Two-factor authentication (2FA)
Under Settings → Security you enable 2FA:
1. Scan the QR code with an authenticator app (1Password, Authy, Google Authenticator)
2. Enter the 6-digit code to confirm
3. Save the backup codes somewhere safe — you need them if you lose your device
Backup codes
- 10 single-use codes
- Each one is invalidated after use
- When few remain you can regenerate (the old set is replaced entirely)
For teams
As the account owner you can force 2FA for all team members (require2FA). After that, only members with 2FA can sign in.