Replies: 3 comments 2 replies
-
|
Hi! 👋 Great observation — this issue has confused quite a few GitHub users recently, and I’d be happy to help clarify it. 🔍 What’s Going On with "Insecure" Labels?Even if 2FA is enabled, GitHub may still label your account (or others in your organization) as "Insecure" if:
✅ Recommended Fixes / Workarounds
🧠 TL;DR
Let me know if you'd like help verifying your org settings or testing it from another account — happy to assist!
|
Beta Was this translation helpful? Give feedback.
-
|
I've noticed that in the People view under Organization, most users—including myself—are marked as "insecure," even though we have 2FA enabled. I've double-checked my account and can confirm that 2FA is active. I also tried toggling between SMS and other methods to see if that would refresh the status, but it didn't help. Could you please clarify why this status appears and whether there's something else we need to do to reflect the correct security posture are not ? |
Beta Was this translation helpful? Give feedback.
-
|
Disable methods marked as "Less secure" in the two-factor authentication settings to resolve this issue, such as "SMS/Text message":
|
Beta Was this translation helpful? Give feedback.

Uh oh!
There was an error while loading. Please reload this page.
-
Select Topic Area
Question
Body
In the People view in Organization I noticed that most users (including me) are listed as "insecure" despite requiring 2FA. I can verify in my account that 2FA is indeed enabled. I also tried switching it to SMS and back to see if that would reset it.
Beta Was this translation helpful? Give feedback.
All reactions