Note: While our most popular guides have been translated into Spanish, some guides are only available in English.
Protect your account with two-factor authentication

Two-factor authentication, sometimes shortened to 2FA, adds an extra layer of security to your account and all Squarespace sites on your account.

When logging into your account, you’ll enter an authentication code as an additional step. Depending on your settings, the code you enter will be generated by an authentication app on your smartphone or sent to you via text message. After you log in, you can skip two-factor authentication for 30 days.

If any of your sites have multiple contributors, your contributors can choose to enable two-factor authentication for their own accounts. There isn't a way to enable it for them.

Tip: For added security, follow these steps in a private place where other people can't see your screen.

Watch a video

Choose your authentication method

You can receive your authentication code via an authentication app or have the code texted to you. Use this section to compare your options. It’s best to enable only one of these methods. Enabling both doesn’t make your account more secure. 

Authentication app

  • The most secure option.
  • Avoids login issues with limited cell coverage.
  • Requires several steps to enable, which you must repeat if you get a new phone.

Text message

  • Quick to set up and use.
  • Widely used on other apps and services.
  • Less secure than using an authentication app, although protecting your account with any two-factor authentication method is always more secure.
Note: If you enable both options, you won’t receive a text message immediately. Use the code generated by the authentication app instead. To receive a text message, click Use a different method and then select Text Message.

Enable two-factor authentication via an authentication app

Step 1 - Download the authentication app

While you can use any authentication app, we recommend Google Authenticator. The app is available for Android and iOS devices.

Tip: The steps below should work for any authentication app, such as Authy or Duo, but if you have issues, contact your app's support team for more help.

Step 2 - Enable two-factor authentication

  1. Click this link to open Account & Security settings in your Account Dashboard.
  2. Click Two-Factor Authentication.
  3. Next to Authentication App, click Set Up.
  4. Enter your account password, and click Next. If you signed up with a social account, click Continue with [social network] to verify your credentials. 

Step 3 - Scan the QR code

Open the authenticator app on your phone to scan the QR code.

If you're changing your settings from a mobile device, the QR code won't display. Instead, you'll paste a code manually.

Tip: If your phone's camera is broken or unable to scan a QR code, log into your account on a mobile device and follow the mobile steps below.

For Google Authenticator, the steps are:

Desktop Mobile
  1. Open Google Authenticator. If this is your first time using the app, click Begin Setup. Otherwise, click the + icon.
  2. Click Scan barcode.
  3. Scan the QR code.

scan-qr.png

  1. Click Copy.

tap-copy.png

  1. Open Google Authenticator and click the + icon.
  2. Click Manual entry.
  3. Add your Squarespace account email.
  4. In the Key field, paste the code.
  5. Leave the Time Based toggle on, and click the ✓ icon in the top right.

A 6-digit number will appear.

Tip: A new 6-digit code is generated every 30 seconds, and is valid for 60 seconds.

logging-in.png

Step 4 - Type in your code

On your computer, type the 6-digit code in the Authentication Code field, then click Next.

Each code is valid for 60 seconds. If your code isn't accepted, check the app to see if there's a new code, or see our troubleshooting tips.

When your code is accepted, click Done.

Tip: If you use mobile apps, you'll need to update them.

 

next.png

Step 5 - Choose a backup method (optional)

In the window that appears, choose a backup method. This is useful if you lose your phone or get a new phone without re-enabling two-factor authentication. You can enable two-factor authentication via text message or print backup codes.

Enable two-factor authentication via text message (sms)

Step 1 - Enable two-factor authentication

  1. Click this link to open Account & Security settings in your Account Dashboard.
  2. Click Two-Factor Authentication.
  3. Next to Text Message, click Set Up.
  4. Enter your account password, and click Next. If you signed up with a social account, click Continue with [social account] to verify your credentials.
  5. Choose your country from the drop-down menu.
  6. Enter your cell phone number and click Submit.

Step 2 - Check your phone

After a few seconds, you’ll receive a text message with your six-digit authentication code.

Step 3 - Type in your code

  1. On your computer, enter the six-digit code and click Submit.
  2. Click Done.

Codes sent via text message expire after five minutes. If you have trouble logging in, see Troubleshooting two-factor authentication.

Step 4 - Choose a backup method (optional)

In the window that appears, choose a backup method. You can use an authentication app or print backup codes, which is useful if you lose access to your phone.

If you prefer to receive authentication codes via text message, we recommend printing backup codes as your backup method.

Print backup codes

Printing your backup codes is optional, but we highly recommend it. Having backup codes will enable you to log into your site if you lose access to your phone.

  1. In the Two-Factor Authentication window, click View beside Backup Codes.
  2. Enter your account password, or verify your credentials through the social account you signed up with.
  3. Click Print Backup Codes

image1.png

Logging in with two-factor authentication

The first time you log into your account after you enable two-factor authentication, you'll be prompted to enter an authentication code after you enter your email and password. Depending on your settings, you’ll get the code via an authentication app or a text message.

Authentication app

  1. Open the authentication app on your phone.
  2. Type the code from the app on the login screen.
  3. If you’d like, select Remember this computer for 30 days.
  4. Click Log In.
Tip: A new code is generated every 30 seconds, and is valid for 60 seconds. If your code isn't accepted, check the app to see if there's a new code, or see Troubleshooting two-factor authentication.

6-digit-code.png

Text message

  1. Check your phone. After a few seconds, you should receive a new text message.
  2. Type the code on the login screen.
  3. To skip two-factor authentication on your device the next time you log in, select Remember this computer for 30 days.
  4. Click Log In.

Using backup codes to log in

If you lose your phone or are unable to use your authenticator app, you can use the backup codes you printed during setup to access your account. Backup codes are generated in sets of three, and each code can be used one time.

To access your account:

  1. Go to your Squarespace Account Dashboard.
  2. Enter your account email and password and click Log In.
  3. Click Use a different method
  4. Click Backup code.
  5. Type an unused backup code in the authentication code field and click Log in.
  6. Your account will open.

Troubleshooting

If the backup code doesn't work, follow these troubleshooting steps:

  • Type the code in, rather than copying and pasting it.
  • Try a different code from the backup code list. Each code is single-use.

If these steps don't work, or if you don't have your backup codes, contact us.

Generate new codes

If you've used all your backup codes, or if you have access to your account but haven't yet printed your backup codes:

  1. Click this link to open Account & Security settings in your Account Dashboard.
  2. Click Two Factor Authentication, then Get Backup Codes.

Generate an app password

App passwords let you log into your Squarespace account from apps or devices that don't support two-factor authentication, such as Squarespace Logo. To generate an app password:

  1. Click this link to open Account & Security settings in your Account Dashboard.
  2. Click App Passwords, then Generate Password.
  3. Give the password a label, then click Next.
  4. Add your account password and click Next.
  5. Copy the app password and click Done.
  6. Use this app password to log into the app or device.

As long as two-factor authentication is enabled for your account, repeat these steps to generate a new app password any time you need to log into that app or device.

Disable two-factor authentication

To disable two-factor authentication:

  1. Click this link to open Account & Security settings in your Account Dashboard.
  2. Click Two Factor Authentication.
  3. Beside the authentication methods you've enabled, click Remove
  4. Enter your password. 
  5. Click Disable

Troubleshooting

For troubleshooting tips, visit Troubleshooting two-factor authentication.

 

Was this article helpful?
10 out of 70 found this helpful
Protect your account with two-factor authentication