Secure your account
Best practices for passwords, sessions, and protecting organisation access.
Quick answer
Use unique strong passwords, enable MFA for admin accounts, limit admin seats, and sign out on shared devices.
MFA (authenticator app)
- Open Settings → Security.
- Click Set up MFA, scan the QR code, and enter the verification code to activate.
- To disable MFA later: enter your current password and a valid MFA code, then click Disable MFA.
- SSO users rely on their identity-provider MFA (Kadova TOTP is not prompted after OIDC).
- Lost authenticator? Disable MFA from an active session, or contact support.
Recommendations
- Enable SSO if your organisation supports it (see your admin console).
- Review active users quarterly and remove leavers promptly.
- Never share login credentials or MFA codes between staff members.
- Use the mobile app only on managed devices where possible.
If you suspect unauthorised access
- Reset affected passwords immediately.
- Review recent gift-card activity and user list.
- Contact Kadova support with your organisation ID if anything looks wrong.
Was this article helpful?
Still stuck?
Email us with a short description, expected outcome and any error message.
Email support@kadova.nlTips for a complete request are on Contact support
