Back to Account & Settings

Setting up two-factor authentication

8 min readUpdated January 22, 2025Popular

Setting up two-factor authentication

Two-factor authentication (2FA) adds an extra security layer to your Kivly account.

What is 2FA?

Two-factor authentication requires two things to sign in:

  1. Something you know - Your password
  2. Something you have - Your phone or authenticator app

Even if someone gets your password, they can't access your account without the second factor.

Why enable 2FA?

Protection against:

  • Password theft
  • Phishing attacks
  • Unauthorized access
  • Account takeover
  • Data breaches

Benefits:

  • Enhanced account security
  • Protect personal wellness data
  • Meet compliance requirements
  • Peace of mind

Methods available

1. Authenticator app (recommended)

  • Most secure method
  • Works offline
  • Apps: Google Authenticator, Authy, 1Password, Microsoft Authenticator

2. SMS text message

  • Codes sent to phone
  • Requires cell service
  • Backup option recommended

3. Backup codes

  • One-time use codes
  • Store securely
  • Use if primary method unavailable

Setting up authenticator app 2FA

Step 1: Enable 2FA

  1. Go to SettingsSecurity
  2. Click Two-Factor Authentication
  3. Click Enable 2FA
  4. Enter your password to confirm

Step 2: Choose authenticator app

  1. Select Authenticator App
  2. Download app if needed:
    • Google Authenticator (iOS/Android)
    • Authy (iOS/Android)
    • Microsoft Authenticator (iOS/Android)

Step 3: Scan QR code

  1. Open authenticator app
  2. Tap "+" or "Add"
  3. Scan QR code shown in Kivly
  4. Or manually enter secret key

Step 4: Enter verification code

  1. App generates 6-digit code
  2. Enter code in Kivly
  3. Click Verify
  4. 2FA is now active!

Step 5: Save backup codes

  1. Download backup codes
  2. Store in password manager or safe place
  3. Each code works once
  4. Print or save securely

Setting up SMS 2FA

Enable SMS authentication

  1. Settings → Security → Two-Factor Authentication
  2. Select SMS Text Message
  3. Enter phone number
  4. Click Send Code
  5. Enter received code
  6. Verify and enable

Phone requirements

  • Must be able to receive SMS
  • US and international numbers supported
  • Mobile number (not landline)
  • Carrier SMS fees may apply

Using 2FA when signing in

Normal sign-in process

  1. Enter email and password
  2. Click Sign In
  3. Enter 6-digit 2FA code from:
    • Authenticator app, or
    • SMS text message
  4. Optionally check "Trust this device for 30 days"
  5. Complete sign-in

"Trust this device" option

  • Skip 2FA for 30 days on this device
  • Recommended for personal devices only
  • Not recommended for shared computers
  • Can revoke in Security settings

Using backup codes

When to use:

  • Lost phone
  • Authenticator app not working
  • Can't receive SMS
  • Traveling without phone service

How to use:

  1. Click Use backup code at sign-in
  2. Enter one backup code
  3. Code is consumed (can't reuse)
  4. Successfully sign in

Important:

  • Each code works once
  • Download new codes after using all
  • Keep codes secure like passwords

Managing 2FA

View trusted devices

Settings → Security → Trusted Devices

  • See where you're signed in
  • Revoke trust from any device
  • Review sign-in history

Regenerate backup codes

If codes lost or all used:

  1. Settings → Security → 2FA
  2. Click Generate New Backup Codes
  3. Old codes stop working
  4. Download and store new codes

Change 2FA method

Switch between authenticator app and SMS:

  1. Disable current method
  2. Enable preferred method
  3. Complete setup
  4. Download new backup codes

Disabling 2FA

To turn off 2FA:

  1. Settings → Security → 2FA
  2. Click Disable Two-Factor Authentication
  3. Enter password
  4. Enter current 2FA code
  5. Confirm disabling

Note: Not recommended. 2FA significantly improves account security.

Troubleshooting

Lost access to authenticator app

Solution:

  1. Use backup code to sign in
  2. Disable 2FA
  3. Set up 2FA again with new device
  4. Download new backup codes

Wrong code error

Try:

  • Ensure correct code (not expired)
  • Check device time is accurate
  • Try next generated code
  • Use backup code instead

Can't receive SMS

Solutions:

  • Check phone service
  • Verify correct phone number
  • Check spam/blocked messages
  • Use authenticator app or backup code

Lost backup codes

If can still sign in:

  • Generate new codes in Security settings

If locked out:

  • Contact support@kivly.org
  • Provide identity verification
  • Support will assist recovery

Account recovery without 2FA access

If completely locked out:

  1. Click Can't access 2FA? at sign-in
  2. Follow account recovery process
  3. Verify via alternate email
  4. Answer security questions
  5. Support verification may be required

Recovery takes:

  • 24-72 hours for security
  • Identity verification required
  • May need subscription info
  • Photo ID potentially needed

Security best practices

Protect your 2FA:

  • Don't share authenticator app
  • Keep backup codes secure
  • Use password manager
  • Enable on all important accounts
  • Review trusted devices monthly

Additional security:

  • Strong, unique password
  • Recovery email set up
  • Security questions answered
  • Activity alerts enabled
  • Regular account reviews

Related articles

Tags

2FAtwo-factorsecurityauthenticationaccount protection

Was this article helpful?

Still need help?

Our support team is here to assist you

Contact Support
Kivly Help Center - Get Support & Find Answers