New MFA and Password Changes to TDIS
The Texas Digital Identity Solutions (TDIS) platform, which manages access to CAPPS, is making changes to modernize and strengthen security. Changes to multifactor authentication (MFA) and to the password policy will be implemented over the next several months in two phases.
- Phase 1 – Effective Aug. 27, 2026: Passkeys are an MFA option.
As of Aug. 27, passkeys (such as Windows Hello for Business) are available as an authentication option. The use of a passkey for authentication is optional. No user action is required for this phase. - Phase 2 – Effective early December 2026: Password rules change and the email MFA option ends.
- TDIS password rules will change to conform to the latest National Institute of Standards and Technology digital identity guidelines standards. Password rules will allow for all characters with no complexity or expiration requirements.
- Email as MFA will be removed as an option.
- Any user whose sole MFA option is email will lose access to the TDIS portal and all integrated applications (including CAPPS)*.
- All users who have only email as an MFA option must enroll an additional authentication method as soon as possible. Users can add additional MFA methods to their accounts in the TDIS portal.
The CAPPS team will work with agency level 1 support staff and delegated administrators (DAs) to identify agency users with email as their only MFA method, for individual outreach.
*Note: Users who lose access in Phase 2 will need to contact their agency DAs for help resetting their login options.
Agency level 1 support staff and TDIS DAs may contact the CAPPS Service Desk with any questions or concerns.