## Summary
- Add Settings page with TOTP MFA enrollment (QR code + verification)
- Support MFA challenge during login for accounts with TOTP enabled
- Add MFA status indicator in the navigation layout
## Test plan
- [ ] Verify TOTP enrollment flow (generate QR, verify code, enable)
- [ ] Verify login prompts for MFA code when TOTP is enabled
- [ ] Verify MFA can be unenrolled from Settings page
🤖 Generated with [Claude Code](https://claude.com/claude-code)
- Add MFA enrollment UI in new Settings page with QR code and backup secret
- Add TOTP challenge step to login flow for enrolled users
- Check AAL after login and show TOTP input when aal2 required
- Add disable MFA option with TOTP re-verification
- Only show MFA options for email/password users (not OAuth)
- Add Settings link to user dropdown menu
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
TheFurya
merged commit 50ed370d24 into develop2026-03-22 09:21:37 +01:00
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Summary
Test plan
🤖 Generated with Claude Code