From July 1st, 2025, all Formitize accounts connected to Xero will need to have Multi-Factor Authentication (MFA) enabled. This important update is designed to improve security, align with Xero’s latest requirements and ensure a seamless connection between your Formitize and Xero accounts.
Why Is This Happening?
Xero has introduced new security requirements for all connected apps. Previously, Formitize users could connect to Xero without additional authentication, but Xero has now set a maximum connection limit. To keep our connection open (and growing), we need to enforce MFA.
Put simply:
- No MFA = no new Xero connections.
- To keep everything working smoothly, MFA is now essential.
This change protects your business and helps maintain your access to Formitize’s powerful Xero integration.
What You Need To Do
If your company already uses Xero through Formitize:
-
MFA must be enabled for your account by July 1st, 2025.
-
After that date, syncing to Xero will be disabled if MFA is not enabled.
-
A warning banner and reminders will be added in your Formitize dashboard leading up to the change.
-
Emails will also be sent to your company’s Super Admin:
-
30 days before the change
-
7 days before
-
Final reminder, 1 day before
-
To prepare:
1. Go to Settings > Security > 2FA Settings and enable MFA.
2. Make sure your mobile number and email address are up to date in My Profile.
If You’re Connecting to Xero for the First Time
From now on, you won’t be able to connect to Xero in Formitize unless MFA is enabled. It’s a quick process—and it’s a powerful way to keep your data safe.
Setting Up MFA is Easy
We’re also improving the MFA setup process to make it more user-friendly:
-
You’ll be able to update your own MFA details (like phone or email).
-
You may see a helpful pop-up after login prompting you to update your details if you haven’t already.
-
Super Admins will have greater control over enforcing MFA across their teams.
Why MFA Matters
MFA is one of the simplest and most effective ways to secure your account. It means your login is protected not just by a password, but by a second verification step—like a code sent to your phone or email.
In a world of increasing cyber threats, it’s a smart move that protects:
-
Your financial data
-
Your clients' sensitive information
-
Your business reputation
A Smarter, Safer Formitize Experience
While this change is driven by Xero’s policies, it’s also an opportunity to bring better security practices into your business. We’re making MFA easier than ever to manage, and this change gives Super Admins more control and transparency across their teams.
Let’s make July 1st a smooth, secure transition for everyone.
Thank you for being a secure and proactive part of the Formitize community.