Why 2FA on the console
The console controls agents that run on real machines. Two-factor authentication means a stolen password alone is not enough to start a task or delete an agent.
Turn it on
- Open Settings → Security → Two-factor authentication.
- Click Set up 2FA.
- Scan the QR code with your authenticator app (or enter the key manually).
- Enter the 6-digit code to confirm.
- Save the recovery codes somewhere safe.
Sensitive actions
Once enabled, sensitive actions — like deleting an agent or resetting a key — ask for a code. A successful unlock lasts 15 minutes for the session.
Recovery codes
You get eight one-time codes. Each works once if you lose your authenticator. Store them in a password manager, not a sticky note.
Disable or reset
You can disable 2FA or generate fresh recovery codes from the same screen. Both require a current code when 2FA is on.