To better protect user accounts, Parchment will begin enabling Email Multi-Factor Authentication for ALL accounts. This is part of a broader Instructure effort to strengthen the security of customer accounts, as articulated in the Instructure Community.
When logging in, users may be asked to enter a verification code sent to their registered email address. This additional layer of security helps prevent unauthorized access, even if login credentials are compromised.
Specifically:
- Institutions using Single Sign-On (SSO) will not experience changes to their authentication workflows
- Users must maintain access to their registered email address to complete verification
- We will evaluate additional MFA methods, but initially, email will serve as the supported method
Why the change?
Historically, multi-factor authentication has been an option for Parchment accounts, but this enforced extra step significantly reduces the risk of unauthorized access to your academic records. By confirming your identity at login, we make sure only you can view, request, or share your credentials.
Where can I find out more?
For more information, please refer to our Email Multi-Factor Authentication FAQs.