Skip to main content

Two-Factor Authentication (2FA)

Se Hee avatar
Written by Se Hee
Updated this week

What is 2FA?

With 2FA, you will receive a Time-based OneTime Password (TOTP) from your preferred authenticator whenever you log in to Taskworld – this way no one but you can access your account.

What is a TOTP?

The TOTP is generated by your preferred authenticator app (see a list of recommended apps below) and is needed to verify your login after you enabled 2FA.

The password expires after a certain time depending on your authenticator. If you haven’t entered the TOTP in time, your authenticator will trigger a new code in a continuous loop. Make sure that you’re always using the most recent code when entering your TOTP on Taskworld.

Who can enable 2FA?

Every Taskworld user is logging in to the platform via our login fields (email and password) or via Google Single Sign-On. 2FA is currently not supported for logins via any third-party SSO providers.

What happens if I lose access to my authenticator?

When enabling 2FA you can set up your email as a recovery option. This would trigger a One-Time-Password (OTP) which is valid for 15 minutes and will be sent to your recovery email address.

What should I do if I cannot access my recovery email or am locked out of my Taskworld account?

Please contact our support team via email or use our contact form. Our team will get back to you as soon as possible to help you access your Taskworld account.

What happens to my recovery email if I disable my 2FA?

If you had enabled 2FA and set up a recovery option with your email, disabling 2FA would automatically disable your email as a recovery option. However, if you choose to only remove your email as a recovery option, it would only remove your email and not affect your 2FA that has been enabled.

How to enable 2FA:

1 - Go to your “Account Settings” by clicking on your profile picture at the top right (If you haven't uploaded a picture yet, you'll see your initials there).

2 - Go to the "Security" tab.

3 - Click Enable to connect an authenticator app (e.g., Google Authenticator, Microsoft Authenticator, Authy, 1Password, LastPass, Keeper).

4 - Scan the QR code or enter the secret key manually.

5 - Enter the six-digit code from your authenticator app and click Enable 2AF to confirm.

6 - A pop-up will show your backup codes: Copy or download them for safekeeping.

6.1. You also have the option to add your existing email as one of the recovery solutions, click Add now or Skip.

6.2. If you want to add, confirm the recovery option by entering the one-time-password (OTP) sent to your preferred email address, then select Continue.

How does Sign-in with Enabled-2FA look like?

After filling your login details (email & password) or signing in with Gmail, you will see this page as per screenshot.

1 - Open your connected Authenticator App to get the 6-digit code.

2 - Enter it in your Taskworld's login page and hit Next. You are now logged in!

How to sign-in with your Recovery Email Address:

1 - After filling your login details (email & password) or signing in with Gmail, you will land on the Two-Factor Authentication page like in the previous section of this article.

2 - Select Try another option.

3- We will send a one-time-password (OTP) to your recovery email address..

4 - Enter the password and click Confirm Code. You are now logged in!

Additional information for the Workspace admins:

The Admins will be able to see which team members have enabled 2FA in the "People" page. Under the "Members" tab, look out for "the green shield" icon next to their name.

Did this answer your question?