--- title: "Multifactor authentication" description: "Keep your account secure by setting up multifactor authentication." url: "https://docs.adyen.com/franchisees/multifactor-authentication" source_url: "https://docs.adyen.com/franchisees/multifactor-authentication.md" canonical: "https://docs.adyen.com/franchisees/multifactor-authentication" last_modified: "2026-09-02T12:56:58+02:00" language: "en" --- # Multifactor authentication Keep your account secure by setting up multifactor authentication. If your franchisor set up email and password login for your Customer Area, you must set up multifactor authentication (MFA). MFA keeps your account secure by requiring a second form of verification when you log in. This prevents unauthorized access even if someone has your password. If your franchisor uses [Single Sign-On](/franchisees/single-sign-on) instead, you log in using your company credentials and do not need to set up MFA in the Customer Area. Each user can register up to two devices and set up one authentication method for each device. You can set up MFA with: * An authenticator app, such as Google Authenticator, Okta Verify, or Microsoft Authenticator. This generates one-time passwords on your mobile device. * SMS authentication, which sends a one-time password to your mobile device. ## Requirements Before you begin, take into account the following requirements, limitations, and preparations. | Requirement | Description | | --------------------------------------------------- | -------------------------------------------------------------------------------------------------------------------------- | | **Integration type** | You must be onboarded as a franchisee by your franchisor. For more information, see [Onboarding](/franchisees/onboarding). | | **[Customer Area roles](/franchisees/users#roles)** | To remove a device registered to another user, you must have the **Merchant user management** role. | | **Hardware** | A mobile device that can run an authenticator app or receive SMS messages. | | **Limitations** | SMS authentication is only available in the live [Customer Area](https://ca-live.adyen.com/) environment. | ## How it works The first time you log in, you register a device using an authenticator app or SMS. Each time you log in after that, you enter the verification code from your chosen method. If you get a new device, remove the registered device and register the new one. ## Set up MFA with an authenticator app To set up MFA with an authenticator app: 1. Log in to your [Customer Area](https://ca-live.adyen.com/). 2. Enter a name in the **Create device name** field. 3. Scan the QR code with your authenticator app to create a new account. To use a manual code instead, select **Switch to manual key** and enter the code Adyen provides. 4. Enter the 6-digit verification code from your authenticator app. 5. Select **Add** to register your device. Each time you log in, enter the code from your authenticator app. ## Set up MFA with SMS To set up MFA with SMS: 1. In your [Customer Area](https://ca-live.adyen.com/), select your user account menu. 2. Select **Profile**. 3. Under **Multifactor authentication**, select **Add authentication**. 4. Select **Switch to SMS authentication**. 5. Enter your phone number. 6. Enter the 6-digit verification code sent to your mobile phone. 7. Select **Add**. Each time you log in, enter the code sent to your device. ## Delete an authentication method To delete an authentication method: 1. In your [Customer Area](https://ca-live.adyen.com/), select your user account menu. 2. Select **Profile**. 3. Under **Multifactor authentication**, select the delete icon next to the authentication method. 4. Select **Delete** to confirm. ## Remove a device If you have a new device, remove the registered device and then set up MFA on the new one. To remove a device: 1. Log in to your [Customer Area](https://ca-live.adyen.com/). 2. Go to the user details page: * For your own account, go to **My user**. * For another user, go to **Settings** > **Users** and select the user. 3. Under **Multifactor authentication**, select the delete icon next to the device. 4. Select **Delete** to confirm. The next time you log in, you must register the new device. ## See also * [Single sign-on](/franchisees/single-sign-on) * [Manage users](/franchisees/users) * [Notifications](/franchisees/notifications)