Appearance
Account security
The Security group in Settings covers multi-factor authentication and your active sessions.
Multi-factor authentication (MFA)
Multi-factor authentication adds a second step to login, on top of your email and password. You can register up to two methods (the limit discourages account sharing). The first method you add becomes your default.
Authenticator app (TOTP)
Geolitix displays a QR code. Scan it with an authenticator app on your phone, then enter the 6-digit code it generates. The code is verified as you type, showing a green check when it is correct and a red cross when it is not. Give the device a name and confirm to finish.
Passkey
Click to add a passkey and your browser prompts you to create one — using a fingerprint, PIN or hardware security key — then confirm. The passkey is used as a second factor when you log in.
Managing methods
Each registered method can be set as the default, renamed or deleted. You cannot delete the default method while another method still exists.
At login
After entering your email and password, if you have MFA set up you are prompted to verify with your default method, or to choose another registered method. A passkey prompts your browser automatically; a TOTP code is submitted automatically once all six digits are entered.
If you are locked out
A need help? link (shown after the email and password step) files a support request. An MFA reset is handled manually by support — it is not self-service.
If your organization requires MFA, an administrator can enable this for all members from the organization Details page, in which case you must set up a method before you can continue.
Sessions
The Sessions page lists your active sessions, showing when each was created and last seen, with the current session flagged. You can expire (revoke) any session other than the one you are currently using. Sessions last 30 days.