BursaPay Logo
Knowledge Base
Ticket Sign In
Help Center > Account Setup, Security & Navigation > MFA and Two-Factor Security Guidance

MFA and Two-Factor Security Guidance

Published 2026-08-23 5 min read
Who is this article for?
This guide is for All Users, Administrators seeking operational guidance on BursaPay workflows.

UI Navigation Path (Step-by-Step)

  1. Enable the supported MFA/2FA method.
  2. Store recovery credentials securely.
  3. Never share authentication secrets with support staff.
  4. Use the supported recovery flow if a factor is lost.
Verified workflow guide: Explains how users should treat additional authentication factors and recovery credentials.

1. Overview & Purpose

BursaPay includes authentication hardening such as MFA/2FA and recovery-code workflows in the security layer.

2. What You Need

An authenticated account and access to the supported security settings are required.

3. Step-by-Step Workflow

  1. Enable the supported MFA/2FA method.
  2. Store recovery credentials securely.
  3. Never share authentication secrets with support staff.
  4. Use the supported recovery flow if a factor is lost.

4. Rules, Boundaries & Troubleshooting

Support should never request a user's password, OTP, recovery code or secret key. Account recovery must remain within the designed authentication flow.

5. Verification & Next Steps

After recovery, re-check active sessions and authentication settings before resuming sensitive operations.

Was this article useful?

Related Articles

Troubleshooting BursaPay OTP Verification
Ask Bursa AI