Security settings

As an administrator of Uniqkey, you can manage the security settings in the Settings tab in the Uniqkey Admin Portal here.

 

Baseline settings

These settings are found in Settings -> Security settings -> Baseline.

 

Setting name Description Recommended
Allow export Allow employees to export their company data. Disabled
Allow screenshots Allow employees to take screenshots of their Uniqkey mobile app. The individual users also need to enable it via their app under More -> Permissions. Disabled
Allow sharing Allow employees to share company data within the organisation. It's not possible to share company data with users outside of the organisation. Enabled
Enable autosave Force employees to save accounts using company domains in Uniqkey.  Enabled
Send breach notifications Alert users when their data has been found in a leak. Enabled
Allow skip install mobile application screen Hide the "download Uniqkey" part of the activation process.  Disabled unless you deploy the Uniqkey mobile app to employee devices
Enable Trusted Portal

Allow admins to make changes in the admin portal without approving in the Uniqkey mobile app. This needs to be activated during each session via the Trusted Portal button in the menu on the left. Disabling this will require admins to open their Uniqkey mobile app to process changes made in the admin portal.

Using Trusted Portal is less secure, and should only be used in a secure browser.

Disabled

 

Governance

These settings are found in Settings -> Security settings -> Governance.

 

Setting name Description Recommended
2FA Enable 2FA for Uniqkey. When employees login to Uniqkey using their email and masterpassword, they need to enter an additional verification code sent to them via email. Enabled
Require mobile authentication Determine if employees are required to use the Uniqkey mobile app. Not using the mobile app will store the employee's master password in their browser, which is less secure, but will allow employees without a phone to use Uniqkey. Read more here. Enabled
Restrictions for "My Logins" in the organisation keychain Ensure employees can only access company data when they meet specific security requirements. Disabled
Secondary device allowed Allow employees to use a second mobile device to view data and autofill locally. Login requests are still sent to their primary device. Enabled
Allow trusted browser

Allow employees to approve requests in their Uniqkey mobile app once per set time period. 

Using trusted browser significantly reduces security and should only be used in browsers on secure devices.

Enabled