Multi-Factor Authentication

A composable API for implementing Multi-Factor Authentication (MFA) for basic authentication strategies.

The Multi-Factor Authentication (MFA) API is intended to be a composable, unopinionated set of endpoints that can be integrated into existing application/session management strategies.

The available types of authentication factors are:

  • totp – Time-based one-time password

  • sms – One-time password via SMS message

The MFA API is not intended to be used with the WorkOS SSO feature. It's recommended to leverage the MFA features of the Identity Provider that is powering your SSO implementation.