diff --git a/app/templates/views/security.html b/app/templates/views/security.html index 25a15226c..49b133b43 100644 --- a/app/templates/views/security.html +++ b/app/templates/views/security.html @@ -44,9 +44,20 @@
  • protective monitoring to record activity, and raise alerts about any suspicious activity
  • using JSON Web Tokens, to avoid sending API keys when your service talks to Notify
  • - -

    User permissions

    + +

    Protect sensitive information

    +

    Some messages include sensitive information like security codes or password reset links.

    +

    If you’re sending a message with sensitive information, you can choose to hide those details on the Notify dashboard once the message has been sent. This means that only the message recipient will be able to see that information.

    + +

    User permissions and signing in

    You can set different user permissions in Notify. This lets you control who in your team has access to certain parts of the service.

    +

    Two-factor authentication

    +

    To sign in to Notify, you’ll need to enter:

    + +

    If receiving text messages at work is a problem for your team, contact us about using an email link instead.

    Information risk management

    Our approach to information risk management follows National Cyber Security Centre (NCSC) guidance. It assesses: