Manage your two-factor authentication and recovery codes.
TOTP via authenticator app.
Use these one-time codes if you lose access to your authenticator.
Devices that have signed in to your account. Revoking removes the device record (it will trigger a new-device alert on next sign-in).
Choose which security alerts we email you about. We strongly recommend keeping these on.
Sign-ins, MFA verifications, recovery code use, lockouts, and new-device alerts on your account.
On these devices, you won't be asked for a 2FA code for up to 30 days. Revoke any you don't recognize.
Re-enter your current password to confirm the change.
Download a JSON file with your audit events, sign-in attempts, lockouts, devices, MFA factors, and email preferences.