# Get and manage two-factor codes

> Copy a received code or authenticator code and manage office authenticators.

Language: en-US. Product guide: https://agencymesh.app/help/security-and-two-factor/.

Last reviewed September 11, 2026 by AgencyMesh Product Support · Checked against release 2026.09

Open [Two-Factor](https://app.agencymesh.app/two-factor). Signed-in users can use codes for their permitted offices; Operations and Administrator can add or remove authenticators.

<span id="use-two-factor"></span>

## Get a code

1. Select **Office** and find the sign-in’s matching service/account in **Received Codes** or **Authenticator Codes**.
2. Select **Copy** on the current code and paste it into the service’s verification field. For an expiring authenticator code, wait for the next code.

<span id="two-factor-dashboard-entry"></span>

## Get a code from Dashboard

Choose an office in **Phone / Office**, then **Communications > Two Factor Codes > Copy**. Use **Refresh two-factor codes** for a new message or **Open Two-Factor** for the full center.

<span id="two-factor-code-sources"></span>

## Which office does a code belong to?

For **Not configured** destinations, ask Operations or Administrator to fix the setup. For a rejected code, match the service/account and use the newest code. **Details** shows authenticator setup information; ordinary sign-in needs only **Copy**.

| Item | Guidance |
| --- | --- |
| SMS | Uses the selected office’s 2FA Number. |
| Authenticator Codes | Uses authenticators saved for the selected office. |
| Email | Uses the company’s displayed 2FA Email. Messages are shared across the company; changing Office does not select another inbox. View Email Body expands the text. |
| Received Codes | Combines the latest five available SMS/email code messages by recency. Use Refresh received codes for new messages. |

<span id="two-factor-manage-authenticators"></span>

## Add or remove an authenticator

Test a replacement before removing the old entry. Setup keys and QR images can reproduce future codes.

1. As Operations or Administrator, select **Office > Add Authenticator**.
2. Choose a **QR Screenshot** (PNG, JPEG, WebP, BMP, or GIF), or enter **Secret**, **Account Name**, and **Issuer**. If both are supplied, Secret takes precedence.
3. Select **Add** and test the new code with the service.
4. To delete an old entry, select its **Remove** button, then confirm **Remove** in **Remove Authenticator**.

<span id="safe-session"></span>

## End access on a shared computer

Use the navigation bar’s person icon > **Sign out**. An Agent account permits one active session; an Office account can keep several, so closing one session does not end the others.

<span id="safe-support"></span>

## Report a code problem

Give support the service, selected office, time, and exact error. Omit codes, setup keys, QR images, and passwords.

<span id="suspected-compromise"></span>

## End an unexpected session

Ask Operations or Administrator to find it in [Administration > Sessions](https://app.agencymesh.app/administration?tab=sessions), select **Log Out**, and confirm **Log this user out?** The session ends on its next request. They can disable the affected account while resolving the issue.

## Related guides

- [Sign in to AgencyMesh](https://agencymesh.app/help/accounts-and-sign-in.md)
- [Roles and permissions reference](https://agencymesh.app/help/roles-and-permissions.md)
- [Troubleshooting AgencyMesh](https://agencymesh.app/help/troubleshooting.md)
