Turn on two-step verification
How to add a second factor with an authenticator app, and what to do if you lose your phone.
Two-step verification means that on top of your password, a code that only lives on your phone is needed. It is what stops a leaked password from being enough to get in.
You set it up from Organization → Account → Security.
Turning it on
- Go into Account and open the Security tab.
- Find Two-factor authentication, which will read Disabled.
- Click Enable.
- Choose Authenticator app and scan the code with Google Authenticator, Microsoft Authenticator or any compatible app.
- Type the six-digit code the app shows to confirm.
From then on, meruma asks for the code every time you sign in.
Which app to use
Any app that generates six-digit codes changing every thirty seconds works: Google Authenticator, Microsoft Authenticator, 1Password, Bitwarden, Authy. There is no best one; what matters is that you can recover it if you change phones.
If your authenticator app has no cloud backup and you lose your phone, you lose access. Password manager apps solve that on their own.
If you lose your phone
Write to us from the email address your account is registered with. We will ask you to confirm your identity before disabling it — precisely so nobody else can do the same to your account.
Changing your password
On the same Security tab. It asks for your current password and the new one twice, and the new one has to be eight characters or more and different from the previous one.
Worth it for the whole team
Whoever administers the organization can connect channels and see every conversation. A compromised admin account is a problem for the whole business, not just for that person. At the very least, admins and the owner should have two-step turned on.
Reviewed on
Keep reading
Did not find what you were looking for?
There are people here, not a form that goes nowhere.