⚡ HeadLockr now supports Vite for Strapi v5! Click here to get started with the new setup.
Welcome to the blog page. Here you can find all the latest news and updates about the Headlockr multifactor authentication plugin for Strapi. Stay tuned for more.


TL;DR — Strapi introduced a new Access + Refresh Token session model in v5.24.x. Headlockr 4.2.3 is now fully compatible with this system.
Upgrade path: no breaking changes in Headlockr — just upgrade Strapi and Headlockr to the latest versions and you’re good to go.

On June 20, 2025, the cybersecurity world was shaken by revelations of a massive data breach that exposed over 16 billion passwords. Cybercriminals exploited sophisticated malware and phishing tactics, infiltrating popular platforms such as Apple, Google, Facebook, Telegram, GitHub, VPN-services, and various government portals (sources: Cybernews, Forbes, Breachsense, Hindustan Times).
Read More
Protect Your Strapi App with Real MFA
Headlockr now supports Content API MFA & Email 2FA. Boost your Strapi security with true multi-factor authentication—built for serious developers.

We’d love to take this opportunity to introduce ourselves. We are Xander van Dijck and Kevin Vugts, true Strapi enthusiasts at heart. Together, we founded Headlockr in 2024 — the #1 Multi-factor authentication plugin built natively for Strapi. Which is a Plug & Play security add-on for Strapi.
Read More
Bust common misconceptions about MFA, including concerns about cost, complexity, and usability, to understand why it’s essential for everyone.
Read More
Learn how small businesses can implement cost-effective MFA solutions to protect their operations, data, and customer trust.
Read More
Understand the common challenges of implementing MFA, such as user resistance, compatibility issues, and evolving cyber threats, and learn how to overcome them.
Read More
Take a journey through the evolution of MFA, from its early days in physical security to its current role in protecting digital identities.
Read More
Delve into emerging trends in MFA, such as passwordless authentication, AI-powered systems, and wearable devices, shaping the future of cybersecurity.
Read More
Explore the many advantages of MFA, from safeguarding accounts to building trust with customers and meeting regulatory requirements.
Read More
A step-by-step guide to setting up MFA on various platforms to strengthen your online security with minimal effort.
Read More
Discover the key reasons to implement MFA, including enhanced security, protection against phishing, and compliance with industry regulations.
Read More
Learn why Multifactor Authentication (MFA) is essential for protecting sensitive data by requiring multiple forms of verification to secure accounts against cyber threats.
Read More© 2025 copyright Headlockr, all rights reserved