Enable 2-Factor Authentication (2FA)

Created by Grovex Support, Modified on Mon, 10 Nov, 2025 at 10:20 PM by Grovex Support

Applies to: Web & Mobile App (Google Authenticator, Authy, compatible TOTP apps)

Protect your account with an extra security layer. 2FA requires a time-based one-time code (TOTP) from your phone in addition to your password.


Quick Setup (TOTP)

  1. Sign in to GroveX
    Go to Settings → Security → Two-Factor Authentication (2FA).

  2. Choose an Authenticator App
    Install Google Authenticator or Authy (iOS/Android).

  3. Scan the QR Code
    In your authenticator app, tap +Scan QR.
    Can’t scan? Use the manual key shown on the 2FA screen.

  4. Save Backup Codes (Strongly recommended)
    Download or copy your backup codes and store them offline. These let you in if you lose your phone.

  5. Verify & Enable
    Enter the 6-digit code from your app and click Enable.
    2FA is now active for sign-in and sensitive actions.


Tips for a Smooth Setup

  • Time sync matters: Ensure your phone’s date/time is set to Automatic.

  • One device = one secret: If using multiple phones, add the same QR now to each before you finish.

  • Secure the secret key: Treat the manual setup key like a password—store it offline.


Troubleshooting

My codes don’t work

  • Check that your phone time is auto-synced.

  • Ensure you’re using the current code (codes refresh every 30s).

  • Remove and re-add the GroveX entry in your app using the latest QR/manual key.

I changed phones

  • Use your backup codes to log in, then go to Settings → Security to reconfigure 2FA on the new device.

  • If you don’t have backup codes, see Lost 2FA below.

I see “Invalid/Expired code”

  • Refresh the page and try a new 6-digit code.

  • Confirm there’s no time-zone drift on your device.


Lost 2FA (Can’t access your Authenticator?)

  1. Submit a ticket: https://grovexcom-help.freshdesk.com/support/tickets/new

  2. Include:

    • Your registered email

    • UID (if known)

    • A selfie holding your government ID with today’s date (for verification)

For your protection, we may request additional information before disabling or resetting 2FA.


Security Reminders

  • GroveX will never ask for your password, seed phrase, private keys, or 2FA codes.

  • Verify the domain: grovex.io

  • Store backup codes offline (not in email/screenshots).

  • Consider a hardware-backed password manager for your GroveX password.


Need Help?

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article