Proton

Two-factor authentication (2FA)

Lectura
5 min

Two-factor authentication (2FA) adds an extra layer of security to your Proton Account, making it harder for an attacker to break in. You can set up 2FA with an authenticator app, or a physical U2F or FIDO2 security key.

2FA is available on all Proton services apps, with both free and paid plans. We highly recommend setting it up for extra account security.



2FA setup and usage guides

These articles provide detailed instructions on how to enable two-factor authentication, manage your devices, and sign in to Proton with your 2FA device. You’ll also find troubleshooting tips for common issues.

If you lose your 2FA device

If you don’t have your 2FA device (or if it stops working), here’s how to regain access to your Proton Account:

Use an alternative 2FA device

Any of your 2FA devices will allow you to sign in to Proton. So if you lose access to a 2FA device and you have another one enabled, try that instead.

You can link multiple 2FA devices to your Proton Account. You can also have authenticator app 2FA and security key 2FA enabled at the same time.

Once signed in, remember to disable the lost 2FA device so nobody else can use it.

Use a 2FA recovery code

When you set up 2FA for your Proton Account, we provide several one-time use recovery codes.

If you lose your device, you can sign in by entering one of these codes instead.

2FA recovery codes

Once signed in, remember to disable the lost 2FA device so nobody else can use it.

Use a recovery method

If you’re still signed in

You can disable 2FA from your account settings using a password reset recovery method. This process only disables 2FA, so you won’t need to change your password or recover your account data.

  1. Open your Proton Account settings in any Proton web app (Settings ⚙️ → All settings).

If you’re signed in on one of our mobile or desktop apps, use QR-code sign in to transfer your session to the web.

  1. Select Account and password from the sidebar. Scroll to Two-factor authentication and click Lost access to your 2FA device?
Select Lost access to your 2FA device?
  1. You’ll see a Disable two-factor authentication? pop-up. Click Continue.
Click Continue

4. Select a recovery method and click Continue.

Select your preferred recovery method and click Continue

5. Verify yourself with your chosen recovery method.

    • If you’re using a recovery phrase, enter your 12-digit phrase and click Continue.
    • If you’re using email or SMS verification, enter the verification code sent to your recovery email or phone number. Click Verify account.

    2FA is now disabled. We recommend setting up another 2FA device to keep your account secure.

    If you’re signed out

    Use a recovery method to reset your password and recover your Proton Account. This will disable two-factor authentication so you only need your new password to sign in.

    After you recover your account, you can re-enable 2FA and pair a new 2FA device.

    How to recover your Proton Account

    What is two-factor authentication (2FA)?

    2FA protects you by requiring two separate forms of verification when you sign in to an online account. You’ll need:

    1. Something you know: Your password
    2. Something you have: A physical security key, or access to a linked authenticator app

    When 2FA is enabled, you’ll be asked for both forms of verification every time you sign in to your account.

    This means that getting your password isn’t enough to compromise your account. Even if an attacker knows your password, they still won’t be able to sign in — unless they also have your security key or access to your authenticator app.