Skip to content
Pocket-CFO docs

Set up two-factor authentication

Every Pocket-CFO account uses an authenticator app. Here’s how to set it up, why to keep your recovery codes, and how to get back in if you lose your phone.

Why it’s required

Pocket-CFO holds your company’s financial data, so a password alone never opens it. Two-factor authentication is set up the first time you sign in, and every request for your data requires it — there’s no way to switch it off.

Set up your authenticator

You’ll need an authenticator app on your phone, such as Google Authenticator, Microsoft Authenticator, 1Password, or Authy.

  1. Scan the QR code shown on screen with your authenticator app.
  2. If you can’t scan it, select Show manual entry and type the key into your app instead.
  3. Enter the six-digit code your app displays and select Verify.

Save your recovery codes

Next you’ll see Save your recovery codes: ten codes in the form XXXXX-XXXXX. Each one works once, and they are the only way back into your account if you lose your phone.

  1. Select Download .txt and keep the file somewhere safe that isn’t your phone — a password manager is ideal.
  2. Select I’ve saved my recovery codes.

We keep only a one-way hash of each code, so we can’t show them to you again or read them back.

If you lose your phone

  1. Sign in with your email and password as usual.
  2. On Enter your authenticator code, select Lost your device? Use a recovery code.
  3. Enter one of your recovery codes and select Use recovery code.
  4. Your old authenticator is removed, and you’ll set up two-factor authentication again on your new device — with a fresh set of recovery codes to save.

Using a recovery code is recorded in your organization’s audit trail. Moving to a new phone works the same way.