What is 2FA?
Two-factor authentication (2FA) adds a second verification step when you log in. Even if someone steals your password, they cannot access your account without the one-time code from your authenticator app.
Shieldome uses TOTP (Time-based One-Time Password, RFC 6238) — the same standard used by Google Authenticator, Authy, and Apple's built-in passwords app. The codes are generated on your device and rotate every 30 seconds. Shieldome does not use SMS-based 2FA.
What you need
- A Shieldome account
- An authenticator app on your phone or computer. Recommended options:
| App | Platform |
|---|---|
| Google Authenticator | iOS, Android |
| Authy | iOS, Android, macOS, Windows |
| 1Password (built-in TOTP) | iOS, Android, macOS, Windows |
| Bitwarden (premium) | iOS, Android, web |
| Apple Passwords | iOS 17+, macOS Sequoia+ |
Enabling 2FA — step by step
1. Go to your profile settings
Click your avatar or username in the top-right corner of the Shieldome app and select Profile, or navigate directly to Settings → Security.
2. Click "Enable Two-Factor Authentication"
You will see a QR code and a text backup code. Do not close this page until you have completed the setup.
3. Scan the QR code with your authenticator app
- Open your authenticator app
- Tap the + button (or "Add account" / "Scan QR code")
- Point your camera at the QR code on screen
- The app will add "Shieldome" as a new entry and immediately show a 6-digit code
4. Enter the 6-digit code to confirm
In Shieldome, enter the current 6-digit code shown in your authenticator app and click Verify and Enable. The code is valid for 30 seconds — if it expires, wait for the next one to appear in your app.
5. Save your backup codes
After verifying, Shieldome shows you backup codes. These are single-use codes you can enter instead of a TOTP code if you ever lose access to your authenticator app. Save them somewhere safe — a password manager, printed paper, or an encrypted note.
Logging in with 2FA
- Enter your email and password as usual
- On the next screen, open your authenticator app and find the "Shieldome" entry
- Type the current 6-digit code
- Click Verify
The code changes every 30 seconds. If it just rotated, wait for the next one — do not press back or refresh.
Using a backup code
On the 2FA prompt, click Use a backup code instead and enter one of your saved backup codes. Each backup code can only be used once — it is consumed immediately.
Disabling 2FA
Go to Profile → Security, click Disable Two-Factor Authentication, and enter your current 2FA code to confirm. Disabling 2FA reduces your account security — only do this if you intend to immediately re-enable it with a different device.
Troubleshooting
| Problem | Solution |
|---|---|
| "Invalid code" even with the correct code | Your device clock may be out of sync. Enable automatic time sync in your phone settings (Settings → General → Date & Time → Set Automatically on iOS; Settings → System → Date & Time → Use network-provided time on Android) |
| QR code won't scan | Use the manual entry code instead (shown below the QR code) |
| Lost your phone / authenticator app | Use a backup code. If you have no backup codes, contact [email protected] from the email address on your account |
| "Failed to load 2FA status" | Refresh the page and try again. If the error persists, check that you are logged in (your session may have expired) |