Two-factor authentication: setup and lost access
Turn it on in Profile → Two-factor auth with email, text message or an authenticator app.
What you see
You want to set up two-factor, a setup code is refused, or you've lost the device your codes come from.
- Invalid code. Check your authenticator app.
- Code has expired. Request a new one.
- We couldn't text a code to that number. Check it's correct (and verified, if we're on an SMS trial), or use email or an authenticator app instead.
- Incorrect password.
Why it happens
Two-factor asks for a code every time you sign in. Email and text-message setup codes last 10 minutes; authenticator codes change every 30 seconds, so your device clock must be right. If a text can't be sent at sign-in, the code goes to your email instead.
How to fix it
- Open Profile → Two-factor auth and choose email, phone or authenticator app.
- For an authenticator app, scan the QR code, then enter the 6-digit code it shows.
- If the app's code is refused, check the time on your phone is set automatically, then try the newest code.
- To turn two-factor off, enter your password in the same section.
- Lost the device with your authenticator app and can't sign in? Contact support from your account email.