How-To Guides
Set up and use 2 Factor Authentication (2FA)
Enable two-factor authentication and secure your SupporterBase account
Two-factor authentication (2FA) adds an extra layer of security to your SupporterBase account. When enabled, logging in requires both your email and password, plus a one-time code (sent by SMS, generated in an authenticator app, or scanned via QR code).
This means even if someone has your password, they cannot access your account without also having your one-time code.

Enabling 2FA for all users (admin)
As an admin, you can require 2FA for every user in your SupporterBase.
- Navigate to Settings > Configurations.
- For the setting "What Two factor authentication (2FA) mode would you like to apply to your SupporterBase?", select Required from the dropdown.
- All users will now need to set up 2FA when they create their accounts or the next time they log in.

Enabling 2FA for your own account
- In the left-hand navigation, click your account name to go to your account page.
- At the bottom right, click Enable Two-factor authentication.
- Click Verify device.
- Choose your preferred verification method: SMS code sent to your phone, QR code scan, or Google Authenticator (or another authenticator app).
- Once verified, backup codes will be displayed. Save these somewhere secure (e.g. a password manager). Each code can be used once if you lose access to your phone.
Save your backup codes immediately
Backup codes are shown only once. You must save them before closing the page.



Using 2FA when logging in
- Log in with your email and password as normal.
- You will be prompted for a verification code.
- Enter the one-time code from your SMS message, your authenticator app, or a backup code (if you cannot access your device).
- Once the code is accepted, you will be logged in.