Two-factor authentication is here
Your STrOp account holds contracts, billing, and payroll data — the things a stolen password hurts most. Starting today it can be protected with a second factor.
For you. Head to Settings → Security and set up your authenticator app (Google Authenticator, 1Password, Authy — anything that speaks TOTP). Scan the QR code, confirm a code, done. From then on, sign-in asks for your password and a 6-digit code from your phone.
For your company. Admins get one switch: require two-factor authentication for everyone. Anyone who hasn't enrolled is walked through setup on their next sign-in — no chasing people down. Cyber-insurance questionnaire asks whether your system of record enforces MFA? Flip the switch and answer honestly.
Lost your phone? An org admin can reset your two-factor setup from Settings → Roles & Permissions — you sign back in with your password and enroll the new device. Every reset is written to the audit log, like everything else.