Two-factor authentication adds a one-time code from your phone on top of your password. Anyone who steals your cPanel password still cannot get in.
ENABLING IT
- In cPanel open Two-Factor Authentication under Security.
- Install an authenticator app on your phone: Google Authenticator, Microsoft Authenticator or Authy.
- Scan the QR code shown on the page with the app.
- Enter the six-digit code the app displays and click Configure Two-Factor Authentication.
From now on cPanel asks for a code after your password.
SAVE A RECORD
Write down the security key shown beneath the QR code and store it somewhere safe. If you lose or reset your phone, that key lets you re-add the account to a new authenticator app.
IF YOU LOSE ACCESS
Open a support ticket from the Client Area. We will verify your identity against the account holder details and remove the requirement so you can set it up again. Expect verification questions, as this is deliberately not instant.
Enable 2FA on your Client Area account as well. Protecting cPanel but not billing leaves the easier door open.