---
title: "Credentials prompt"
canonical: "https://support.appfire.com/space/CDML/649595003/Credentials%20prompt"
format: markdown
---
> Macro (aura-html)


## Overview

Depending on the workflow approval configuration, you can be required to [confirm your identity](https://appfire.atlassian.net/wiki/spaces/CDML/pages/649890845) prior to taking part in a [content review](https://appfire.atlassian.net/wiki/spaces/CDML/pages/650313809) by providing either:

- your password or a signing token
- your username and password or signing token

Approvals are configured individually to require identity authentication.

> ℹ️ A workflow editor can edit an individual approval to require user authentication [using the workflow builder](https://appfire.atlassian.net/wiki/spaces/CDML/pages/650152120).

## Credentials prompt

The user credentials prompt is added to the workflow state dialog box in the state containing the approval.

![image](media://fd4d8b69-b29b-4396-bb3b-46a984a383b9)

This is most commonly implemented for statutory compliance purposes.

The **Approve** and** Reject** buttons are unavailable (greyed out) until you enter the requested credentials.

On entering the username and password, the buttons will become active. The reviewer can then mouse over each review button to display the destination state.

![image](media://9f60c7ca-d378-4ab6-a4a1-e6d1dbb1d144)

Credentials are checked when either the **Approve** or **Reject** button is pressed.

- Failed login attempts are logged in the [Confluence audit log](https://appfire.atlassian.net/wiki/spaces/CDML/pages/649661282). If a signing token was required, the failed attempt is also logged in the [e-signatures global configuration screen](https://appfire.atlassian.net/wiki/spaces/CDML/pages/650347320).
- Required type of credentials (Confluence username and password, Confluence password, or signing token) is set by a global administrator in the [app global e-signatures configuration screen](https://appfire.atlassian.net/wiki/spaces/CDML/pages/650347320)

> ℹ️ If authentication requires a signing token, each user must set up a personal code [using a third-party authentication app](https://appfire.atlassian.net/wiki/spaces/CDML/pages/649693211).

## See also

- [Reviewer authentication](https://appfire.atlassian.net/wiki/spaces/CDML/pages/649890845)
- [E-signature](https://appfire.atlassian.net/wiki/spaces/CDML/pages/649757622)
- [Authentication apps](https://appfire.atlassian.net/wiki/spaces/CDML/pages/649693211)

| [‹ Back to Content reviews](https://appfire.atlassian.net/wiki/spaces/CDML/pages/650313809) |
| --- |