Two-factor authentication
Add a second step to signing in, using an authenticator app. Read the part about recovery codes before you start.
On this page
Two-factor authentication means a password alone is not enough to get into your account. You also need a code from an app on your phone, which changes every thirty seconds.
If you lose both your phone and your recovery codes, nobody can let you back in. That is not Sitebefy being unhelpful: it is what the feature is. Have somewhere safe to store eight codes before you start.
Install an authenticator app#
Any TOTP app works: Google Authenticator, 1Password, Authy, Bitwarden. If you already use a password manager, it very likely does this too.
Start setup in Sitebefy#
Two-factor authentication is in the security section of your account.
Scan the QR code#
Your app reads the code and starts generating six-digit numbers for Sitebefy. If you cannot scan, the setup screen also shows a key you can type in.
Confirm with a code#
Type the current six-digit number from your app. This proves the app is set up correctly before Sitebefy starts requiring it.
Save your recovery codes#
You are shown eight recovery codes. Each one works once, and they are the only way in if you lose your phone. Save them somewhere that is not your phone: a password manager, or printed and kept with your documents.
Signing in afterwards#
Password first, then the six-digit code from your app. If you do not have your phone, use one of your recovery codes instead.
If you lose your phone#
Sign in with a recovery code, then turn two-factor off and set it up again on the new device. This issues a fresh set of codes and retires the old ones, so do it as soon as you can rather than living on a shrinking pile of codes.
Each code works once and is then spent. Eight codes is eight emergencies, not eight logins a day. When you are running low, regenerate them.