On May 11, 2025, the Administrative Office of the U.S. Courts (AO) began implementing multifactor authentication (MFA) to enhance system security for CM/ECF and PACER. MFA provides an added layer of security to accounts by helping protect against cyberattacks that steal passwords, significantly reducing the risk of unauthorized access.
Users with filing and all other types of CM/ECF-level access will be required to enroll in MFA, while users with PACER-only access will have the option to enroll.
Implementation Details
As of September 15, 2025, enforcement of the updated password standards has been temporarily delayed. In addition, PACER asks that only users who receive a prompt to enroll in MFA when they log in should do so. If you do not receive an MFA enrollment prompt, no action is necessary. Please do not contact the PSC with questions about MFA until you are required to enroll.
By the end of 2025, everyone with CM/ECF-level access will be required to use MFA when logging in.
NOTE: If using third-party software for filing, users should ensure MFA is supported by that software before enrolling to avoid any disruption in their business processes.
Resources
- 
- 
Multifactor Authentication (MFA) – Authentication Applications: describes the MFA enrollment process by adding an authentication application (app), as well as how to delete an authentication app.
- 
Multifactor Authentication (MFA) – Backup Codes: describes the MFA enrollment process by getting backup codes, as well as how to delete backup codes.
- 
Multifactor Authentication (MFA) – Logging In: describes the login process after enrolling in MFA, and what to do if you do not have access to your MFA method(s).
 
- 
Authentication Options
Users can download any authentication application (app) that supports a time-based one-time password (TOTP). The AO does not endorse specific apps, however, some options include Authy, DUO Mobile, FreeOTP, Google Authenticator, and Microsoft Authenticator. Before enrolling in MFA, the AO recommends that users research available authentication apps to decide which one will work best for them and then download their preferred app.
Additionally, users who are unable to download an authentication app will be able to save one-time use backup codes. Once users have used all their backup codes, they will need to request a new batch.
Shared Accounts
Filers and other users with CM/ECF-level access who share their account will be able to add up to five authentication apps. In other words, they can enroll up to four other users’ authentication apps in addition to their own.
Please continue to check the PACER website for more updates and additional information on MFA.
