Skip to main content

Profile and Security

Open Profile settings -> Profile to manage the identity and sign-in settings attached to your Kanera account.

Update your profile

From the Profile tab you can:

  • Upload, crop, replace, or remove your profile picture.
  • Change the display name shown to teammates.
  • Choose light or dark appearance for the current device.
  • Review cookie settings when optional analytics is available.

Changing your display name or picture updates how you appear across boards, comments, assignments, and activity.

Change your email address

  1. Enter the new address under Email.
  2. Select Verify & save when email verification is enabled, then enter the six-digit code sent to the new address.
  3. Otherwise, select Save.

Your email address is also your sign-in name. If the verification message does not arrive, keep the old address and ask an administrator to check SMTP before retrying.

Change your password

Enter the current password, then enter and confirm the new password. After a successful change, Kanera signs out your other sessions.

Use Account Access and Sign-In when you do not know the current password.

Set up two-factor authentication

Kanera uses time-based one-time passwords from an authenticator app.

  1. Under Two-factor authentication, enter your current password.
  2. Select Set up authenticator.
  3. Scan the QR code with an authenticator app, or enter the displayed secret manually.
  4. Enter the six-digit code from the app and select Confirm.
  5. Save the recovery codes somewhere secure before leaving the page. They are shown once.

The next fresh sign-in asks for an authenticator code. A recovery code can be used once when the authenticator is unavailable.

Do not put the QR code, setup secret, or recovery codes in Kanera notes, cards, screenshots, chat, or source control.

Replace recovery codes

Under Two-factor authentication, enter your current password and an authenticator or unused recovery code, then select New recovery codes.

The new set replaces the previous set. Save it before leaving the page.

Disable two-factor authentication

Enter your current password and an authenticator or unused recovery code, then select Disable.

You cannot keep MFA disabled if your organisation requires it. At the next fresh sign-in, Kanera asks you to enroll again.

Require MFA for an organisation

Organisation admins can open Profile settings -> Organisation, enable Require two-factor authentication for everyone, and save the security policy.

  • Members who have already enrolled continue using their authenticator.
  • Members without MFA must enroll at their next fresh sign-in.
  • Existing signed-in sessions remain active.
  • Disabling the organisation requirement does not remove MFA from members who enabled it personally.

Before enabling the policy, tell members to keep recovery codes outside Kanera and establish an account-recovery process for lost authenticators.

Troubleshooting

ProblemWhat to do
A six-digit code is rejectedConfirm the device clock is set automatically, then try the current code rather than one that is about to expire.
A recovery code is rejectedRecovery codes are single use. Try an unused code without added spaces.
The QR code cannot be scannedEnter the displayed setup secret manually in the authenticator app.
You lost the authenticator and every recovery codeContact your operator or support contact. A management-portal administrator can perform an audited MFA reset after verifying your identity.
Everyone is asked to enroll unexpectedlyAsk an organisation admin to review Profile settings -> Organisation.
Existing authenticators all stopped working after a deploymentThe operator should restore the previous MFA_ENCRYPTION_KEY; changing it invalidates enrolled authenticators.