Two-Factor Authentication

Two-factor authentication (2FA) adds a second step to dashboard sign-in using an authenticator app. You can protect your own account and, as an Owner, require 2FA for everyone on your team.

Note: Breeze 2FA uses authenticator apps (TOTP) — for example Google Authenticator, 1Password, or Authy. SMS codes are not used.

Set up your authenticator

Go to Settings → Security. Next to Authenticator app, you'll see whether it's Configured or Not configured. Click Configure to set it up:

  1. Scan the displayed QR code with your authenticator app (or copy the secret key to enter it manually).
  2. Enter the 6-digit code from the app to confirm.

Once configured, your account requires the 6-digit code at sign-in. You can remove the authenticator later from the same screen (unless your merchant enforces 2FA — see below).

Enforce 2FA for your team

If you're an Owner, the Security settings include Enforce 2FA for all team members. When enabled, every team member must set up an authenticator before they can use the dashboard.

Note: You must have your own authenticator configured before you can turn on enforcement.

What team members experience

  • A member without 2FA who signs in while enforcement is on is sent to a setup screen. From there they can set up their authenticator, switch to another merchant that doesn't require 2FA, or log out.
  • A member who already has 2FA is asked to enter their 6-digit code to verify the session, then continues to where they were headed.

Did this page help you?