If you're an admin of a Dashlane professional plan, you can enforce 2FA for your members in the policy settings tab of the Admin Console
This article has steps to use 2-factor authentication (2FA) to log in to your Dashlane account. You can turn on 2FA for your Dashlane account in our web version. After you turn on the setting, you can use 2FA to log in to Dashlane on all platforms. You can turn off 2FA on the web or in the mobile app.
What's 2FA? Read more about 2FA in Dashlane
Protect logins stored in Dashlane with 2FA
To set up 2FA for your Dashlane account, you need to download an authenticator app for your mobile device, which you'll use to store the 6-digit tokens used in the 2FA process. Authenticator apps include Google Authenticator, Microsoft Authenticator, Duo Mobile, and others.
Don't see the 2FA settings? You don't have the 2FA settings described in this article if you have a passwordless Dashlane account. You also won't have the settings if you get Dashlane through your organization and use single sign-on (SSO) to log in. If you have questions about 2FA and SSO, or are unsure whether you have SSO, ask your plan admin.
Tip: The email codes we send you when you sign in to Dashlane on a new device also serve as an additional form of 2FA. If you can't find your email code, check your spam folder. Also, make sure you look in the inbox for the Dashlane contact email address.
What is my contact email address?
Steps to manage 2FA in Dashlane
Turn on 2FA for Dashlane on the web
Step 1: Download an authenticator app for your mobile device
Authenticator apps include Google Authenticator, Microsoft Authenticator, Duo Mobile, and others.
Step 2: Turn on 2FA from your security settings on the web version of Dashlane
- Log in to Dashlane in your computer browser
-
In the Vault menu in the top left of the page, select Settings, then Security settings, and then turn on 2-factor authentication. If asked, enter your Master Password and select Next.
-
Choose whether to use 2FA every time you log in to Dashlane or only when you log in from a new device. If you choose to use 2FA at every login, you'll need an internet connection whenever you access your account. Select Continue.
-
Enter your mobile device's phone number. If you get locked out of your account, we can text recovery codes to this number. Select Continue.
Content block: Note about limitation for singapore, etc. -
In the next pop-up on the web, you'll see a QR code and a setup code.
Note: You'll scan the QR code with the camera in your authenticator app. You only need to use the setup code if you can't use a camera to scan the QR code. The setup code is a long series of letters and numbers that you can enter in your authenticator app.
Step 3: Use the QR code or setup code to turn on 2FA in your authenticator app
- Open the authenticator app on your mobile device. Select the option to add a 2FA token. Depending on your authenticator app, this option might be labeled Add a code, Add a token, or Add an account.
-
Depending on your authenticator app, you'll have the option to scan a QR code or to enter a setup code or setup key:
QR codes
- Select Scan a QR code.
- A camera opens on your mobile device. Scan the QR code from the Dashlane web version using the camera.
Setup codes or keys
- Select Use a setup code or Enter a setup key, depending on where you use Dashlane.
- Enter the setup code from the web version in the space provided in the authenticator app.
After you scan the QR code or enter the setup code, a 6-digit token appears in the authenticator app on your mobile device. Enter this token in the Dashlane web version to complete the process.
Step 4: Enter the 2FA token from your authenticator app in the Dashlane web version and download recovery codes
- On the web, select Continue if you still see the QR code.
-
Enter the 2FA token from your authenticator app. Select Confirm.
-
In the next pop-up on the web version, you'll see a list of recovery codes. Download the recovery codes and save them in a safe location. You can use recovery codes to regain access to your account if you lose access to the authenticator app on your mobile device.
- Select Done.
After you've turned on 2FA, you'll see a 2FA token for Dashlane whenever you open your authenticator app. Depending on the settings you chose when you set up the app, we'll ask for this token every time you log in to Dashlane or only when you log in from a new device.
Tokens generally expire every 30 seconds. When the token expires, you receive a new one, and the old one becomes invalid.
Log in to Dashlane with 2FA on the web
- Open Dashlane in your web browser
- Enter your Dashlane login email address and select Next.
- A security check confirms the request is genuine, so attackers can't fake the process or trick you into a login on a fake website.
-
On the next screen, enter the 2FA token from your authenticator app and select Next.
Note: If you don't have access to your authenticator app, you can use a recovery code instead.
Log in with a recovery code on web - Enter your Master Password and select Log in. Then select Open the web app.
Important: If you use an authenticator app and Dashlane on different devices, set both devices to the same time. 2FA tokens generally expire every 30 seconds, and time differences between your devices can cause issues.
If you lose access to the phone you use to log in with 2FA, you can use recovery codes as an emergency solution to log in and turn off 2FA.
