This guide explains how to set up and use Two-Factor Authentication (2FA), which adds an extra layer of security to your account by requiring a second verification step in addition to your password.
You can enable either an Authenticator App (such as Google Authenticator) or an Email OTP (One-Time Password), with only one method active at a time.
This article covers:
Enabling 2FA
Navigate to your account and click Edit account info.
You can choose from the following 2FA options:
Authenticator app
Email one time password (OTP)
Authenticator App
1. Click the Enable Authenticator App button to open the setup page.
2. Open the Authenticator App of your choice (e.g., Google Authenticator, Authy, Microsoft Authenticator).
3. On the setup page, scan the displayed QR code using your app. Alternatively, you can manually add your account by entering the account name and secret key shown on the page.
4. Once added, your app will start generating 6-digit codes. Enter the current 6-digit code into the input field.
5. Click the 'Confirm & Enable 2FA' button to complete the setup.
✅ Tip: Keep a backup of the secret key in a safe place in case you lose access to your phone.
Email OTP
1. Click the 'Enable Email OTP' button.
2. Your email address will be used to receive sign-in codes whenever you log in.
✅ Tip: Make sure you have access to your registered email address at all times.
Logging in with 2FA
When you log in, enter your username and password as usual. After that, you will be directed to the 2FA screen.
Authenticator App (TOTP)
1. Open your Authenticator App and find the 6-digit code associated with your account.
2. Enter the code into the input field.
3. Click the Verify button to continue.
⚠️ Limits: You can attempt verification up to 5 times. After 5 failed attempts, 2FA will be locked for 15 minutes.
Email OTP
1. After entering your username and password, a sign-in code will be sent to your registered email.
2. Check your email inbox for the code.
3. Enter the code into the input field.
4. Click the Verify button to continue.
⚠️ Limits:
- The code will expire in 10 minutes.
- You can attempt verification up to 5 times. After 5 failed attempts, 2FA will be locked for 15 minutes.
- You can request up to 5 code resends within 60 seconds.
Remembering Devices
For convenience, you can choose to remember your device. If enabled, you will not be required to use 2FA again on that device for the next 30 days. Only enable this option on devices you trust and use regularly.
The Device Management console is located at Edit account info.
Best Practices
To ensure your account remains secure, follow these best practices:
- Do not share your 2FA codes with anyone.
- Always keep your email account secure with a strong password.
- If using an Authenticator App, keep a backup of your secret key.
- Use 2FA on trusted devices only.
- Immediately contact support if you suspect unauthorized access.