Skip to content
OIDOT

Multi-factor authentication

A second factor, without a second integration.

TOTP-based multi-factor authentication, recovery codes, and step-up re-authentication for sensitive actions — built into the same platform as login.

One factor isn't always enough

A password proves you know something; a second factor proves you also have something. Oidot's MFA is TOTP-based — compatible with any standard authenticator app — with recovery codes issued at setup so losing a device doesn't mean losing an account.

Step-up re-authentication lets a sensitive action — changing an email address, revoking a session, rotating an API key — require a fresh MFA challenge even inside an already-authenticated session, rather than trusting a login from hours earlier.

Features

TOTP-based MFA

Compatible with any standard authenticator app — no proprietary app to install.

Recovery codes

Issued at setup, so a lost device doesn't mean a locked-out account.

Step-up re-authentication

Sensitive actions can require a fresh MFA challenge, even mid-session.

Enforced per account or per organisation

MFA can be required, not just offered, wherever the policy calls for it.

Step-up authentication flowA sensitive action re-challenges an already-authenticated session before proceeding.requiresverifiedActive sessionSensitive actionTOTP challengeAction proceeds
data-flow diagram: A sensitive action re-challenges an already-authenticated session before proceeding.

Turn on MFA

Available the moment your product needs it — no separate integration.