Two-Factor Authentication (2FA)
Learn how to set up and use two-factor authentication to add an extra layer of security to your Digit Tally account.
What is 2FA?
Two-Factor Authentication requires two forms of verification:
- Something you know - Your password
- Something you have - Your phone with authenticator app
Even if someone steals your password, they cannot access your account without the code from your phone.
[SCREENSHOT: 2FA concept with password + phone]
Why Enable 2FA?
Security Benefits:
- ✅ Prevents unauthorized access
- ✅ Protects sensitive financial data
- ✅ Required for high-value transactions
- ✅ Industry best practice
- ✅ Compliance requirement for some businesses
- ✅ Peace of mind
Real-World Protection:
- Phishing attacks blocked
- Stolen passwords useless
- Remote access prevented
- Data breach protection
Prerequisites
Before setting up 2FA, you need:
- Smartphone (Android or iOS)
- Authenticator App (choose one):
- Google Authenticator (recommended)
- Microsoft Authenticator
- Authy
- 1Password
- LastPass Authenticator
Installing Authenticator App:
- Android: Download from Google Play Store
- iOS: Download from Apple App Store
- Free apps available
[SCREENSHOT: Authenticator apps in app stores]
Setting Up 2FA
Step 1: Access 2FA Settings
- Click Profile Menu (top right)
- Select Security
- Find Two-Factor Authentication section
- Click Enable 2FA
[SCREENSHOT: Enable 2FA button in Security settings]
Step 2: Verify Password
Enter your current password to proceed:
- Type your password
- Click Verify
- Ensures it's really you making this change
[SCREENSHOT: Password verification dialog]
Step 3: Scan QR Code
QR Code Displayed:
- Open your authenticator app
- Tap Add Account or + icon
- Select Scan QR Code
- Point camera at QR code on screen
- Account added to authenticator app
[SCREENSHOT: QR code for 2FA setup]
Can't Scan QR Code?
- Click Enter Code Manually
- Copy the setup key shown
- In authenticator app, select Enter Code Manually
- Paste the key
- Account added
Setup Key Example:
Account: Digit Tally (your@email.com)
Key: ABCD EFGH IJKL MNOP QRST UVWX YZ23 4567
[SCREENSHOT: Manual entry option]
Step 4: Enter Verification Code
Verify Setup:
- Open authenticator app
- Find "Digit Tally" account
- See 6-digit code (changes every 30 seconds)
- Enter code in Digit Tally
- Click Verify and Enable
Code Format:
123 456 (6 digits, changes every 30 seconds)
[SCREENSHOT: Verification code entry]
Codes expire after 30 seconds. If a code isn't working, wait for the next code to appear.
Step 5: Save Backup Codes
Critical Step - Don't Skip!
You'll receive 10 backup codes:
BACKUP CODES (Save These!)
1. A1B2-C3D4-E5F6
2. G7H8-I9J0-K1L2
3. M3N4-O5P6-Q7R8
4. S9T0-U1V2-W3X4
5. Y5Z6-A7B8-C9D0
6. E1F2-G3H4-I5J6
7. K7L8-M9N0-O1P2
8. Q3R4-S5T6-U7V8
9. W9X0-Y1Z2-A3B4
10. C5D6-E7F8-G9H0
Important:
- Each code can be used only once
- Store in a safe place (not on your phone!)
- Use if you lose phone or authenticator app
- Print or save to password manager
Saving Options:
- Download - Save as text file
- Print - Print physical copy
- Copy - Copy to password manager
[SCREENSHOT: Backup codes display]
Step 6: 2FA Enabled
✅ Two-Factor Authentication is now active!
Confirmation Shows:
- 2FA enabled badge
- Date enabled
- Recovery email (if set)
- Number of backup codes remaining
- Option to regenerate backup codes
[SCREENSHOT: 2FA enabled confirmation]
Using 2FA for Login
Login Process with 2FA
Step-by-Step:
- Go to
https://app.digit-tally.io - Enter your email address
- Enter your password
- Click Sign In
- 2FA Prompt Appears:
- "Enter authentication code"
- Open authenticator app
- Find Digit Tally account
- Enter the 6-digit code
- Click Verify
- Access granted!
