Anyone with your billing login can reach your services, your domains and your cPanel. Protect it.
ENABLING IT
- Log in and go to Account > Security Settings.
- Choose Two-Factor Authentication and select the app-based method.
- Install an authenticator app: Google Authenticator, Microsoft Authenticator or Authy.
- Scan the QR code.
- Enter the six-digit code to confirm.
- Save the backup code somewhere other than your phone and other than the account.
FROM THEN ON
You enter your password, then a code from the app. The code changes every thirty seconds.
IF YOU LOSE YOUR PHONE
Use the backup code. If you no longer have it, open a ticket. We will verify your identity before removing the requirement, which deliberately takes time.
DO IT ON BOTH
Enable it on cPanel too. Protecting one and not the other leaves the easier door open.
SUB-ACCOUNTS
Each sub-account holder should enable it on their own login.
WHY IT MATTERS MORE THAN IT SEEMS
Password reuse is the most common route into accounts. Two-factor authentication makes a stolen password insufficient on its own, and it takes two minutes to set up.