Two-factor authentication

Add an extra layer of security to your account with two-factor authentication (2FA). Currently supports email OTP — authenticator app support is coming soon.

Where to find it

Go to Settings → Security from the sidebar navigation. The two-factor authentication settings are on the Security page.

Setting up 2FA

  1. Open Settings → Security
  2. Click Enable two-factor authentication
  3. Enter the 6-digit code sent to your email
  4. Save your backup codes — they are shown only once. Copy them to a safe place (password manager, encrypted note, or printed copy). Each code works once.

Important: since 2FA codes are sent to your email, backup codes are your only out-of-band recovery method. If you lose access to both your email and backup codes, you'll need to contact support.

Account lockout

After 10 consecutive failed 2FA attempts, your account is temporarily locked for 15 minutes. This prevents brute-force attacks. Wait and try again, or use a backup code to sign in immediately.

Signing in with 2FA

After entering your email and password, check your inbox for a 6-digit verification code. Enter the code on the sign-in page to complete authentication. Codes expire after a few minutes — you can request a new one if needed.

If you lose access

Use one of the recovery codes you saved during setup. Each code works once. If you've lost your recovery codes, contact support.

Coming soon

Authenticator app support (Google Authenticator, Authy, 1Password) and passkey support are on the roadmap.

Quick links