
- Do not send passwords, one-time codes, recovery links, private keys, or banking credentials to support.
Important notes
- Email PIN 2FA is separate from Kiosk Attendance PINs.
- Support should never ask for your password or one-time PIN.
- Disabling a user blocks access without deleting historical business records.