Turn off 2FA for your Dashlane account on the web
- Log in to Dashlane on the web
- Select the Vault menu in the top left of the page. Then select Settings.
- Select Security settings.
-
Turn off 2-factor authentication.
-
In the pop-up, select Yes, turn off.
-
On the next screen, enter the 2FA token from your authenticator app and select Next.
Note: If you don't have access to your authenticator app, you can use a recovery code instead.
Turn off 2FA with a recovery code on the webImportant: You must complete the first four steps before you proceed to the final step. Otherwise, you risk being locked out of your account.
- Return to your authenticator app and delete the token for your Dashlane account.
If you lose access to the phone you use to log in using 2FA, you can use recovery codes as an emergency solution to log in and turn off 2FA.
Manage 2FA options on the web
When 2FA is turned on for your Dashlane account, you can view your 2FA options on the web. From the Vault menu in the top left of the page, select Settings, then Security settings, and then View options.
If you want to change 2FA options—like the phone number we use to send your recovery codes or whether 2FA is turned on for when you log in to new devices only or for every time you log in to Dashlane—you need to turn 2FA off and back on again. When you turn 2FA back on, choose the options you want.
Log in to the Dashlane Android app with 2FA
- In the Android app, enter your login email address. Select Continue.
- A security check confirms the request is genuine, so attackers can't fake the process or trick you into a login on a fake website.
-
On the next screen, enter the 2FA token from your authenticator app and select Next.
Note: If you don't have access to your authenticator app, you can use a recovery code instead.
Log in with a recovery code on Android - Enter your Master Password and select Log in.
Important: If you use an authenticator app and Dashlane on different devices, set both devices to the same time. 2FA tokens generally expire every 30 seconds, and time differences between your devices can cause issues.
If you lose access to the phone you use to log in using 2FA, you can use recovery codes as an emergency solution to log in and turn off 2FA.
Turn off 2FA for your Dashlane account with the Android app
- In the Android app, select the three parallel lines to open the side menu.
- Select Settings.
- Select Security.
- Turn off 2-factor authentication (2FA).
- Select Yes, turn off.
-
Enter the 2FA token from your authenticator app and select Next.
Note: If you don't have access to your authenticator app, you can use a recovery code instead.
Turn off 2FA with a recovery code on Android - Return to your authenticator app and delete the token for your Dashlane account.
Manage 2FA settings in the Android app
This setting is available only in the Android app.
When you turn on 2FA with your Android device and choose to use 2FA every time you log in, you'll see a new option in your security settings—Disable 2FA. When Disable 2FA is turned on, we won't always ask for a 2FA token when you sign in to Dashlane on your Android device. If you want us to request a 2FA token every time you use Dashlane on this device, turn off Disable 2FA.
Important: You can't turn on 2FA for your Dashlane account in the Android app. However, you can sign in to the Android app with 2FA after you turn on the setting on the web. You can also turn off 2FA from the Android app.
Log in to the Dashlane iPhone or iPad app with 2FA
- In the Dashlane iPhone or iPad app, enter your Dashlane email address and select Next.
- The Security check screen appears. Select the checkbox. This security check confirms the request is genuine, so attackers can't fake the process or trick you into a login on a fake website.
-
On the next screen, enter the 2FA token from your authenticator app and select Next.
Note: If you don't have access to your authenticator app, you can use a recovery code instead.
Log in with a recovery code on iPhone - Enter your Master Password and select Next.
Important: If you use an authenticator app and Dashlane on different devices, set both devices to the same time. 2FA tokens generally expire every 30 seconds, and time differences between your devices can cause issues.
If you lose access to the phone you use to log in using 2FA, you can use recovery codes as an emergency solution to log in and turn off 2FA.
Turn off 2FA for your Dashlane account with the iPhone or iPad app
- Log in to the Dashlane iPhone or iPad app
- Select Settings in the bottom menu.
- On the Settings screen, select Security.
- On the Security screen, turn off 2-factor authentication (2FA).
- In the pop-up, select Yes, turn off.
-
Enter the 2FA token from your authenticator app and select Next if needed.
Note: If you don't have access to your authenticator app, you can use a recovery code instead.
Turn off 2FA with a recovery code on iPhone - Return to your authenticator app and delete the token for your Dashlane account.
Important: You can't turn on 2FA for your Dashlane account in the iPhone or iPad app. However, you can sign in to the iPhone or iPad app with 2FA after you turn on the setting in the web version. You can also turn off 2FA from the iPhone or iPad app.
Log in to the Dashlane macOS app with 2FA
You can't turn 2FA on or off for your Dashlane account in the Dashlane macOS app. But you can sign in to the macOS app with 2FA after you turn on the setting in the web version.
