Your workspace
Every company on Majali has its own workspace at its own address. Nothing is shared between companies: not the sign-in, not the data, not the keys that protect it.
Your address
Your admin lives at <company>.cloud.majali.app, where <company> is the short name chosen when your workspace was created. Staff can also start from cloud.majali.app , enter their email, and be sent to the right workspace.
A company can put the admin on its own domain instead, such as admin.yourcompany.ae. See Settings.
Your first sign-in
You receive an invitation by email. The link opens a page where you set your password; it works once and for a limited time. If it has expired, ask an administrator of your company to send a new one.
Right after the password, Majali asks you to set up the two-step sign-in:
- Open an authenticator app on your phone (Google Authenticator, Microsoft Authenticator, 1Password or any app that supports time-based codes).
- Scan the QR code shown on the screen, or type the key under it.
- Enter the six-digit code the app shows.
From then on, every sign-in asks for your password and the current code from the app. Your company may let you choose Later; until you set the app up, every page reminds you, and the sensitive actions below stay closed to you. Set it up on day one: it protects your clients’ details, which data-protection law treats as personal data.
Recovery codes
Once the two-step sign-in is set up, open Recovery codes in your account menu and keep the codes somewhere safe. Each code signs you in once when your phone is lost or replaced. Signing in with a recovery code does not count as a fresh code for sensitive changes, so set up the authenticator app again as soon as you can.
If you have lost both the phone and the codes, your company’s administrator asks Majali support to reset your two-step sign-in; the reset is recorded in your company’s audit log. You then set it up again at your next sign-in.
Sensitive changes ask for a fresh code
Some actions ask for a code from your app again, even while you are signed in: downloading contact details, exporting data, creating or revoking keys, changing domains, and erasing a person’s data. The fresh code is good for a few minutes, so a run of related changes asks only once.
The network access list
A company can restrict its admin to the addresses of its offices. When your company has switched this on, signing in from elsewhere shows a message instead of the admin. The administrator who manages the list can add your address from the admin; see Security.
Password and language
Change password sits in your account menu. The admin follows the language you choose there, English or Arabic, and listings keep both languages whatever you pick.
Next
A tour of the admin: what each section of the menu is for.