Turn on two-factor sign-in in Orbit
Updated
2FA, MFA, two-step verification, recovery codes, authenticator app, lost phoneThis is for anyone with an Orbit login. Your Orbit account can read every candidate your company has seen, so two-factor sign-in is worth turning on. You need an authenticator app on your phone.
Open Security settings
Select Settings in the sidebar, then Security under You.
Turn on two-factor sign-in
In Two-factor sign-in, select Turn on.
Scan the code
Open your authenticator app and scan the code under Scan this. If you can’t scan it, type the key shown under Or type this key into the app. Nothing changes on your account until you confirm a code.
Enter the 6-digit code
Under Then enter the 6-digit code, type the code your app shows for Wipperoz.
Confirm and turn it on
Select Confirm and turn on. Orbit then shows Your recovery codes.
Save your recovery codes
Select Copy all or Download .txt and keep the codes somewhere you can reach without your phone. They’re shown once only.
Close the codes dialog
Select Done — close this.
It says the code was not accepted
Codes change every 30 seconds. Enter the current one. If codes keep failing, check that the date and time on your phone are set automatically.
I can't close the dialog
The dialog stays open until you copy or download the codes, or tick I’ve saved these somewhere I can get them back without my phone. If your browser blocks copying, download the file or copy the codes by hand.
If you lose your authenticator
- Sign in with your email and password as usual.
- On the code screen, select Lost your authenticator? Use a recovery code.
- Enter one code in Recovery code and select Continue.
Using a recovery code turns two-factor sign-in off so your password gets you in. Select Sign in again, then turn two-factor back on in Security straight away. That gives you a fresh set of codes. Each code works once.
Manage your codes and turn it off
- Recovery codes on the Security page shows how many codes are left. Select Generate a new set if you’re running low. A new set replaces the old one, and codes you saved before stop working.
- To turn two-factor off, select Turn off, then Yes, turn it off.
API keys aren’t affected by two-factor sign-in: a key acts as the account and has no second factor.
Signing out and other devices
To sign out, select the log-out icon (Logout) at the bottom of the sidebar, then Logout in the Log out of Orbit? box. Changing your password doesn’t sign out other devices: they keep their session until it expires. Orbit doesn’t show a list of signed-in devices.