Odoo Development
| Availability |
Odoo Online
Odoo.sh
On Premise
|
| Odoo Apps Dependencies |
Discuss (mail)
|
| Lines of code | 502 |
| Technical Name |
wb_otp_login |
| License | OPL-1 |
| Website | https://wanbuffer.com |
| Versions | 18.0 19.0 |
| Availability |
Odoo Online
Odoo.sh
On Premise
|
| Odoo Apps Dependencies |
Discuss (mail)
|
| Lines of code | 502 |
| Technical Name |
wb_otp_login |
| License | OPL-1 |
| Website | https://wanbuffer.com |
| Versions | 18.0 19.0 |
OTP Login - Email 2FA Authentication
Add an extra layer of security to your Odoo login process with Email-based One-Time Password (OTP) authentication. After entering valid credentials, users receive a 6-digit OTP via email that must be entered to complete login. This module ensures secure access with a 60-second countdown timer and automatic OTP expiry.
Features
Email-based OTP verification after successful credential validation.
60-second countdown timer with visual feedback for OTP resend.
Secure SHA256 hashing for OTP storage - codes never stored in plain
text.
1-minute OTP expiry with automatic cleanup of expired tokens.
Terminal logging for development when email server is not configured.
Works with both regular users and superuser login.
1) Install the Module
Go to the Odoo Apps menu and install the OTP Login
module to enable two-factor authentication.
2) Seamless Login Experience
Whether initiating login from the backend or the website, the experience
is consistent. The "Send OTP" button replaces the standard login action.
Backend Login
Website Sign In
3) Universal OTP Verification
Users are guided to the secure OTP entry screen with a countdown timer.
This works seamlessly across both backend and website interfaces.
Backend OTP
Website OTP
4) Email Notification
Users receive a clear, branded email containing their 6-digit One-Time
Password. The email is designed to be easily readable on all devices.
The OTP is valid for 1 minute from the time it was generated. After expiry, you must click "Resend OTP" to get a new code.
Check your spam folder first. If the email server is not configured, the OTP will be logged to the Odoo terminal. Contact your administrator to configure the outgoing mail server.
Yes, the OTP is hashed using SHA256 before storage. The plain-text code is never stored in the database.
Yes, the OTP verification is required for all users including administrators and superuser login attempts.
Our Services
Odoo Customization
Odoo Consultancy
Odoo Implementation
Odoo Migration
Odoo Training
Odoo Integration
Odoo Proprietary License v1.0 This software and associated files (the "Software") may only be used (executed, modified, executed after modifications) if you have purchased a valid license from the authors, typically via Odoo Apps, or if you have received a written agreement from the authors of the Software (see the COPYRIGHT file). You may develop Odoo modules that use the Software as a library (typically by depending on it, importing it and using its resources), but without copying any source code or material from the Software. You may distribute those modules under the license of your choice, provided that this license is compatible with the terms of the Odoo Proprietary License (For example: LGPL, MIT, or proprietary licenses similar to this one). It is forbidden to publish, distribute, sublicense, or sell copies of the Software or modified copies of the Software. The above copyright notice and this permission notice must be included in all copies or substantial portions of the Software. THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.
Please log in to comment on this module