# Verify with email MFA

> Complete multi-factor verification with a one-time code sent to your work email before opening protected patient data.

Canonical URL: https://provider.peptiq.io/help/mfa-email-verification

## When MFA is required

Organizations can require MFA for all staff. When enabled, you must verify before patient detail APIs and charts load clinical data. Demo sandbox orgs may skip MFA for rep walkthroughs.

- Codes expire after a short window and can only be used once.
- Request a new code if yours expired or never arrived.
- Check spam and confirm you signed in with your invited work email.

## Complete verification

1. Open Security → MFA from the console sidebar or during Finish clinic setup.
2. Choose Send code to deliver a six-digit code to your email.
3. Enter the code and confirm within the time limit.
4. Return to the patient chart; verification lasts for your current staff session.

> **Protect the code**  
> Do not forward MFA emails or share codes in chat. PeptIQ will never ask for your code by phone or support ticket.
