Your account and access¶
Open My Account from the user menu to manage your profile and understand your access.
Update your profile¶
- Open the account menu and select My Account.
- Update your first name, middle initial, last name, or phone number as needed.
- Choose the time zone RiskVault should use for displayed dates and times.
- Choose the light or dark appearance.
- If available, set your AI autocomplete preference.
- Save your changes.
Your email address is account information and is not changed through the normal profile form.
Image needed: My Account profile page with the time-zone and appearance settings highlighted.
Password and multifactor authentication¶
People using a local RiskVault account can change their password, request a reset link, and configure an authenticator app.
To set up authenticator-app multifactor authentication:
- Open My Account and find the security or multifactor section.
- Start authenticator setup.
- Scan the displayed QR code with your authenticator app.
- Enter the verification code generated by the app.
- Confirm setup and store any recovery information according to your organization's policy.
If you sign in through Microsoft, Google, Okta, or another identity provider, password and authentication-factor changes may need to be made with that provider.
Check your effective claims¶
Open My Account > My Claims to see the capabilities currently associated with your account. Claims may come through a role or policy rather than being assigned directly.
Use this page when a menu item is missing, a button is unavailable, RiskVault displays Access Denied, or a workflow action does not appear.
Image needed: My Claims page showing claim groups and enabled claims, with no personal information visible.
If access seems wrong¶
- Confirm you are signed into the expected account.
- Check My Claims for the capability named in the page or error.
- Confirm you have access to the specific risk, asset, or business unit.
- Check whether the action is allowed in the record's current workflow state.
- Sign out and back in if an administrator recently changed your access.
- If the problem remains, send the administrator the page name, RR number if applicable, action attempted, and exact error message.
Do not ask for a broad administrator role just to solve one missing action. A targeted policy or per-risk permission is safer and easier to audit.
For external AI connections, see What MCP is.
Manage personal risk templates¶
The account page can list templates you own.
- Open the personal templates section.
- Review the template name and purpose.
- Delete an obsolete personal template when it should no longer appear during creation.
Shared and system templates are managed separately. Deleting your personal copy does not remove an administrator-managed template with a similar name.