Skip to main content

2 factor authentication enforcing

  • March 24, 2021
  • 6 replies
  • 1449 views

Ben_Smeets

2FA is currently only available in a user account (as far as I’m aware). So each user needs to enable it and can decide if they want to. Some customers really want us to use 2FA for any web app. A simple solution would be for organisation accounts, that we move that setting to the org admin and can enforce it or enable it for all users that way.

6 replies

Nicole_Lynch

Agree. From a security stand point most organizations are requiring enforced MFA vs opt-in. I know my organization would like me to switch from Figma to another provider with this feature. I hold them off as much as I can but they ask every 6 months if I will go with another solution.


Dennis_N
  • Power Member
  • October 2, 2024

This feature is a no-brainer and should be out of discussion. C’mon it’s 2024.


EmmanuelCW
  • New Member
  • January 21, 2025

@Figma, you need to implement this quickly or you’ll lose a client...


Matt Lyons
  • New Member
  • May 21, 2025

If it’s not possible to make MFA mandatory can we at least have whether it is enabled shown in the user list? Slack does this for example. Otherwise I can ask people to enable it but I can’t actually check if they have done it. We work also work with clients that expect MFA on all apps.


r0b
  • New Member
  • July 7, 2025

Agreed, at least let us see who has it on so I can chase it up! This is a pretty basic security feature


Sasch
  • October 24, 2025

Any update on this topic? 2FA becomes more and more important…