Two-factor authentication adds an extra layer of protection to your account by asking for a rolling 6-digit code from an authenticator app (such as Google Authenticator, 1Password, or Authy) whenever you sign in with your password.
Turn it on
- In Edit profile, scroll down to Two-factor, select Turn on two-factor, and enter your account password.
- Scan the on-screen QR code with your authenticator app, or type in the provided Setup key manually.
- Type the 6-digit verification code displayed in your authenticator app to confirm the link.
- Store your emergency backup codes in a safe spot: click Download to save the text file, or copy the codes into your password manager. Each single-use code allows you to log in if you ever lose access to your phone. These recovery codes will never be displayed again, so click I saved them once they are safely stored.
Enabling two-factor automatically signs out your account on all other devices.
Signing in
When logging in, type your password as usual, then enter the current code from your authenticator app. If your phone is unavailable, select Use a backup code instead.
New backup codes, or turning it off
- New backup codes: generates a fresh set of recovery codes and invalidates your previous ones immediately.
- Turn off two-factor: removes two-factor protection from your profile. If your organization mandates two-factor for all members, the button displays Required by your organization, and you will not be able to turn it off.
If you lose your phone
Log in using one of your single-use backup codes, then turn two-factor off and on again to register your new device. If you do not have any backup codes saved, an owner of your organization can reset your two-factor security for you (see Require two-factor for your team). If you are the sole owner of the organization, write to support@bienvue.com for identity verification and recovery help.