Skip to main content
Updated Aug 4, 2026

Security

What you'll learn
  • How to change your account password
  • How to enable two-factor authentication (2FA)
  • How to disable 2FA or switch authenticator apps
  • Security best practices for protecting your account

Your AutoTalk account has access to your team's conversations, contacts, and Workflows. This page explains how to keep that account secure.

Changing your password

  1. Open your User Profile and switch to the Authentication tab (/user/profile?tab=authentication).
  2. Enter your current password.
  3. Enter your new password (at least 10 characters) and confirm it by typing it again.
  4. Click Save to apply the change.

Your new password takes effect immediately.

tip

If you forget your password, use the password reset option on the login screen. A reset link will be sent to your registered email address, allowing you to create a new password without needing to know the old one.

Two-factor authentication

Two-factor authentication (2FA) adds an extra layer of security to your account. After enabling it, you will need to provide both your password and a time-based code from an authenticator app every time you log in.

AutoTalk uses TOTP (time-based one-time passwords), compatible with authenticator apps like:

  • Google Authenticator
  • Microsoft Authenticator
  • Authy
  • 1Password
  • Any other TOTP-compatible app

Enabling two-factor authentication

Enabling 2FA is a short, three-step wizard:

  1. Open your User Profile and switch to the Authentication tab (/user/profile?tab=authentication).
  2. Click Enable Two-Factor Authentication.
  3. Step 1 -- Confirm your password. Enter your current password to confirm your identity.
  4. Step 2 -- Scan. A QR code is displayed. Scan it with your authenticator app. If you cannot scan the code, copy the secret key shown on screen and enter it manually into your app.
  5. Step 3 -- Verify. Your authenticator app generates a 6-digit code. Enter it in the verification code field and click Verify.
  6. AutoTalk then shows your recovery codes -- save them before closing (see Recovery codes below).

Once enabled, AutoTalk will ask for a 6-digit code every time you log in.

note

For security, enabling 2FA signs you out of all other devices (the device you enabled it on stays logged in). You will need to log in again on those devices with your password and a code.

tip

Save the secret key or a screenshot of the QR code somewhere safe. If you lose your phone or switch authenticator apps, you can re-enroll the same secret on a new device without having to disable and re-enable 2FA.

Recovery codes

When you enable 2FA, AutoTalk gives you a set of 10 recovery codes. Each code works once and lets you sign in if you ever lose access to your authenticator app.

  • They are shown only once, when you enable 2FA (or when you regenerate them). Copy them and store them somewhere safe -- a password manager is ideal.
  • If you run out of codes or think they may have been exposed, regenerate them (see below).

Regenerating recovery codes

  1. Open the Authentication tab.
  2. Click Regenerate recovery codes.
  3. Confirm with your password.

A fresh set of 10 codes is generated. The previous codes stop working immediately, so save the new set right away.

Disabling two-factor authentication

  1. Open your User Profile and go to the Authentication tab.
  2. Click Disable Two-Factor Authentication.
  3. Enter your password and a current 6-digit code from your authenticator app to confirm.

After disabling, logins only require your email and password.

Switching phones or authenticator apps

If you need to move your 2FA code to a new phone or app:

  1. Disable 2FA using the steps above.
  2. Re-enable 2FA and scan the new QR code with your new authenticator app.

Logging out

To log out of your AutoTalk account:

  1. Open the account menu (your avatar at the bottom of the sidebar).
  2. Click Leave.

You will be returned to the login screen. Always log out when you are finished using AutoTalk on a shared or public computer.

Security best practices

  • Use a unique password -- Do not reuse your AutoTalk password on other websites or services. If one service is compromised, your other accounts remain safe.
  • Enable two-factor authentication -- Even a leaked password will not be enough for an attacker to get into your account.
  • Do not share your credentials -- Every team member should have their own AutoTalk account with their own login. Sharing passwords creates security risks and makes it impossible to track individual actions.
  • Log out on shared devices -- If you access AutoTalk from a computer that other people use, always click Leave in the account menu when you are done.
  • Watch for suspicious activity -- Review your Login Activity periodically for sign-ins you don't recognize, and check the Active sessions list on the same tab for devices you don't recognize -- Revoke them, or click Log out of all other sessions. If you notice unfamiliar changes to your account settings, conversations, or Workflows, change your password immediately and notify your account administrator.