Setting Up Two-Factor Authentication
Two-factor authentication (2FA) adds an extra layer of security to your account. Even if someone learns your password, they can't access your account without also having your phone.
Why Use Two-Factor Authentication?
Think of 2FA like having two locks on your front door. Your password is the first lock—it's good protection, but one lock can be picked. Two-factor authentication is the second lock, and it changes every 30 seconds. This makes your account much harder to break into.
What You'll Need
Before starting, download an authenticator app on your phone:
- Google Authenticator (free, iOS and Android)
- Authy (free, iOS and Android)
- 1Password (paid, includes authenticator)
- Microsoft Authenticator (free, iOS and Android)
Any authenticator app that supports TOTP (time-based one-time passwords) will work.
Setting Up 2FA
Step 1: Go to Security Settings
- Log in to your account
- Click your profile icon in the top right
- Select Account Settings
- Click the Security tab
Step 2: Enable Two-Factor Authentication
- Find the Two-Factor Authentication section
- Click Enable 2FA
- You'll see a QR code on screen
Step 3: Scan the QR Code
- Open your authenticator app
- Look for an option to add a new account (usually a + button)
- Choose Scan QR Code
- Point your phone's camera at the QR code on screen
- Your authenticator will add the account automatically
Step 4: Enter the Verification Code
- Your authenticator app now shows a 6-digit code
- Enter this code in the verification field on screen
- Click Verify and Enable
That's it! Your account is now protected with two-factor authentication.
Saving Your Backup Codes
After enabling 2FA, you'll receive backup codes. These are critically important!
What Are Backup Codes?
Backup codes let you log in if you lose access to your authenticator app (lost phone, new device, etc.). Each code can only be used once.
How to Save Them
- After enabling 2FA, click View Backup Codes
- You'll see 10 one-time codes
- Save them somewhere safe:
- Print them and store in a secure location
- Save in a password manager
- Write them down and keep with important documents
- Never share these codes with anyone
Logging In with 2FA
Once 2FA is enabled, here's how login works:
- Enter your email and password as usual
- You'll see a prompt for your 2FA code
- Open your authenticator app
- Enter the 6-digit code (it changes every 30 seconds)
- Click Verify
Tip: The code refreshes every 30 seconds. If your code is about to expire, wait for a new one.
If You Lose Your Phone
Don't panic! You have options:
Use a Backup Code
- On the 2FA verification screen, click Use backup code
- Enter one of your saved backup codes
- You'll be logged in
- Set up 2FA again with your new device
Contact Support
If you don't have backup codes:
- Contact support with proof of identity
- We'll verify your account ownership
- We can disable 2FA to restore access
- Re-enable 2FA immediately after
Disabling 2FA
If you need to turn off two-factor authentication:
- Go to Account Settings > Security
- Find Two-Factor Authentication
- Click Disable 2FA
- Enter your password to confirm
- 2FA is now disabled
Note: We strongly recommend keeping 2FA enabled for account security.
Troubleshooting
"Code is invalid"
- Check your phone's time is set automatically
- Wait for the next code if the current one is about to expire
- Make sure you're entering the code for the correct account
Authenticator not showing account
- Re-scan the QR code
- Manually enter the setup key (shown below QR code)
- Check you're in the correct authenticator app
Lost backup codes
- Log in with your authenticator app
- Go to Security settings
- Generate new backup codes
- Save them in a safe place