Security
Set workspace invite links, two-factor policy, and which MCP connectors Pulse Agent may use.
Security policies applied to everyone in this workspace.
Overview
Open Settings → Administration → Security (/settings/security). Workspace managers only.
This is not Security & access. That page is your password, sessions, passkeys, and personal two-factor enrollment.
Invite links
Invite links — a uniquely generated URL lets anyone with the link join this workspace.
To turn links on:
- Enable Enable invite links.
- Copy the URL to share it.
- Reset invite link expires the current URL and creates a new one.
Disable the toggle to revoke the link. You must verify your email before managing invite links. Email invites stay on Invite members.
Two-factor authentication policy
Require two-factor authentication makes every member enable 2FA.
Members without 2FA must set it up the next time they sign in — there is no grace period. Existing sessions are not invalidated.
Members enroll under Settings → Security & access. If the workspace requires 2FA, they cannot turn it off there.
MCP connectors
MCP connectors controls which external tools Pulse Agent may use in this workspace.
- Enable Pulse Agent MCP connectors — allow agents to use approved connectors. A deployment or global platform policy can keep this off; workspace policy cannot override that ceiling.
- Active MCP connections — opens
/settings/security/mcp-servers. - Allowed MCP connectors — All connectors or Selected connectors.
When Pulse Agent is on, people add personal connectors from Agent personalization. Workspace policy can hide or limit what they may add. See Pulse Agent and MCP server.
FAQ
Last updated on