Multi-Factor Authentication for Mobile App
Security Issue: Multi-Factor authentication is currently not an option for the Redtail CRM mobile app. This means that an attacker can attempt to use brute force tactics using only username and password over the public internet to gain access to a clients CRM instance. This is a major security flaw. Why is MFA not an option for the mobile app similar to the browser / web-based application? If MFA is not possible on the mobile app for whatever reason, then at least there should be an option to disable the mobile app for the clients CRM instance. MFA is a proven defense against unauthorized access using phishing as the attack vector. Given the recent communication from Redtail on 11/6/2025 regarding increased phishing attempts impersonating the Redtail brand I would think that adding MFA to the mobile app should be considered a high priority enhancement.