Opening Manage MFA
Go to Account (your avatar menu, or/account) and find the Login & Security section on the Account tab. The Multi-Factor Authentication field shows your current status (Off, or On · {method}) with an edit icon that opens the drawer.

The Login & Security section of Account settings, with Password and Multi-Factor Authentication fields
Choosing a method
The first time you open the drawer, you’re asked how you’d like to get your verification code:
The Choose authentication method step, listing Email, Authenticator App, and Passkey
- Email — a one-time code is sent to your registered email address at sign-in.
- Authenticator App — codes are generated by an app like Google Authenticator (any TOTP-compatible app works).
- Passkey — your device’s fingerprint, face unlock, or screen lock. See Passkeys for a dedicated walkthrough of this method.

The password re-verification step before setting up a new MFA method
Setting up an authenticator app
Verify your password
Add the account to your authenticator app

The authenticator app setup step, with a scannable QR code and a manual-entry key
Enter the current code

The verification code step after authenticator app setup
Email one-time codes
Choosing Email skips the app-setup step: after the password check, Scanova sends a 6-digit code to your registered email address and shows the same OTP-entry screen, with a countdown before you can request another code.
The email one-time code entry step, showing a resend countdown
Passkeys
Passkeys use your device’s built-in biometrics or screen lock instead of a code. Setup and sign-in both work a little differently from the code-based methods above — see Passkeys for the full walkthrough.Adding another method
Once you have at least one method enrolled, the drawer’s main view lists it with a Default badge and a delete (trash) icon, and the footer button changes to Add another method:
The MFA status view with one enrolled method

Adding a second method once one is already enrolled
Saving backup codes
After enrolling your first MFA method, Scanova generates a set of single-use recovery codes. Save them somewhere safe — each can be used once to sign in if you lose access to your regular MFA method, and they’re never shown again after this step.
The recovery codes step, with Download and Copy actions
Signing in with MFA
Once MFA is enabled, signing in with your password takes you to a security-check screen for your default method instead of straight into your account. For example, with a passkey as the default:
The MFA security check at sign-in

Signing in with a backup code instead of the default MFA method
Related
- Passkeys — a closer look at the passkey method.
- Google login — how Google sign-in is used both for login and for re-confirming your identity on password-less accounts.
- Password reset — recovering access if you’ve forgotten your password (separate from MFA recovery codes).