Hi!
We are thinking in enable the two-step verification feature, but we need to know more details about the behavior, like:
1. Expiration time of each session.
2. Can I adjust and change this time?
3. Does the user need to put the code every time they perform a push/pull/clone?
4. In addition to the mobile app, can I send the code trough sms or email too?
5. Can I enables this resource only to a single project (per-project activation)?
6. The ssh key is a pre-req?
Thank you.