When you sign in, we’ll ask you to enter your email and password, then you’ll be prompted with one of the 2FA methods below and enter a code into Subsplash to complete the sign-in process. 2FA is for Subsplash dashboard users and does not apply to end users.
General Setup
To enable one of the following methods of 2FA, you will be prompted to do so when logging in. If you are able to login without enabling 2FA, you will need to navigate to your User settings.
Here you will see Enable 2FA:
This will prompt you to log out and begin the setup process for 2FA.
At this point, you will select what method you would like to enroll in, either TOTP or SMS.
SMS
Receive verification codes by text message (SMS) to your phone number.
Start by entering your phone number.
Then enter the 6-digit code that was sent to it.
TOTP
Time-based one-time password (TOTP) is a security method that allows a third-party app or password manager to generate a security code for the platform you are logging into.
The code will be required the first time you log in with 2FA and each time you log in with a different IP address (new device, network, VPN, etc.)
Choose Authenticator App
You’ll be prompted to download an authenticator app. You can use any authenticator app you prefer, or you can download one of our recommendations. We recommend:
- Google Authenticator 
- Microsoft Authenticator 
- Authy 
If you prefer not to use your mobile phone to authenticate, you can use a browser-based authenticator. We recommend:
- Google Authenticator (free!) 
- Bitwarden 
Link your Subsplash account to the authenticator app
If you are using an authenticator app on your mobile phone, make sure you have your preferred authenticator app downloaded and scan the QR code with your phone’s camera. If you cannot scan the QR code, click Can't scan it? to copy your authenticator key manually.
If you are using a browser-based authenticator, log in to your preferred authenticator, then click Can't scan it? and copy your authenticator key into your authenticator.
QR Code
Setup Key
Enter the code from your authentication app
Once your code has been generated, click Enter verification code, then copy and paste it into the following screen to continue.
Confirm your Name
After setting up TOTP or SMS, you will confirm your First and Last name which will be used to verify your identity should you have trouble accessing your account.
This should match what is on your photo ID.
Recovery Code
After confirming your name, you will be presented your recovery code. This code will allow you to sign into Subsplash if you lose access to your authenticator app or SMS number, or if you are having trouble getting the authentication code to work.
Make sure you keep this code safe. We do not keep these on file, and it will not be surfaced to you again.
If you have entered the code from your Authenticator app or SMS multiple times without success, click the link that says Use backup recovery code below. You must do this before attempting authentication 5 times and getting your account locked.
Once you use your recovery code, it will automatically expire and remove 2FA from your account. If you want to enable it again, just follow steps 1-5 above.
What happens if you get locked out of your account?
We understand that things happen, new computers, lost access to emails, etc. If you need help getting back into your account follow the steps below.
If you are having trouble, but haven't had your account locked yet, start by clicking Use backup recovery code which will allow you to input your recovery code.
If you did not save your recovery code you can then choose I don’t have my backup recovery code and that will lock your account, requiring an admin to unlock it.
If you get your account locked, either by entering the authenticator code incorrectly 5 times or selecting I don't have my backup recovery code, you will be presented with the screen below and receive an email that your Admins have been notified.
We strongly recommend having more than one user with Administrator privileges (Admins) on your account. There is no additional cost associated with having more Dashboard Users.
Resetting Two-Factor Authentication
Steps from this point will depend on whether you have Admin permissions in your Dashboard.
Not an Admin User
An Admin user from your Dashboard will need to unlock your account. From the steps above they have been notified that you need help and can log in to the Dashboard to reset your 2FA.
Admin User
If you are an admin user, be on the lookout for Dashboard users who are requesting help getting logged in and resetting their Two-factor authentication.
If you, as an admin, lost access to your Two-factor authentication, just go through the steps above and another Admin can reset it for you once they log in. Even as an admin, you cannot unlock your own account. Another admin on your account must do it for you.
If there are no other admin users on your Dashboard, unlocking the account takes a few extra steps. Follow the same instructions as above. When you receive the email, click Contact Support.
This link will take you to our meeting scheduling option, where you will select a time to meet with a Support agent. We will get on a live video meeting and request to see a photo ID with the same First and Last name that we have captured when setting up 2FA. As long as everything matches, we will unlock your user.
FAQs
Can I disable 2FA?
Two-Factor Authentication is required for all Subsplash Dashboard users and cannot be disabled. This is a security measure that greatly decreases the risk of someone else gaining access to your Subsplash Account.
Can I change my 2FA method?
Yes! If you'd like to change your 2FA method from SMS to TOTP or vice versa, you can do so by going to the Users page of your Dashboard Settings, and clicking Reset 2FA on your User account. This will also provide a new recovery code, be sure to write that down somewhere secure!











