2-Factor Authentication ensures an extra layer of security for your SurveySparrow account. You no longer have to worry about strangers stealing your passwords. With 2-Factor Authentication, users require a verification code to log in to their SurveySparrow account. Even if someone finds your password, they cannot log in without the verification code.
Let's see how it works.
Setting up the authentication
Before you begin, here's what you need to know.
Any user can set up 2FA for their own account from their profile page. However, if you'd like to enforce 2FA for everyone in your account, only the account owner can do so.
Log in to your SurveySparrow account and go to the Settings page.
Under Security, select the "Two Factor Authentication" section.
You'll see two ways to set up 2FA:
Authenticate with OTP — Receive a one-time password via mobile SMS or Email every time you log in.
Authenticate with Authenticator App — Use an authenticator app like Google Authenticator, Authy, or Duo to generate verification codes directly from your phone, even without network or internet access
Authenticate with OTP
Click the "Configure" button under Authenticate with OTP.
A pop-up will appear asking you to verify your account password.
Enter your password and click "Continue".
Now, select your preferred OTP mode:
SMS — Enter the phone number on which you'd like to receive the OTP.
Email — Your account email ID will be selected as the default.
You'll receive an OTP on the mode you've chosen — either via SMS or Email. Enter the OTP to proceed.
Note: Only one OTP mode — either SMS or Email — can be configured at a time.
Once verified, you'll see 10 backup codes for your account. You can copy, print, or download these codes for future use.
Note: Keep these codes safe. You can use them to log in to your account if you're ever unable to receive your verification code.
Click "Complete Setup" to finish the 2FA setup process.
A pop-up will appear asking, "Enforce all users to set up 2FA?"
Enabling this will require all users in your SurveySparrow account to sign in with a password and verification code. All users currently logged in will be signed out of their active sessions and must complete 2FA setup to regain access.
Click "Enforce 2FA" to apply it for all users, or click "I will do it later" to skip for now.
The toggle will be turned on if you've enforced 2FA for all users.
Authenticate with Authenticator App
Click the "Configure" button under Authenticate with Authenticator App.
A pop-up will appear asking you to verify your account password. Enter your password and click "Continue".
You'll be asked to scan the QR code using any authenticator app — such as Google Authenticator, Authy, or Duo.
Can't scan the QR code? Click on the "Setup Key" option and manually add this key to your authenticator app.
Once you've scanned the QR code, your authenticator app will generate a security code. Enter the security code to proceed.
Once verified, you’ll see 10 backup codes for your account. You can print or download these codes for later use.
Click "Complete Setup" to finish setting up authentication using the Authenticator App.
A pop-up will appear asking, "Enforce all users to set up 2FA?"
Enabling this will require all users in your SurveySparrow account to sign in with a password and verification code. All users currently logged in will be signed out of their active sessions and must complete 2FA setup to regain access.
Click "Enforce" to apply it for all users, or click "I will do it later" to skip for now.
The Login process after enabling 2-Factor Authentication
Log in to your SurveySparrow account using your email and password.
You'll be asked to enter your verification code.
Note: When both authentication methods are enabled, either one of the methods can be used for login verification.
If you'd like to use a different verification method, click "Try Another Method". You'll be presented with the following options:
Backup Codes — Use one of your saved backup codes to log in. This is particularly useful if you face any difficulty receiving the verification code due to network issues.
Mobile/Email OTP — Receive a one-time password via your configured SMS or Email.
Note: Mobile/Email OTP will appear as an option only if you had configured it during your 2FA setup.
Select your preferred method and enter the corresponding code to log in to your SurveySparrow account.
Generating new backup codes
Once you've used all your backup codes, you can generate a new set.
Here's how:
Navigate to the Settings page and go to the "Two Factor Authentication" section.
Click on the "View Backup Codes" button.
You'll be asked to verify using your SurveySparrow account password.
Click on the "Generate New Codes" button.
A new set of 10 backup codes will be generated. You can either print the backup codes or download them as a PDF file.
Disabling Two-Factor Authentication
In the Settings page of your SurveySparrow account, go to the "Two Factor Authentication" section.
Click the three-dot icon and select 'Disable Authentication'.
You will be asked to verify using your SurveySparrow account password for confirmation.
Once verified, the two-factor authentication will be disabled.Note: General users cannot disable the 2FA on their own. Only the account owner can turn it off.
Note
If 2FA is enforced for all users, everyone will be logged out of their active sessions and must complete the 2FA setup to regain access.
General users cannot disable the 2FA.
Each user will have 10 unique backup codes that they can each use once. New codes can be generated once all existing ones are used up.
Users who use SSO or SAML 2.0 for login cannot use the verification code method.
FAQs
Can I change the mobile number or email after setting up the authentication?
Sure, you can! You can simply disable the two-factor authentication and enable it again with your new mobile number.
How many backup codes can I use?
When you complete setting up the two-factor authentication, you will be allotted 10 backup codes. You can use each of them once to log in to your account. Once you've used all 10 backup codes, you can generate a new set.
Can I switch between OTP and the Authenticator App?
Yes! You can disable the current 2FA setup and reconfigure it with your preferred authentication method.
Feel free to reach out to our community, if you have any questions!