[SCREENSHOT: 2FA login prompt]
Remember Device Option:
- Check "Trust this device for 30 days"
- Won't ask for 2FA code on this device for 30 days
- Only use on your personal devices
- Never use on public/shared computers
[SCREENSHOT: Trust device checkbox]
Using Backup Codes
When to Use Backup Codes
Use backup codes if:
- Lost or broke your phone
- Deleted authenticator app by mistake
- Phone stolen or inaccessible
- App won't generate codes
- Traveling without phone
How to Use Backup Code
At Login:
- Reach 2FA code prompt
- Click Use Backup Code
- Enter one of your saved backup codes
- Code format: A1B2-C3D4-E5F6
- Click Verify
- Access granted
Important:
- Each code works only once
- Keep track of which codes used
- Regenerate new codes when running low
[SCREENSHOT: Backup code entry]
Managing 2FA
Viewing 2FA Status
Security Settings Shows:
- 2FA status (Enabled/Disabled)
- Date 2FA was enabled
- Backup codes remaining (e.g., "7 of 10 unused")
- Trusted devices list
- Recovery options
[SCREENSHOT: 2FA management panel]
Regenerating Backup Codes
Create New Backup Codes:
When to Regenerate:
- Used most of your codes
- Codes possibly compromised
- Lost your saved codes
- Want fresh set for security
Process:
- Go to Security Settings
- Find 2FA section
- Click Regenerate Backup Codes
- Confirm action
- Old codes invalidated immediately
- New 10 codes displayed
- Save new codes securely
[SCREENSHOT: Regenerate backup codes]
Trusted Devices
Manage Trusted Devices:
View devices that don't require 2FA code:
- Device name and type
- Browser
- Location
- Date added
- Days remaining (of 30-day trust period)
Remove Trust:
- Find device in list
- Click Remove
- Next login will require 2FA code
[SCREENSHOT: Trusted devices list]
Disabling 2FA
To Disable 2FA:
Disabling 2FA reduces your account security. Only disable if absolutely necessary.
- Go to Security Settings
- Click Disable 2FA
- Enter password
- Enter current 2FA code or backup code
- Confirm disabling
- 2FA disabled
What Happens:
- Only password required for login
- Backup codes invalidated
- Trusted devices cleared
- Can re-enable anytime
[SCREENSHOT: Disable 2FA warning]
Recovering Access
Lost Phone or Authenticator App
Recovery Options:
Option 1: Use Backup Code
- At login, click Use Backup Code
- Enter one of your saved backup codes
- Access account
- Reset 2FA with new device
Option 2: Recovery via Email
- At login, click Can't Access Codes?
- Select Email Recovery
- Verification email sent to your registered email
- Click link in email
- Verify identity
- Temporarily bypass 2FA
- Set up 2FA on new device
Option 3: Contact Support If you've lost backup codes and email access:
- Contact support@digit-tally.io
- Provide identity verification
- Support will assist with account recovery
- Process may take 24-48 hours
[SCREENSHOT: Recovery options screen]
Lost Backup Codes
If You Lost Your Backup Codes:
While You Still Have Access:
- Login normally (using authenticator app)
- Go to Security Settings
- Regenerate backup codes immediately
- Save new codes securely
If You Can't Login:
- Use authenticator app (if you still have it)
- Use email recovery method
- Contact support for assistance
Best Practices
2FA Security Tips
-
Save Backup Codes Securely
- Store offline (not in cloud)
- Print and keep in safe place
- Don't store on phone with authenticator app
- Use password manager for digital storage
-
Use Trusted Authenticator Apps
- Google Authenticator
- Microsoft Authenticator
- Authy (with cloud backup)
- Avoid unknown apps
-
Don't Share Codes
- Never share codes with anyone
- Digit Tally will never ask for your 2FA code
- Beware of phishing attempts
-
Backup Authenticator App
- Some apps offer cloud backup (Authy)
- Transfer codes when getting new phone
- Set up 2FA before switching phones
-
Trust Devices Carefully
- Only trust personal devices
- Never trust public/shared computers
- Untrust devices you no longer use
-
Regular Security Reviews
- Check trusted devices monthly
- Review login history
- Regenerate backup codes periodically
Troubleshooting
Common Issues
Issue: Code Not Working
- Solution: Wait for next code (codes expire after 30 seconds). Check device time is correct. Ensure you're looking at correct account in authenticator app.
Issue: "Invalid Code" Error
- Solution: Verify your device clock is set to automatic time. Try entering code as soon as it appears. Contact support if persists.
Issue: Lost Phone with Authenticator
- Solution: Use backup code to login. Set up 2FA on new device. Regenerate backup codes. If no backup codes, use email recovery.
Issue: Can't Scan QR Code
- Solution: Use manual entry option. Copy setup key and enter in authenticator app manually.
Issue: Authenticator App Deleted
- Solution: Use backup code. Reinstall app and set up 2FA again. If no backup codes, use email recovery.
What's Next?
- Security Settings - More security features
- Account Information - Profile settings
- Connected Accounts - Bank account security
Don't wait! Enable 2FA today to protect your business data. It only takes 2 minutes to set up.