Two-Factor Authentication (2FA)

Two-factor authentication (2FA) adds a second verification layer on top of your password. Even if your password is compromised, your account can't be accessed without the second factor.

2FA Methods

  • Authenticator app (TOTP): A 6-digit code produced by apps like Google Authenticator or Authy. The most secure option.
  • Email code: A one-time code sent to your email at login.

Setting Up App-Based 2FA

1

Start 2FA setup

Start 2FA setup from Settings β†’ Security in the panel. You're shown a QR code.
2

Scan the QR code

Scan the QR code with your authenticator app. The app starts producing 6-digit codes for your account.
3

Verify the code

Confirm setup by entering the current code shown by the app.
4

Save your backup codes

When setup completes, you receive backup recovery codes. Save them somewhere safe.

Don't lose your backup codes

If you lose access to your phone (lost/reset), backup recovery codes are the way into your account. Store them somewhere safe, separate from your password. Each backup code can be used only once.

Email-Based 2FA

If you don't want to use an authenticator app, you can enable email-based 2FA. In this mode, a one-time code is sent to your email at every login.

Disabling 2FA

You can disable 2FA anytime from Settings β†’ Security. For security, the disable action also requires verification.

Make it mandatory for teams

For accounts accessed by multiple people, encourage all team members to use 2FA. A single weak link can put the whole account at risk.

Related Topics

Was this page helpful?