Two-factor authentication, or 2FA, requires a temporary code in addition to your password. It helps protect your services even if somebody learns your password.
### Enable 2FA
1. Sign in to the HillHost Client Area.
2. Open your account or security settings.
3. Select **Two-Factor Authentication** and choose **Enable**.
4. Install an authenticator app on your phone if you do not already have one.
5. Scan the displayed QR code with the app.
6. Enter the current six-digit code to confirm setup.
7. Save the recovery code in a password manager or another secure offline location.
8. Sign out and sign in again to confirm that it works.
Menu names can differ slightly depending on the Client Area version.
### Important precautions
- Do not store the recovery code only on the phone used for authentication.
- Do not send QR codes or recovery codes by email or support ticket.
- Use a unique password for the HillHost Client Area.
- Keep the account email address current and protected with its own 2FA.
### If you lose access
First try the saved recovery code. If it is unavailable, contact HillHost support from the registered email address. Account-ownership verification may be required before 2FA can be removed.
**Related articles:** Getting Started with Your HillHost Hosting Account; First Security Steps for a New VPS
