Help · Account security
Two-factor authentication on every sign-in.
A second lock on the door — a 6-digit code we email you at sign-in. Once a device is verified it stays trusted for 30 days, so you don’t do this every morning.
Two-factor authentication adds a second lock to your sign-in: a 6-digit code we email to the address on your account. After you type your password, the app pauses on a "Check your email" screen; copy the code across, submit, and you're in. If you tick "Remember this device," we won't prompt for the code again on that trusted device for 30 days, so you don't repeat it every morning.
We use email because there's no app to install, no QR code, and no SIM-swap risk — it works for grandparents and kids alike, and stronger options like passkeys can layer on top. New-device sign-ins trigger an immediate alert email with device, approximate location, and timestamp, and parents get the same signal for kids under 18. Eight one-time backup codes cover lost email access.
What you’ll see at sign-in
After you type your password, the app pauses on a small "Check your email" screen and we send a 6-digit code to the address on your account. Copy it across, hit submit, you’re in. If the device you’re on is one you trust, leave the "Remember this device" checkbox ticked — we won’t prompt for the code again on that device for 30 days.
Why we picked email
No app to install, no QR code to scan, no SIM-swap risk that SMS has. Our users include grandparents and kids; email works on every device they already use. We’ll layer stronger options (passkeys, hardware keys) on top of this for people who want them — but the floor stays universal.
New-device alerts
Every time someone signs in to your account from a device we haven’t seen before, we email you immediately. The alert shows the device type, an approximate location (city + country where we can guess it), and the timestamp. If it wasn’t you, one tap in the email signs that device out and forces a password reset.
Parents get the same signal for kids under 18
If a kid or teen is in your cell, you’ll get the new-device email when they sign in somewhere new — same details. This is a single-purpose security signal, not a surveillance channel. Teens can see in Settings → Security exactly which parents are wired up to receive these alerts; nothing else from their account flows through this path.
Backup codes for when you lose email access
At first setup we give you 8 one-time backup codes. Save them somewhere offline — a screenshot in your photo vault, a slip of paper in a desk drawer. If your email ever locks you out, those codes are how you get back in. Each is single-use; new ones generate from Settings → Security when you’re running low.
Turning 2FA off
You can disable two-factor in Settings → Security. We’ll show you a warning first. We don’t recommend it — and we don’t make it harder than it has to be. If you turn it back on later, a fresh set of 8 backup codes generates.
Frequently asked questions
Do I have to enter a code every single time I sign in?
No. Once you verify a device and leave "Remember this device" ticked, we won't prompt for the code again on that device for 30 days. You'll only re-enter it on new or untrusted devices.
What if I lose access to my email?
Use one of the 8 one-time backup codes you got at first setup — save them somewhere offline. Each is single-use, and you can generate a fresh set from Settings, Security when you're running low.
What happens if someone signs in from a device I don't recognize?
We email you immediately with the device type, approximate location, and timestamp. If it wasn't you, one tap in that email signs the device out and forces a password reset.
Why email instead of an authenticator app or SMS?
Email needs no app to install, no QR code to scan, and avoids the SIM-swap risk that SMS has, and it works on every device grandparents and kids already use. Stronger options like passkeys and hardware keys can layer on top for people who want them.