In final testing

NexGuard isn’t on Google Play yet. Join early access and we’ll send the install link the day it opens.

Home Features Two-factor (2FA)
AvailableFree · Pro · Family

Lock down your account with two-factor

Add a second layer to your NexGuard account with an authenticator app. A time-based one-time code (TOTP) is required alongside your password, and one-time recovery codes get you back in if you lose your device.

Two-factorExample
Enter the 6-digit code
148293
Authenticator app
TOTP · connected
ON
Recovery codes
8 saved · one-time use
SAFE
Other sessions ended
When 2FA changed
✓

Illustrative data — not a real account

Who it’s for

Two-factor (2FA) in one line

Every NexGuard user who wants their account — and the vault behind it — protected even if their password is ever guessed or leaked.

The problem it solves

Why it matters

A password alone is a single point of failure. Two-factor means a stolen password isn’t enough on its own, and rotating sessions mean a leaked token can’t linger.

Key benefits

What you get

Standard TOTP

Works with any authenticator app you already use. Codes are generated on your device, following the usual RFC-based standard.

Recovery codes

Enabling 2FA gives you one-time recovery codes so you’re never locked out if your authenticator is lost.

Sessions that self-heal

Turning 2FA on or off ends every other active session. Refresh tokens are single-use and rotate on every use.

How it works

From tap to result

STEP 01

Enable

Scan the setup code into your authenticator app and confirm a code to turn 2FA on.

STEP 02

Save recovery

Store the one-time recovery codes somewhere safe — ideally your encrypted vault.

STEP 03

Sign in securely

From then on, sign-in asks for your authenticator code; other sessions are revoked when 2FA changes.

Where it fits

Everyday use cases

Real situations where two-factor (2fa) earns its place.

Protecting the account that guards your encrypted vault.
Keeping a leaked password from being enough to sign in.
Getting back in with a recovery code after switching phones.

Availability & plans

Available in the app today
Built, tested and part of NexGuard.
Included on
Free · Pro · Family
No hidden monitoring
Runs only when you ask; nothing in the background.
Compare plans

Questions

Two-factor (2FA), explained

Which authenticator apps work?
Any standard TOTP authenticator app works, since NexGuard follows the usual time-based one-time password standard.
What if I lose my authenticator?
Use one of the one-time recovery codes you saved when enabling 2FA. Each works once.
Does changing 2FA log me out elsewhere?
Yes — by design. Enabling or disabling 2FA revokes all your other active sessions, so a stale session can’t linger.

Get early access

Ready when you are

Get NexGuard free and see your whole security posture in minutes — no card to start, upgrade only if you want higher limits and the advanced engines.