Two-factor authentication (2FA)
Add an authenticator app to protect your account with a second layer of security.
Updated 6 Mar 2026
Two-factor authentication (2FA) requires a 6-digit code from your phone when you sign in β so even if your password is stolen, your account stays safe.
Pivra uses TOTP (time-based one-time passwords), which works with any standard authenticator app including Google Authenticator, Authy, 1Password, and Microsoft Authenticator.
Enabling 2FA
- Go to Settings β Security
- Under Two-factor authentication, click Enable authenticator app
- A QR code appears β open your authenticator app and scan it
- Can't scan? Click Can't scan? Enter manually to copy the secret key into your app instead
- Your app will show a 6-digit code that refreshes every 30 seconds
- Enter that code in the Verification code field and click Verify and enable
- A green badge confirms 2FA is active on your account
Signing in with 2FA
After entering your email and password, you'll be taken to a second screen asking for your authenticator code.
- Open your authenticator app
- Enter the current 6-digit code for your Pivra account
- Click Verify β you'll land on the dashboard
The code changes every 30 seconds. If it expires while you're typing, just use the next code that appears.
Magic link logins also require a 2FA challenge before you can access the dashboard.
Removing 2FA
- Go to Settings β Security
- Click Remove 2FA
- Enter your current authenticator code to confirm you still have access to the app
- Click Remove 2FA β your account returns to password-only login
I've lost access to my authenticator app
If you lose your phone or delete the app without disabling 2FA first, contact support@pivra.ai from your account email address. We'll verify your identity and disable 2FA manually.
To avoid this situation, export a backup of your authenticator before switching devices. Most apps (Authy, 1Password) support encrypted backups.
Frequently asked questions
Does 2FA cost extra? No. Two-factor authentication is available on all plans at no extra cost.
Which authenticator apps work? Any TOTP-compatible app works β Google Authenticator, Authy, 1Password, Microsoft Authenticator, Bitwarden, and more. Pivra does not send SMS codes.
Can team members have their own 2FA? Yes. 2FA is per-user, not per-workspace. Each team member can independently enable or disable it from their own Security settings.
I entered the correct code but it's not working. Make sure your phone's clock is accurate β TOTP codes are time-sensitive. On iPhone, go to Settings β General β Date & Time and enable Set Automatically. On Android, Settings β General Management β Date and Time β Automatic date and time.
Was this helpful?
If you have questions or suggestions, email us at support@pivra.ai .