Sensitive actions should require validation through the account password or MFA (if enabled), including:
  • Changing the email address associated with the account
  • Disabling MFA
  • Adding a user in "Users and Access"
  • Deleting a Bolt
  • Deleting a database
  • Deleting an environment