Skip to main content

Security and sign-in: two-step verification, session limits, consent banner, and password reset

Written by Skyler Lambert

This article covers the sign-in and security options in AgileLaw — the ones you manage for your whole firm, and the ones each user controls for their own account.

Reset a forgotten password

If you can't remember your password:

  1. On the sign-in screen, choose Forgot password?

  2. Enter your email. AgileLaw emails you a link to reset your password.

  3. Follow the link and set a new password (it must meet the password rules — see Change password).

The password-reset request screen — enter your username to be emailed a reset link

If your firm uses Single Sign-On with SSO Required, password reset doesn't apply — you sign in through your identity provider instead.

Two-step verification (2FA)

Two-step verification adds a second check at sign-in — a code from an authenticator app — on top of your password. It's available on every plan.

Turn it on for yourself: go to Settings → Security, find Two-step verification, and choose Set up. Follow the steps to link your authenticator app and Verify & turn on. You can Manage or Turn off 2FA from the same place later.

The Two-step verification card under Settings → Security

Require it for your firm (administrators): under Settings → Firm → Security you can turn on Require 2-factor authentication so everyone signs in with it from an unknown device. Set Days to remember a device to let users skip the extra step on a trusted device for that many days — set it to 0 to require a code on every sign-in.

Session limits: idle timeout and maximum length

For security, AgileLaw signs users out after a period of inactivity. Before that happens you'll see a warning so you can stay signed in with a click. The warning and sign-out are kept in sync across multiple open AgileLaw tabs, so you won't be caught out by an idle tab in the background.

Administrators can tune these limits under Settings → Firm → Security:

  • Idle timeout (minutes) — sign users out after this many minutes of inactivity (5–240; default 30). The idle timer pauses while a deposition is in session, so no one is ever signed out mid-record.

  • Maximum session length (hours) — require everyone to sign in again this many hours after signing in, regardless of activity (1–24; default 24).

Choose your values and click Save changes.

The firm Security settings under Settings → Firm: the 2-factor requirement, idle timeout, and maximum session length

Only account administrators can change firm security settings. Individual users manage their own two-step verification under Settings → Security.

Consent banner (admin-configurable)

Administrators can require users and participants to accept a consent banner when they sign in or join a deposition — for example, a confidentiality or terms notice.

To set one up:

  1. Go to Account Settings → Consent Banner.

  2. Enter the banner title and content, and Preview it.

  3. Save. From then on, users must accept the banner at login/join; acceptances are recorded for your audit trail.

The Consent Banner settings, with a banner title, content field, and Preview link

Related

  • Change password — password rules and how to change a known password.

  • Set up Single Sign-On (SSO) — sign-in through your identity provider.

Did this answer your question?