Note: Dashlane can't autofill 2FA tokens in the macOS app. If you use 2FA for specific logins in the macOS app, copy and paste your token from the extension pop-up or the mobile app.
- In the Dashlane macOS app, enter your login email address and select Next.
- The Security check screen appears. Select the checkbox. This security check confirms the request is genuine, so attackers can't fake the process or trick you into a login on a fake website.
- Enter the 2FA token from your authenticator app, and select Next if needed.
- Enter your Master Password and select Log in.
Important: If you use an authenticator app and the Dashlane app on different devices, set both devices to the same time. 2FA tokens generally expire every 30 seconds, and time differences between your devices can cause issues.
If you lose access to the phone you use to log in using 2FA, you can use recovery codes as an emergency solution to log in and turn off 2FA.
Important: For security and privacy reasons, users removed from a Dashlane professional plan must turn off 2FA. They'll be prompted to turn off 2FA the next time they log in after being removed from the plan. If they want to continue to use Dashlane with a personal account, we recommend turning 2FA back on afterward.
Lost your phone? Use recovery codes to log in and turn off 2FA
When you first turn on 2FA, we ask you to save recovery codes. These codes are helpful if you lose the phone you use with 2FA. You can use the codes as a temporary solution to log in to your account and turn off 2FA. You always need two recovery codes—one to log in and another to turn off 2FA.
Make sure to save your recovery codes on a device other than the one you use as an authenticator. Then, if you lose your device, you'll still have access to your account.
Step 1: Log in with a recovery code on the web
- Open Dashlane in your web browser
- Enter your Dashlane login email address and select Next.
- A security check confirms the request is genuine, so attackers can't fake the process or trick you into a login on a fake website.
-
Dashlane asks for a verification code. Select Log in another way and then select Use a 2FA recovery code.
- Enter the recovery code and select Log in.
- Enter your Master Password and select Log in.
Step 2: Turn off 2FA with a recovery code on the web
- Select the Vault menu in the top left of the web app. Then select Settings.
- Select Security settings.
- Select 2-factor authentication to turn off the setting.
- In the pop-up, select Yes, turn off.
-
Select Use a recovery code.
-
Enter a recovery code and select Confirm.
You'll see a confirmation that 2FA is turned off. You can turn the setting on again in your web browser. Make sure to save your new recovery codes.
When you turn 2FA off and on again, you get new recovery codes, and your old recovery codes won't work. To avoid confusion, delete any old recovery codes.
Step 1: Log in with a recovery code on Android
- In the Dashlane Android app, enter your Dashlane login email address and select Continue.
- A security check confirms the request is genuine, so attackers can't fake the process or trick you into a login on a fake website.
-
Dashlane asks for a verification code. Select Trouble signing in.
- In the pop-up, select I can't access my 2FA app.
- In the next pop-up, select Log in with a recovery code.
-
Then, enter a recovery code and select Next.
- Enter your Master Password and select Log in.
Step 2: Turn off 2FA with a recovery code on Android
- In the Android app, select the three parallel lines on the top left to open the side menu.
- Select Settings.
- Select Security.
- Turn off 2-factor authentication.
-
In the pop-up, select Yes, turn off.
- On the screen where you can enter a token, select Use a recovery code.
- In the pop-up, select Use a recovery code.
-
Enter a recovery code and select Turn off 2FA.
You'll see a confirmation that 2FA is turned off. You can turn the setting on again in your web browser. Make sure to save your new recovery codes.
When you turn 2FA off and on again, you get new recovery codes, and your old recovery codes won't work. To avoid confusion, delete any old recovery codes.
Step 1: Log in with a recovery code on iPhone
- In the Dashlane iPhone app, enter your Dashlane login email address and select Next.
- The Security check screen appears. Select the checkbox. This security check confirms the request is genuine, so attackers can't fake the process or trick you into a login on a fake website.
-
Dashlane asks for a verification code. Select Trouble signing in.
- On the Let's get you signed in screen, select I can't access my 2FA app.
- On the Can't access 2FA app screen, select Use a recovery code.
-
Enter a recovery code and select Log in.
- Enter your Master Password and select Next.
Step 2: Turn off 2FA with a recovery code on iPhone
- In the iPhone app, select Settings in the bottom menu.
- Select Security.
- On the Security screen, turn off 2-factor authentication.
-
In the pop-up, select Yes, turn off.
- On the screen where you can enter a token, select Use a recovery code.
- In the pop-up, select Use a recovery code.
-
Enter a recovery code and select Turn off 2FA.
You'll see a confirmation that 2FA is turned off. You can turn the setting on again in your web browser. Make sure to save your new recovery codes.
When you turn 2FA off and on again, you get new recovery codes, and your old recovery codes won't work. To avoid confusion, delete any old recovery codes.