How to Use a 2FA Authenticator: Step-by-Step Guide
Follow these steps to get a 2FA code with an online authenticator: find your secret key, add it to 2FA Auth, then enter the 6-digit code. The whole process takes about a minute.
Video guide
Step-by-step guide
Get your secret key
In the security settings of your service, enable two-factor authentication and choose "Authenticator app". The service shows a QR code and a text secret key.
Enter the key or scan the QR
Paste the key into the "Secret key" field ("Paste key" button) or tap "Scan QR" and point the camera at the QR code.
Get your code
A 6-digit code appears on the right. It refreshes every 30 seconds, and the colored bar shows the time left.
Copy and enter the code
Tap "Copy code" and paste it on the service's website. If little time is left, press the refresh button to see the next code.
Store your key safely
This site does not store your key. Save it in a password manager — if you lose access, it cannot be recovered.
Scanning a QR code with your camera
Press Scan QR, allow camera access and hold the QR code inside the frame. The key is read in your browser and the code appears straight away. If the camera is unavailable, copy the text setup key that sits next to the QR code, or paste the otpauth:// link into the key field.
Troubleshooting: why is my 2FA code not working?
The code is rejected
A code is valid for about 30 seconds. Wait for the next one and type it promptly without spaces. If the bar shows little time left, press refresh to see the next code.
The device clock is off
Codes depend on the time. Turn on automatic date and time on the device that shows the code and check the clock of the device you sign in from. A difference of more than 30 seconds is enough to break the code.
The key is not accepted
A secret key uses only the letters A–Z and the digits 2–7. If your text contains 0, 1, 8 or 9, something was copied wrongly. Copy the setup key itself, not the account name, and paste it without extra characters. More about 2FA keys.
The QR code says “not supported”
2FA Auth supports the standard settings used by most services: SHA-1, 6 digits and a 30-second period. A few services use other settings, and then a different authenticator is needed. About TOTP settings.
The camera does not start
Allow camera access when your browser asks, and close other apps that may be using the camera. If scanning still does not work, use the text setup key or paste the otpauth:// link instead.
I lost my secret key
The service usually shows the key only once, and 2FA Auth cannot recover it. Sign in with one of your backup codes, then turn 2FA off and on again to get a new key. Store the new key and the backup codes safely.
Good habits
- Save the backup codes the moment you enable 2FA.
- Keep the secret key in a password manager or offline – this site does not store it.
- Test the new code once before you log out of the account you are protecting.
- Read what 2FA is and the security overview to understand the trade-offs of an online authenticator.