Security controls · C0114
Will hardware security keys be supported?
Designed, not yet built
Short answer
The design specifies phishing-resistant sign-in with a badge plus FIDO2 key touch, and no SMS or voice codes. WebAuthn is not built in the pilot.
This is designed, not built.
Status as of September 30, 2026. Version 0.2.0, synthetic data only. See what's built today. Not legal, medical or security advice.
Related answers
- Is multi-factor authentication available? Pilot
- What happens after repeated wrong passwords? Pilot
- Does the screen lock when a clinician walks away? Pilot
- How do staff sign in to the pilot? Pilot
See it in context: Sign-in, MFA and sessions · Search the help center · Ask a question