> ## Documentation Index
> Fetch the complete documentation index at: https://docs.landerlab.io/llms.txt
> Use this file to discover all available pages before exploring further.

# Set Up Two-Factor Authentication (2FA)

> Protect your LanderLab account with two-factor authentication. Connect an authenticator app, confirm the 6-digit code, and save your backup codes in a few minutes.

Two-factor authentication adds a second step to your login. After your password, LanderLab asks for a 6-digit code from an authenticator app on your phone. The code changes every 30 seconds, so even if someone gets your password, they still cannot sign in to your account.

Setup takes about two minutes and only needs to be done once per account.

<Frame>
  <img src="https://mintcdn.com/landerlab-babdc23f/snMvPQne1RoMtFPi/images/2fa-landerlab.png?fit=max&auto=format&n=snMvPQne1RoMtFPi&q=85&s=9bc482e310080e430fbec0886212c500" alt="2fa Landerlab" width="1920" height="958" data-path="images/2fa-landerlab.png" />
</Frame>

## Before you start

You need two things:

* **An authenticator app** installed on your phone or computer
* **A password on your LanderLab account.** If you signed up with Google or Apple, you can create one during setup

## Choose an authenticator app

Any app that supports time-based one-time passwords (TOTP) works with LanderLab. These are the most common ones:

<CardGroup cols={2}>
  <Card title="Google Authenticator" icon="google" href="https://support.google.com/accounts/answer/1066447">
    Free and simple. Available for iOS and Android with optional cloud backup.
  </Card>

  <Card title="1Password" icon="key" href="https://support.1password.com/one-time-passwords/">
    Stores your codes next to your passwords and syncs across all your devices.
  </Card>

  <Card title="Authy" icon="mobile" href="https://authy.com/download/">
    Multi-device support with encrypted backups, so you keep access if you change phones.
  </Card>

  <Card title="Microsoft Authenticator" icon="microsoft" href="https://support.microsoft.com/en-us/account-billing/download-and-install-the-microsoft-authenticator-app-351498fc-850a-45da-b7b6-27e523b8702a">
    Works well if your team already uses Microsoft 365.
  </Card>
</CardGroup>

<Tip>
  Pick an app that backs up or syncs your codes. If your only copy lives on one phone and that phone is lost, you will need your backup codes to get back in.
</Tip>

## Enable two-factor authentication

<Steps>
  <Step title="Open your Security settings">
    Click the **gear icon** in the top right corner of the dashboard, then click **Profile** in the left sidebar under **Account**. Scroll to the **Security** card.
  </Step>

  <Step title="Click Enable">
    Next to **Two-factor authentication**, click **Enable**. A setup window opens with three steps.
  </Step>

  <Step title="Confirm your password">
    <Frame>
      <img src="https://mintcdn.com/landerlab-babdc23f/O1I_SCjnnzv5GEFt/images/confirm-passowrd.png?fit=max&auto=format&n=O1I_SCjnnzv5GEFt&q=85&s=b6d6c08c4aabec2fbfeccb9c16c96084" alt="Confirm Passowrd" width="580" height="373" data-path="images/confirm-passowrd.png" />
    </Frame>

    Enter your LanderLab password and click **Continue**.

    Signed up with Google or Apple and never set a password? Click **Set up a password** in the same window, create one, then continue from where you left off.
  </Step>

  <Step title="Scan the QR code">
    <Frame>
      <img src="https://mintcdn.com/landerlab-babdc23f/00wIMxi3nzjtKeTF/images/scan-qr-code.png?fit=max&auto=format&n=00wIMxi3nzjtKeTF&q=85&s=f2db6ffac652a7bfafa2180827bc95ec" alt="Scan Qr Code" width="588" height="577" data-path="images/scan-qr-code.png" />
    </Frame>

    Open your authenticator app, choose the option to add a new account, and point your camera at the QR code on screen.

    If you cannot scan it, click **Can't scan? Enter the key manually** and type the key into your app instead.
  </Step>

  <Step title="Enter the 6-digit code">
    Your app now shows a 6-digit code for LanderLab. Type it into the six boxes and click **Enable two-factor**.
  </Step>

  <Step title="Save your backup codes">
    LanderLab shows ten backup codes. Click **Copy** or **Download** to save them, then click **Done**.
  </Step>
</Steps>

Two-factor authentication is now active. The next time you log in, LanderLab asks for a code after your password.

## How to add the account in each app

The wording changes slightly from app to app, but the flow is the same:

<AccordionGroup>
  <Accordion title="Google Authenticator">
    Open the app, tap the **plus** button in the bottom right, choose **Scan a QR code**, and point your camera at the screen.
  </Accordion>

  <Accordion title="1Password">
    Create or open the login item for LanderLab, click **Add more** then **One-time password**, and scan the QR code with the camera icon.
  </Accordion>

  <Accordion title="Authy">
    Tap **Add Account** at the bottom of the app, choose **Scan QR Code**, and scan the code on screen.
  </Accordion>

  <Accordion title="Microsoft Authenticator">
    Tap the **plus** icon, choose **Other account (Google, Facebook, etc.)**, and scan the QR code.
  </Accordion>
</AccordionGroup>

## About your backup codes

Each backup code signs you in one time if you cannot reach your authenticator app. They are shown once during setup and never again.

<Warning>
  Store your backup codes somewhere safe and separate from your phone, such as a password manager or a printed copy. Without them and without your authenticator app, you will be locked out of your account.
</Warning>

Do not save them in the same place you store your LanderLab password if that place is only protected by that password.

## Logging in with two-factor enabled

<Steps>
  <Step title="Enter your email and password">
    Log in as usual.
  </Step>

  <Step title="Open your authenticator app">
    Find the LanderLab entry and read the current 6-digit code.
  </Step>

  <Step title="Enter the code">
    Type it in before it refreshes. If the timer is nearly out, wait for the next code and use that one.
  </Step>
</Steps>

## Troubleshooting

<AccordionGroup>
  <Accordion title="My code is rejected every time">
    Codes are tied to the clock on your device. If your phone's time is off by more than a few seconds, every code fails. Turn on automatic date and time in your phone settings, then try again. In Google Authenticator you can also use **Settings** > **Time correction for codes**.
  </Accordion>

  <Accordion title="The QR code will not scan">
    Click **Can't scan? Enter the key manually** and type the key into your app. Zooming in on the page or increasing your screen brightness also helps.
  </Accordion>

  <Accordion title="I lost my phone">
    Use one of your backup codes to log in, then set up two-factor authentication again on your new device. Each backup code works only once.
  </Accordion>

  <Accordion title="I lost both my phone and my backup codes">
    Contact LanderLab support from the email address on your account so the team can verify your identity and help you regain access.
  </Accordion>

  <Accordion title="I deleted the LanderLab entry from my app">
    If you can still log in with a backup code, do that, then turn two-factor authentication off and set it up again to get a fresh QR code.
  </Accordion>
</AccordionGroup>
