Setting Up Two-Factor Authentication
Two-factor authentication (2FA) adds an extra layer of security to your account. Even if someone gets your password, they can’t access your account without the second factor—a code from your phone.What is Two-Factor Authentication?
With 2FA enabled, signing in requires:- Something you know — Your password
- Something you have — A code from your phone
Choose Your 2FA Method
Rallies supports two methods:| Method | Security Level | How It Works |
|---|---|---|
| Authenticator App (Recommended) | High | App generates codes that refresh every 30 seconds |
| SMS Text Message | Medium | Code sent via text to your phone number |
Recommended Authenticator Apps
Any TOTP (Time-based One-Time Password) app works:- Google Authenticator (iOS, Android) — Simple and free
- Authy (iOS, Android, Desktop) — Syncs across devices
- 1Password (iOS, Android, Desktop) — If you already use it for passwords
- Microsoft Authenticator (iOS, Android) — Good for Microsoft users
Set Up 2FA on Web
Using an Authenticator App
- Go to rallies.ai and sign in
- Click your profile icon → Settings
- Click the “Security” tab
- Find Two-Factor Authentication and click “Enable”
- Select “Authenticator App”
- You’ll see a QR code on screen
-
Open your authenticator app and scan the QR code
- In most apps: tap ”+” or “Add account,” then “Scan QR code”
- Your app will now show a 6-digit code that refreshes every 30 seconds
- Enter the current code from your app into Rallies
- Click “Verify”
- Save your backup codes! — You’ll be shown recovery codes. Store these somewhere safe (password manager, printed copy, etc.)
- Done! 2FA is now active.
Using SMS
- Go to Settings → Security
- Click “Enable” under Two-Factor Authentication
- Select “SMS / Text Message”
- Enter your phone number
- Click “Send Code”
- Enter the 6-digit code you receive via text
- Click “Verify”
- Save your backup codes!
- Done! You’ll receive a text code each time you sign in.
Set Up 2FA on Mobile
iOS
- Open Rallies app → Settings → Security
- Tap “Two-Factor Authentication”
- Choose Authenticator App or SMS
- Follow the prompts to scan QR code or verify phone number
- Save your backup codes
Android
- Open Rallies app → Menu → Settings → Security
- Tap “Two-Factor Authentication”
- Choose your method and follow the setup prompts
- Save your backup codes
About Backup Codes
When you enable 2FA, you’ll receive backup codes. These are one-time-use codes that let you sign in if you lose access to your authenticator or phone. Important:- Each code can only be used once
- Store them in a safe place (password manager, safe, printed in secure location)
- Don’t store them on the same phone as your authenticator (if your phone is lost, you lose both)
- You can generate new codes anytime from Settings → Security
Signing In with 2FA
Once 2FA is enabled, signing in works like this:- Enter your email and password as usual
- You’ll be prompted for a verification code
- If using an authenticator app: Open the app and enter the current 6-digit code
- If using SMS: Wait for the text and enter the code
- Click “Verify” to complete sign-in
Disable 2FA
If you need to turn off two-factor authentication:- Go to Settings → Security
- Find Two-Factor Authentication
- Click “Disable” or “Turn Off”
- Enter your password to confirm
- Enter a 2FA code (or backup code) to verify it’s you
- 2FA is now disabled
⚠️ Note: We recommend keeping 2FA enabled for security. Only disable if you have a specific reason.
Troubleshooting
”Invalid code” when setting up
- Make sure you’re entering the current code (they refresh every 30 seconds)
- Check that your phone’s time is accurate (authenticator apps are time-sensitive)
- Try waiting for a new code and entering it immediately
Lost access to your authenticator app
Use one of your backup codes to sign in:- On the 2FA prompt, click “Use backup code”
- Enter one of your saved backup codes
- Once signed in, go to Settings → Security to set up a new authenticator
Lost your phone AND backup codes
Contact support with:- Your account email
- Information to verify your identity (when you signed up, subscription status, etc.)
SMS codes not arriving
- Make sure you entered the correct phone number
- Check you have cell service
- Wait a few minutes—texts can be delayed
- Try requesting a new code
- Check if your carrier blocks short codes
Authenticator codes not working
- Verify your phone’s date/time is set to automatic
- Make sure you’re scanning the QR code for Rallies (not another service)
- Try removing and re-adding the account in your authenticator app
If You Use Google/Apple Sign-In
If you sign in with Google or Apple, 2FA is managed by those providers:- Google: myaccount.google.com/security
- Apple: Settings → [Your Name] → Sign-In & Security → Two-Factor Authentication
Frequently Asked Questions
Is 2FA required?
No, but we strongly recommend it. Financial research platforms are valuable targets, and 2FA significantly reduces the risk of unauthorized access.What if I get a new phone?
If you use an authenticator app:- Some apps (like Authy) sync across devices automatically
- For others, you’ll need to set up 2FA again using backup codes
- Transfer your authenticator before wiping your old phone if possible
- If you keep the same phone number, it will work on your new phone
- If you get a new number, update it in Settings before losing access to the old one

