Setting Up Two-Factor Authentication
Scan the QR Code
Open your authenticator app (such as Google Authenticator, Authy, or 1Password) and scan the QR code displayed on screen.
Signing In with 2FA
After enabling two-factor authentication, the sign-in process adds one step:- Enter your email and password as usual
- When prompted, enter the 6-digit code from your authenticator app
- Alternatively, use a recovery code if you don’t have access to your authenticator
Recovery Codes
Recovery codes are single-use backup codes that let you sign in when you don’t have access to your authenticator app. Each code can only be used once. To regenerate recovery codes:- Go to Settings → Two-Factor Authentication
- Click Regenerate Recovery Codes
- Store the new codes securely
Regenerating recovery codes invalidates all previous codes. Make sure to update your stored codes.
Disabling 2FA
To disable two-factor authentication:- Go to Settings → Two-Factor Authentication
- Click Disable Two-Factor Authentication
- Confirm your password
Requiring 2FA for Your Team
Team owners can require all team members to enable two-factor authentication. When this is enabled, members without 2FA will be redirected to set it up before they can access any team resources. To enable this requirement:- Go to Settings → Team
- In the Security section, toggle on Require Two-Factor Authentication
Social Login (OAuth)
Lettr supports signing in with Google and GitHub. Social login provides a convenient alternative to email and password authentication. When you sign in with a social provider for the first time, your social account is linked to your Lettr account automatically (matched by email address). If you don’t have a Lettr account yet, one is created for you with your email automatically verified. Social login does not bypass two-factor authentication. If you have 2FA enabled, you’ll still need to complete the 2FA challenge after authenticating with your social provider. For full details, see Social Login (OAuth).Password Management
You can update your password from Settings → Password. Enter your current password and your new password to make the change. After changing your password, consider signing out of any other active sessions manually from Settings → Browser Sessions if you suspect unauthorized access.Email Address Changes
Changing your account email address requires your current password for verification. This protects against unauthorized email changes if someone gains temporary access to your session. To update your email:- Go to Settings → Profile
- Enter your new email address
- Confirm your current password
- Click Save
Related Topics
Teams
Team roles, invitations, and security settings
API Keys
Manage API authentication
Social Login
Sign in with GitHub or Google