# Self-Serve Portal

The Self-Serve Portal lets employees reset their passwords and MFA credentials on their own. The portal uses Incode biometric verification to confirm the employee's identity before allowing any credential changes.

<IntegrationsEnablement />

***

## Self-Serve Flow

1. **Log in:&#x20;**&#x54;he employee navigates to the Self-Serve Portal and enters their work email. Incode checks that the email exists in the connected directory.
2. **Complete verification:&#x20;**&#x54;he employee scans a QR code or requests an SMS link to complete identity verification on their mobile device. Verification includes a selfie liveness check.
3. **Reset credentials:&#x20;**&#x41;fter successful verification, the browser redirects the employee to the portal where they can reset their password or MFA credentials.

***

## Key Features

- **IAM integration**: The portal displays available reset options based on your organization's connected IAM providers, such as Okta, Microsoft Entra, or Ping Identity.
- **Self-serve reset options**: Employees can reset their MFA authenticator or password directly from the portal.

After selecting a reset option, the employee receives an email from their IAM provider with instructions to complete the process.

> 📘 Note
>
> **Note**: Okta super admins cannot reset their password or MFA using the Self-Serve Portal.

***

## Set Up the Self-Serve Portal

1. Log in to Dashboard.
2. In the left menu, click **Integrations**.
3. Locate the **Self-Serve Portal** integration and open its configuration.
4. Configure the portal settings, including any linked IAM integrations such as Okta or Microsoft Entra.
5. Click **Save**. The portal URL is generated and goes live immediately.
6. Share the portal URL with your employees.

<br />
