Two-Factor Authentication
Why Enable 2FA
Two-factor authentication adds an extra layer of security to your huhu.ai account. Even if someone obtains your password, they cannot log in without the second factor. We strongly recommend enabling 2FA for all accounts, especially those with API access or billing permissions.
Setting Up TOTP
Go to Settings > Security > Two-Factor Authentication and click Enable. Scan the QR code with an authenticator app such as Google Authenticator, Authy, or 1Password. Enter the six-digit code displayed in your app to confirm the setup.
From this point onward, every login will require both your password and a fresh code from your authenticator app.
Recovery Codes
After enabling 2FA you will be shown a set of 10 single-use recovery codes. Store them in a secure location such as a password manager. Each code can be used once in place of your TOTP code if you lose access to your authenticator device.
You can regenerate recovery codes at any time from the Security settings page, which invalidates all previously issued codes.
Enforcing 2FA for Your Team
Workspace Owners and Admins can require all team members to enable 2FA. Toggle Require 2FA in Settings > Security. Members who have not yet enabled 2FA will be prompted on their next login and will not be able to access the workspace until they comply.