UI Security Settings

Adjust the security-related UI behaviors PURE apps render — password-reveal auto-hide, the default idle session timeout, and the trusted-device 2FA re-verify interval. Review the live published app version below. Settings are live and admin-gated; changes are per-org and saved to the platform configuration.
Checking access…

PURE app — version & releases

The live published version of the installable PURE app — what every device loads, and what an admin bumps to push a release.

Published
Channel
Build
Commit
Notes

To push a release: bump version.json (version + label + notes) and add a pure_versions row. Users get an Update prompt on next load and auto-update silently on sign-in. Runbook: DEPLOY.md.

Scope

Choose which organization these settings apply to. Global is the platform-wide default; a specific org overrides the default for that org only.

Password reveal — auto-hide

How long a revealed password stays visible before it re-masks itself. Shorter is safer on shared screens. Live now.

10 s
Idle session timeout — default

Auto sign-out after this many minutes of inactivity, for users who haven't chosen their own. Set to Off to disable the platform default.

min
Trusted-device — 2FA re-verify interval

On a device the user chose to trust, how many days before a second factor is required again. 0 = require 2FA every sign-in. Takes effect once trusted-device is live (ticket t-auth-trusted-device).

30 days
Trusted devices — per-user cap

The maximum number of devices a user can mark trusted at once. When exceeded, the oldest trusted device is dropped. Range 1–10.

3 devices