Two-Factor Authentication, or 2FA, adds a second verification step to account sign-in.
When enabled, a one-time code from a supported authenticator application can be required after the Email/Username and Password are accepted.
When Two-Factor Authentication is available for your account, open your personal profile or security controls and select the option to enable it.
The system provides a QR Code or setup key for a TOTP-compatible authenticator application.
Two-Factor Authentication is not fully operational until the confirmation process succeeds.
After confirmation, Recovery Codes become available for emergency access.
Recovery Codes allow account access if the normal 2FA device is unavailable.
Store them in a secure Password Manager or another protected location that is separate from the authenticator device.
Each Recovery Code can be used once. After a code is used successfully, it is removed from the available set.
If additional codes are needed and the interface provides the option, generate a fresh set and store the replacement codes securely.
After entering the normal login credentials, provide the current one-time authenticator code when prompted.
If the authenticator device cannot be used, choose the Recovery Code option on the Two-Factor challenge screen and enter one unused emergency Recovery Code.
Never share the QR setup secret, authenticator codes, or Recovery Codes. These values provide access beyond the Password and should be treated as sensitive authentication information.