Required for admins and pros
Admin and pro accounts must use TOTP-based two-factor. Customer accounts can opt in.
Setup
- Settings → Security → Enable two-factor
- Scan the QR code with Google Authenticator, Authy, or 1Password
- Enter the current 6-digit code to confirm
- Save your recovery codes somewhere safe (printed, password manager)
Signing in with 2FA on
After password, you'll be prompted for the 6-digit code. The challenge code is time-limited (30 seconds).
Lost your device?
Use one of your recovery codes to sign in, then disable + re-enable 2FA with the new device. If you've lost both the device and the codes: contact support for identity-verified manual recovery.