Setting Up MFA
Last updated 2026-03-14
Why Use MFA?
Multi-factor authentication (MFA) adds an extra layer of security to your account. Even if someone guesses or steals your password, they will not be able to log in without the second factor — usually a code from your phone.
We strongly recommend enabling MFA, especially for admin accounts.
Setting Up MFA
To enable MFA on your account:
- Go to Settings > Security in your dashboard.
- Click Enable MFA.
- Scan the QR code with your authenticator app (Google Authenticator, Authy, 1Password, etc.).
- Enter the 6-digit code from your authenticator app to confirm.
- Save your recovery codes in a secure location.
That is it — MFA is now active on your account.
Using MFA to Log In
After entering your email and password, you will see a prompt asking for your MFA code. Open your authenticator app, find the CodeContext entry, and enter the current 6-digit code. Codes refresh every 30 seconds.
Recovery Codes
When you set up MFA, you receive a set of recovery codes. These are one-time-use codes that let you log in if you lose access to your authenticator app. Store them somewhere safe, like a password manager.
If you have used all your recovery codes, you can generate a new set from the Security settings page while logged in. If you are locked out completely, contact support for help regaining access.
MFA Disabled Alert
If MFA is disabled on your account, you will receive an urgent security alert email with a direct link to re-enable it from your security settings. If you did not disable MFA yourself, change your password immediately and contact support.
Login Alerts
When someone logs into your account from an unrecognized device — an IP address and browser combination not seen in the last 30 days — you will receive a security alert email. The email includes the IP address, browser information, and login time. If you do not recognize the login, go to your security settings immediately to change your password and review your active sessions.
SSO Welcome Email
If your organization uses SAML SSO and you log in for the first time, you will receive a welcome email confirming that your account was created via SSO. The email includes quick-start links to browse standards and connect MCP.
Related Articles
Still need help?
Our support team is happy to help with any questions you may have.
support@codecontext.app