India Audit Lens

Change your password, verify email, and manage 2FA

If the current password is unknown, stop and use the normal password-recovery flow. Do not ask an administrator to tell you or set a shared password.

By India Audit Lens product team · Updated 2026-07-17

Change your password

Open Your profile → Security. Under Password, click Change. Enter Current password. Enter New password. The product requires at least eight characters; follow any stronger firm policy and do not reuse another account's password. Enter the same value in Confirm new password. Click Update password once. Wait for Password changed successfully and sign in again if the session is ended.

If the current password is unknown, stop and use the normal password-recovery flow. Do not ask an administrator to tell you or set a shared password.

Verify your email

In Security → Email verification, check whether the account is Verified. If not verified, click Resend. Wait for Verification email sent — check your inbox. Open only the newest message, confirm the domain and account, and complete the link promptly. Return to the profile and verify the status changed.

Older links may be superseded. Do not forward a verification link or complete it on behalf of another person.

Enable two-factor authentication

Open the Two-factor authentication card and start enrolment. In an approved authenticator app, scan the displayed QR code. If scanning is not possible, enter the manual secret directly into the app without copying it into notes or chat. Enter the current six-digit authenticator code. Confirm enrolment and wait for Two-factor authentication enabled. Sign out and test one fresh sign-in while another authorised session/support path remains available.

The app secret is equivalent to a credential. A screenshot of the QR code can let another person generate valid codes.

Disable 2FA safely

Use Disable only for an authorised recovery or device transition. Enter Account password. Enter the Current 2FA code. Confirm the destructive action and wait for Two-factor authentication disabled. Re-enrol promptly on the replacement device when 2FA is required by firm policy.

Do not disable 2FA merely because a code was mistyped. Check device time synchronisation and wait for a new code first.

Lost device or suspected compromise

Stop repeated login attempts that may lock the account. Contact the firm administrator/support through an independently verified channel. Ask them to verify identity, review recent access, and follow the approved recovery process. Change the password and re-enrol 2FA after access is restored. Review relevant audit/activity history and report any suspicious access.

Expected result

The email shows Verified, the new unique password works, and sign-in requires a current authenticator code when 2FA is enabled.

Related pages

Book a demo or run one engagement free.