---
title: "Set up a reviewer signing token"
canonical: "https://support.appfire.com/space/CDML/649760336/Set%20up%20a%20reviewer%20signing%20token"
format: markdown
---
> Macro (aura-html)


## <span style="color: #172b4d">Personal code setup prompt</span>

<span style="color: #172b4d">For an approval that is configured to require an e-signature, a user attempting to approve content for the first time in that approval is prompted to set up a signing token.</span>

> ℹ️ <span style="color: #172b4d">This token needs to be set up before the user is able to approve or reject the content. </span>

<span style="color: #172b4d">Choose </span><span style="color: #172b4d">**setup personal code **</span><span style="color: #172b4d">in the workflow state dialog box.</span>

![image](media://4eaa8990-c1e5-4ac2-993d-739e4f5a6d4b)

<span style="color: #172b4d">A user can also set up a personal code through the </span><span style="color: #172b4d">**Signing Token**</span><span style="color: #172b4d"> option in the page tools menu.</span>

![image](media://385b478f-dd3d-4214-9b03-6c8ebd7acbc4)

<span style="color: #172b4d">Both these options open the </span><span style="color: #172b4d">**Signing Token**</span><span style="color: #172b4d"> tab in the current user's profile</span>

## User Signing Token tab

Initial setup instructions for the authentication app are displayed in the <span style="color: #172b4d">**Signing Token**</span><span style="color: #172b4d"> tab in the current user's profile.</span>

![image](media://2af5bb41-1c2c-4b45-91e1-ed28d4f7775f)

<span style="color: #172b4d">The user must</span>

- <span style="color: #172b4d">Download and install an authentication app to a smart device or computer</span>
- <span style="color: #172b4d">Validate the setup of the app for the current instance (using the email address that the user is currently using to log in to Confluence)</span>

Setup varies according to the chosen app and the smart device operating system or desktop app or browser extension being used.

> ℹ️ Existing authentication apps on your device can be used to set up a new account to manage the personal code.

## Initialize the signing token> Macro (anchor)



Once the authentication app is installed on the device

- Add the user email address used to log in to Confluence to **Step 2 Email Validation** in the **Comala Document Management signing token setup** dialogue box
- Choose **Validate** to generate a confirmation email with a link that allows the setup of the authentication app account for the user on the device

If required there is an option to resend this validation email.

<span style="color: #172b4d">To validate your email address choose the </span>**Go to Approval signing token settings**<span style="color: #172b4d"> link in the email.</span>

![image](media://1da715a8-8a4f-481d-af95-e3e23ae6b0b9)

> 📝 The link for the email validation is time-limited (usually to 15 minutes). After this period a new validation email is required.

The link returns you to the instance.

A QRCode is displayed to use for the signing token setup using the authenticator app installed on your smart device.

![image](media://135a8b43-3f8d-49be-865b-c14cd15489d3)

To initialize the approval signing token, the QRCode must be scanned to your smart device authenticator app. This generates an authentication account specific to the user email and Comala Documentation Management in the current instance.

> ℹ️ manual setup deatils are provided for desktop authentication apps or browser authentication extensions.

## Adding the approval signing token account to the authenticator app> Macro (anchor)



The QR code is used by the authenticator app to set up the authentication account linked to the user and the Confluence instance.

A numeric signing token is generated by your authentication app using the QRCode:

- Signing token code required is set as a 6-digit numeric code

This should be automatically set up in the app when the QRCode is scanned/app is manually setup

> 📝 Do not use any other options (if offered by the app) as only a 6-digit code is accepted by Comala Document Management.

This signing token is specific to the content review and is different from any signing token you may use for access to your Confluence instance

<span style="color: #172b4d">Scan the QRCode generated to your authenticator app.</span>

![image](media://3f611b3d-118a-4f3a-bca5-af4cb6f3f3c8)

- <span style="color: #172b4d">Edit the account details (if required to identify for the current instance)</span>
- <span style="color: #172b4d">Choose </span><span style="color: #172b4d">**Save**</span>

<span style="color: #172b4d">The authenticator app displays a 6-digit numeric token.</span>

![image](media://db143fc9-1710-403c-a716-54874f70f7c9)

The signing token is usually renewed every 30/60 seconds by the authenticator app.

  
Add the approval signing token to the user **Comala Document Management signing token setup** dialog box.

![image](media://eb77a690-b657-49ed-b43c-5dd527821f4d)

Choose **Validate**.

![image](media://53ee565c-311f-4f74-a074-4750e0bf959b)

- Signing token creation date and the token expiration date are displayed for the user

Confluence global administrators can reset the need to initialize the signing token.

## Related pages

- [https://appfire.atlassian.net/wiki/spaces/CDML/pages/649757622](https://appfire.atlassian.net/wiki/spaces/CDML/pages/649757622)
- [https://appfire.atlassian.net/wiki/spaces/CDML/pages/649595003](https://appfire.atlassian.net/wiki/spaces/CDML/pages/649595003)
- [https://appfire.atlassian.net/wiki/spaces/CDML/pages/649890845](https://appfire.atlassian.net/wiki/spaces/CDML/pages/649890845)
- [https://appfire.atlassian.net/wiki/spaces/CDML/pages/649693211](https://appfire.atlassian.net/wiki/spaces/CDML/pages/649693211)
- [https://appfire.atlassian.net/wiki/spaces/CDML/pages/649889506](https://appfire.atlassian.net/wiki/spaces/CDML/pages/649889506)
- [https://appfire.atlassian.net/wiki/spaces/CDML/pages/650347320](https://appfire.atlassian.net/wiki/spaces/CDML/pages/650347320)