← All SocialNote Guides

Two-Factor Authentication

How to add an authenticator application to your SocialNote account, sign in securely, and retain access with recovery codes.

What two-factor authentication does

Two-factor authentication adds a second verification step to password-based sign-in. After entering your email address and password, you enter a current six-digit code from an authenticator application.

FactorWhat it verifies
Your passwordSomething you know.
Authenticator codeAccess to an authenticator you enrolled.
Recovery codeA one-time backup when the authenticator is unavailable.
Availability and district rollout

Two-factor authentication may be available in Account Security before your district requires it. When required enrollment is enabled, SocialNote will guide users through setup before they continue into the platform.

Before you begin

You will need a standards-compatible TOTP authenticator application. Common choices include Google Authenticator, Microsoft Authenticator, 1Password, and other applications that support time-based one-time passwords.

Treat the setup key like a password

The QR code and text setup key can enroll an authenticator. Do not photograph, email, paste into support messages, or share either one.

Set up an authenticator

If enrollment is optional, open Settings → Account Security and choose Enable two-factor authentication. SocialNote may ask you to confirm your password before displaying the setup screen.

  1. In your authenticator application, choose the option to add an account.
  2. Scan the QR code shown by SocialNote. If scanning is unavailable, enter the displayed setup key directly into the authenticator.
  3. Find the current six-digit code for SocialNote in the authenticator application.
  4. Enter that code in Authentication code.
  5. Choose Confirm enrollment or Confirm and continue.
  6. After SocialNote confirms that two-factor authentication is active, copy the recovery codes to a secure location.
Setup is not finished until confirmation succeeds

Scanning the QR code alone does not activate two-factor authentication. Enter a current six-digit code and wait for SocialNote to confirm the enrollment.

When setup is required

When your district enables required two-factor authentication, an unenrolled user is directed to Set up two-factor authentication after signing in and confirming their password. Complete enrollment to continue to the SocialNote dashboard.

Once required by the district, users cannot cancel or disable enrollment. This prevents an account from returning to password-only sign-in while the requirement is active.

Sign in with a code

  1. Enter your SocialNote email address and password as usual.
  2. On Verify your identity, open your authenticator application.
  3. Enter the current six-digit code associated with SocialNote.
  4. Choose Verify and sign in.

Authenticator codes change regularly. If a code is rejected, confirm that you selected the SocialNote entry, wait for the next code, and try again. Also check that the device running the authenticator has the correct date and time.

Recovery codes

Recovery codes are backup credentials for situations when your authenticator is unavailable. Each recovery code can be used only once.

Store them safely

Use a recovery code

  1. After entering your email and password, go to the Verify your identity screen.
  2. Enter one unused code under Recovery code.
  3. Choose Use recovery code.
  4. Mark that recovery code as used or remove it from your secure copy.

Generate a new set

Open Settings → Account Security and choose Generate new codes. You may be asked to confirm your password. Store the new codes immediately; every code from the previous set stops working.

If you lose the authenticator and recovery codes

Contact your district’s authorized SocialNote administrator or support contact. Expect the organization to verify your identity before requesting an enrollment reset.

After an authorized reset:

A reset does not reveal your old codes

An administrator should never ask you to read or send an authenticator code, recovery code, QR code, or setup key. Recovery replaces the old enrollment rather than retrieving its secrets.

Manage your enrollment

Use Settings → Account Security to see whether two-factor authentication is active, copy the current recovery codes, or generate a replacement set.

If two-factor authentication is optional, Account Security may also allow you to disable it after password confirmation. Disabling returns the account to password-only sign-in and invalidates the current recovery codes. When the district requires two-factor authentication, the disable option is not available.

Security reminders

DoDo not
Use an organization-approved authenticator and password manager.Share codes, setup keys, QR codes, or recovery codes with anyone.
Verify that a sign-in prompt follows an action you initiated.Approve or answer an unexpected request for account verification.
Generate new recovery codes if their storage may have been exposed.Store recovery codes in SocialNote student records or ordinary email.
Contact your administrator promptly after losing a device.Ask another person to enroll their authenticator on your account.

Who can do what

ActionWho
Enroll an authenticatorEach user for their own account.
Use or regenerate recovery codesEach enrolled user for their own account, after any required password confirmation.
Disable optional two-factor authenticationThe account owner when district enforcement is not active.
Require two-factor authenticationAuthorized SocialNote deployment administrators working with the district.
Reset a lost enrollmentAn authorized administrator or support operator after following the organization’s identity-verification process.