Two-Factor Authentication#
Enable time-based one-time password (TOTP) multi-factor authentication from Settings → Security. MFA adds a second proof at sign-in and protects an account even when a password or connected identity is compromised.
Store recovery information in a secure place that is separate from the device running the authenticator. Do not share one-time codes with support, collaborators, or an application.
Organization policy can require stronger authentication for access to shared resources. See Account Security and Organization Single Sign-On.

