MFA for Manual Refunds
To enhance security, manual refunds will now require Multi-Factor Authentication (MFA) for each new session. Once authenticated, subsequent manual refunds within the same session will not require repeated MFA verification.
Example:
- First manual refund: User logs in and is prompted for an MFA code. After entering the code, the refund is processed.
-
Subsequent manual refunds within the same session: No additional MFA required until the session expires.
-
New session (e.g., after closing the browser tab or logging out): User must re-enter the new MFA code for the next manual refund.