---
title: Two-Factor Authentication
slug: two-factor-authentication
docTags: 
createdAt: 2022-05-11T08:50:50.000Z
---

Two-Factor Authentication (2FA) provides an additional layer of security by requiring a second verification factor during login.

Engati supports two types of 2FA:

- Email OTP
- Authenticator App (Recommended)

Authenticator App-based authentication provides stronger security and is recommended for all users.

# Enable Two-Factor Authentication

## Step 1&#x20;

Go to **Profile > Account settings > Account Security > Authentication Mode**

![](https://api.archbee.com/api/optimize/FEqjvWZnyymr_PEhXLLlG/KRCsOg2endklhySn-hbdo_account-security.png)

## Step 2

Open the Authentication Mode selector.

Based on your account entitlement, you may see the following options:

- Password Only
- Password + Email OTP
- Password + Authenticator App

::Image[]{src="https://api.archbee.com/api/optimize/FEqjvWZnyymr_PEhXLLlG/goaCkMyC23il29HqT_K9q_authenticator-mode.png" size="76" width="2308" height="808" position="center" darkWidth="2308" darkHeight="808" showCaption="false"}

## Step 3

Select your preferred authentication method.

### Email OTP

When Email OTP is selected:

1. An OTP is sent to your registered email address.
2. Enter the OTP to verify your identity.
3. Complete the setup process.

![](https://api.archbee.com/api/optimize/FEqjvWZnyymr_PEhXLLlG/zFM_YnuuPzlkTckAIO3hp_email-otp.png)

### Authenticator App

When Authenticator App authentication is selected:

1. A QR code is displayed.
2. Open the Google Authenticator application
   Download Google Authenticator:
   [Get Google Authenticator (iOS)](https://apps.apple.com/app/google-authenticator/id388497605)******
   [Get Google Authenticator (Android)](https://play.google.com/store/apps/details?id=com.google.android.apps.authenticator2)
3. Scan the QR code.
4. Enter the verification code generated by the authenticator application.
5. Complete the setup process.

Once verification is successful, Authenticator App-based 2FA is enabled for your account.

![](https://api.archbee.com/api/optimize/FEqjvWZnyymr_PEhXLLlG/jHTbr-1Il7u-6QFXhXqzG_auth-app.png)

# User Invitation and Onboarding

Newly invited users automatically inherit the authentication method configured by the account owner.

## For Email OTP Accounts

Users will receive a standard invitation email and complete verification using Email OTP.

## For Authenticator App Accounts

Invitation emails include a QR code for authenticator setup.

Additionally, during the user's first login:

1. The setup QR code is displayed again within the application.
2. The user scans the QR code using their authenticator application.
3. The user verifies the generated code.
4. Account setup is completed.

This ensures users can successfully configure their authenticator application even if the original invitation email is unavailable.

If you face any issues or queries please reach out to us at [support@engati.ai](mailto\:support@engati.ai).

