A second factor, actually protected
Standard TOTP two-factor authentication, with the secret itself encrypted at rest - not just the password it’s protecting.
Set up in under a minute
Turn it on from Settings → Security with any authenticator app (Google Authenticator, Authy, 1Password, etc.) - scan the code, confirm it once, and it’s required on every sign-in after that.
- Works with any standard TOTP authenticator app
- Your TOTP secret is encrypted at rest with AES-256-GCM, not stored in plain text
- Recovery codes are Argon2-hashed and single-use
Alongside Argon2id password hashing
Your password itself is never stored or logged in plain text - it’s hashed with Argon2id, the current recommended standard, before it ever touches disk.
Bring the whole conversation together.
Set up a workspace in a couple of minutes. Free for up to 5 members, no credit card required.
