Two-factor authentication setup
Two-factor authentication (2FA) protects your administrator account with a time-based code from an authenticator app, in addition to your password.
Setting up 2FA
- Visit Account → Security.
- Click Enable two-factor authentication.
- Scan the QR code with your authenticator app (Google Authenticator, 1Password, Microsoft Authenticator, Authy, etc.).
- Enter the 6-digit code shown by your app to confirm setup.
- Save the recovery codes we generate for you somewhere safe — they're your way back in if you lose your phone.
Signing in with 2FA
After entering your password, you'll be asked for a 6-digit code from your authenticator. Type it and you're in.
Lost your phone?
Use one of your recovery codes (you should have saved 10 when you set 2FA up). Each code is single-use — generate fresh ones afterward from the Security page.
Disabling 2FA
From the same Security page, click Disable two-factor authentication. We require your current password and a fresh 2FA code to confirm.
Enforcement
Facility administrators are encouraged but not required to enable 2FA. Platform-level super-administrators are required to use 2FA.