Enabling Two-Factor Authentication

Updated 15 July 2026 2 min read

Two-factor authentication (2FA) adds a second step to signing in, so your account stays protected even if your password is ever compromised. Once enabled, you'll need a code from an authenticator app in addition to your password each time you sign in.

Before you start

You'll need an authenticator app installed on your phone, such as Google Authenticator, Authy or 1Password. Any app that supports standard Time-based One-Time Password (TOTP) codes will work.

Turning on two-factor authentication

  1. Open your account menu by click your avatar in the top right corner.
  2. Within the account menu select the Profile option.
  3. Scroll down to "Two Factor Authentication", then click Enable Two Factor Authentication.
  4. Open your authenticator app on your phone and scan the QR code shown on screen. The app will add CollectContent as a new entry and start generating six-digit codes.
  5. Enter the verification code from your authenticator app into the one time passcode field and click Verify and activate.
  6. You'll be shown a set of one-time backup codes. Save your backup codes by downloading them or copy them somewhere safe.

Good to know

Store your backup codes outside of CollectContent, such as in a password manager. If you lose access to your authenticator app, they're the only way back into your account.

Signing in with 2FA enabled

After entering your password, you'll be prompted for a code from your authenticator app. Enter the current six-digit code to finish signing in.

Using a backup code

If you don't have access to your authenticator app, select Use a recovery code on the sign-in prompt and enter one of the codes you saved when you enabled 2FA.

Turning off two-factor authentication

Two-factor authentication helps to keep your account secure. We strongly recommend that you keep two-factor authentication enabled.

However, you can disable two-factor authentication on your progile page by clicking "Disable Two Factor Authentication". You will be asked to confirm your password before two-factor authentication is disabled.