Two-step verification (2FA)
How the six-digit code works at sign-in and the current activation status for your account.
Two-step verification (2FA) adds a temporary six-digit code to sign-in, on top of your password. In AreaCacao, you enter this code during sign-in.
The verification step at sign-in
If your account has two-step verification turned on, after you type your password you'll see a screen asking for the Authenticator code (6 digits):
- Open your authenticator app and copy the current AreaCacao code.
- Enter it in the field and click Verify and continue (while it validates, "Verifying…").
Compatible apps: Google Authenticator · 1Password · Authy · Microsoft Authenticator.
If you can't access the app
On the verification step, click "Can't access your app? Use a backup code" and enter one of your backup codes. Each code is single-use. To return to the normal mode, use "Use authenticator app".
If you want to start sign-in over from the beginning, click "← Back to sign in" to go back to the email and password step.
Current activation status
Self-service activation of two-step verification is not available yet for user accounts. Today it's mandatory only for admin accounts. Sign-in support (six-digit code and backup codes) already works; the option to turn it on yourself from your account will arrive later.
The Security tab in Settings doesn't include 2FA activation: it only reminds you that password changes and session management are handled from the Account tab.
In the meantime: harden your account
Even though you can't turn on 2FA yourself yet, you can keep your account secure:
- Use a long, unique password (at least 8 characters; the more, the better). See change password.
- If you suspect unauthorized access, sign out of all sessions.
- Don't reuse your password on other services.
If you need two-step verification for a specific requirement, write to us at support@areacacao.com.