# Get a two-factor code

> Copy a sign-in code or manage an office authenticator.

Language: en-US. Product guide: https://agencymesh.com/help/security-and-two-factor/.

Last reviewed October 6, 2026 by AgencyMesh Product Support · Checked against release 2026.09

Open [Two-Factor](https://app.agencymesh.app/two-factor). Signed-in users can use codes for permitted offices; Operations or Administrator can manage authenticators.

<span id="use-two-factor"></span>

<span id="two-factor-code-sources"></span>

## Copy a code

1. Choose **Office**. Find the matching service and account under **Received Codes** or **Authenticator Codes**.
2. Click **Copy**, then paste into the service’s verification field. If an authenticator code is nearly expired, wait for the next one.
3. For a new message, use **Refresh received codes**. **View Email Body** shows the email text.

**Received Codes** shows the latest five available SMS/email messages. SMS uses the office’s **2FA Number**. Email uses the company’s **2FA Email**; changing offices does not change that inbox. Authenticators belong to the selected office.

<span id="two-factor-dashboard-entry"></span>

## Use Dashboard

In [Dashboard](https://app.agencymesh.app/), choose **Phone / Office**, then **Communications > Two Factor Codes > Copy**. Use **Refresh two-factor codes** for new messages or **Open Two-Factor** for the full page.

<span id="two-factor-manage-authenticators"></span>

## Add or remove an authenticator

1. As Operations or Administrator, choose **Office > Add Authenticator**.
2. Add a **QR Screenshot** (PNG, JPEG, WebP, BMP, or GIF), or enter **Secret**, **Account Name**, and **Issuer**. If both are supplied, **Secret** takes priority. Click **Add**.
3. Test the new code. To delete an old entry, click its **Remove**, then confirm **Remove**.

**Details** exposes setup information; normal sign-in needs only **Copy**. Keep setup keys, QR images, passwords, and codes private.

<span id="safe-session"></span>

<span id="safe-support"></span>

<span id="suspected-compromise"></span>

## Fix access or end a session

For **Not configured**, ask Operations or Administrator to fix setup. For a rejected code, match the service/account and use the newest code. Give support the office, service, time, and error without secret values.

Use **User menu > Sign out** on shared computers. Agent accounts allow one session; Office accounts can have several. To end an unexpected session, ask Operations or Administrator to use [Sessions](https://app.agencymesh.app/administration?tab=sessions) > **Log Out**, then confirm **Log this user out?** It ends on its next request.

## Related guides

- [Sign in and sign out](https://agencymesh.com/help/accounts-and-sign-in.md)
- [Get the right access](https://agencymesh.com/help/roles-and-permissions.md)
- [Fix a problem](https://agencymesh.com/help/troubleshooting.md)
