Skip to main content

Your Account Settings: Security

Here you can learn about the Security and Privacy settings in Enboarder!

Written by Jasmin Nahar

The Security tab is located in Settings. Here, you can find out all about your account, including how to delete workflow data. 

How to get there.

First, click Settings > Account & Security > click the Security Tab

It should take you to this page:


Here is what each setting secures!

Security

This section is where you can set the security level for the the overall account and profiles used for myDashboard.

Account Security

Super Admins can choose to set overall account security as medium or high. By default, it's set to medium. This affects admins logging into Enboarder (not participants of Workflows).

Medium

High

Password Strength

'Strong password'

'Strong password'

Password History

3

15

Change password

Every 180 days

Every 90 days

Account Lock-out

Yes

Yes

Force updates upon change of security levels

Yes

Yes

What determines a strong password?

Easy! (But not easy to guess 😉 )
​
It needs to have:

  • 8 or more characters

  • At least one UPPERCASE character

  • At least one lowercase character

  • At least one numer1c character

  • At least one $pecial character

Profile Security

This setting manages the participant "My Dashboard" menu, as well as if you set Sequence Security to "Password protected". The levels are outlined above.

For Low profile security, the only requirements are that the password must be 5 characters long.

Enable 2 Step for Admins

Checking this box will mean any Admins that do not log in through SSO will need to confirm their identity with a security code once every 30 days when logging in. This will send a 6-digit pin to their email that they can then enter to access Enboarder for an extra layer of security!

Allow URLs to be added to the Communication Module

By default, when participants are using the Communication Module they are able to enter URLs to be sent to the receiving party, however by unchecking this box, they will no longer be able to add/send URLs through the Communication Module.

Enable my dashboard login using secure link

This feature lets you access tasks and more in myDashboard without needing to remember your password. More details can be found here


Single sign on configuration

This section is where the configuration takes place to setup your account to use SSO to access Enboarder.

Click here to read all about SSO and Enboarder.


Compliance

If you're working with compliance forms, specifically i-9 forms, this is where you can enable Enboarder to remind employees to complete their i-9 forms


Email Domain

If you're using the Dual Email feature, this section is where you add domains to be recognised as a work email domain

Details on how this works with the Dual Email feature can be found here


Login Authentication

Enboarder gives you the choice of determining which login method you want to choose for an employee and admin.

If you plan to use Google or Microsoft as a login option for employees, you will need to add a domain for the system to accept and authorise the login.


Presentation view

This section is where you add domains for those who you want to send invites to

Details on the Presentation view and how the sharing works can be seen here


Data Privacy

Delete all inactive workflow data
Clicking this checkbox will allow Enboarder to remove all personal details like names, phone numbers, and emails, based on your selection of time after a Workflow is complete. This will remove all Form Data, Workflow Data, and Profile Data.


​Please note: some regions have legal requirements for this time frame, we recommend checking with your countries' privacy requirements to ensure compliance.

Require Consent Form
You can activate the 'Employee Consent' form that an employee will need to acknowledge. (Think GDPR consent for example) This consent module will be added to the start of all employee communications. Once acknowledged the employee will not see this form again. If an employee does not consent they won’t be able to access the content. Check out a full in-depth article here.


Link security

By enabling the Connection Card feature, it allows anyone with this link to see the page content without verifying they are a user within the account.

In this section you can also set when you want a sequence link to expire


Questions?

Contact our Support Team via chat! 😊

Did this answer your question?