Skip to content Skip to footer
Multi-Factor Authentication (MFA) Policy

Multi-Factor Authentication (MFA) Is Mandatory at Splitifi

Security begins at login. This policy explains Splitifi’s mandatory use of MFA across all user types—ensuring every account is shielded by multiple layers of authentication and zero-trust principles.

Effective Date: December 1, 2024
Version: v1.2

This Multi-Factor Authentication (MFA) Policy outlines how Splitifi enforces secure account access through MFA protocols, applicable to all users including litigants, attorneys, judges, mediators, and administrators.

1. MFA Requirement

All registered users must enable MFA before gaining full access to the Splitifi platform. This is not optional. Accounts without MFA enabled will be locked or access-limited until setup is complete.

2. Accepted MFA Methods

  • Time-based One-Time Password (TOTP) via authenticator apps (e.g., Google Authenticator, Authy)
  • SMS-based verification (used only as backup for TOTP)
  • Biometric authentication where supported by device

3. Setup Process

Upon registration, users are prompted to configure MFA. This includes verifying a primary method and optionally adding a backup method. Email confirmation is also required as part of setup integrity.

4. Recovery and Reset

  • If you lose access to your MFA device, a recovery request must be submitted via Splitifi support.
  • Reset requires identity verification, including legal name, case ID, or attorney connection verification.

5. Session Security

  • Sessions expire automatically after 15 minutes of inactivity.
  • MFA is required again after logout or IP address change.
  • Administrators and legal professionals may be required to re-authenticate before accessing sensitive litigant data.

6. Compliance and Audits

MFA logs are stored securely and reviewed periodically to ensure compliance with Splitifi’s internal access control policies. Attempts to bypass MFA or tamper with authentication will result in immediate suspension.

7. Applicability

  • Litigants: Required for financial discovery, court date syncing, and document uploads.
  • Attorneys: Required for every login and to access client files.
  • Judges/Mediators: Required for dashboard access and data review.
  • Splitifi Staff: Enforced via internal SSO + device trust policies.

8. Support

Need help with MFA? Contact support@splitifi.io for 24/7 assistance.

Please fill the required fields*