Protect your TensorAlgo account with passkeys and 2FA
TensorAlgo lets you add stronger sign-in protection without giving up the existing email magic-link flow. Passkeys provide a fast passwordless first-factor sign-in on supported devices, while authenticator 2FA can add a separate six-digit challenge after your normal sign-in.
Open Settings → Security to manage both.
Add a passkey
- Open Settings → Security → Passkeys.
- Select Add passkey.
- Complete the browser or device passkey prompt.
- Confirm that the new passkey appears in your list.
A passkey can be backed by the device itself or by a platform password manager that supports passkeys. TensorAlgo does not receive or display the private key used by the credential.
Keep more than one passkey
You can register multiple passkeys. This is useful when you want separate access from a phone and computer, or when your password manager does not automatically synchronize the same passkey across every device you use.
The Security page shows the passkey name, when it was added, and the last-used time when that information is available.
Use Rename to give a passkey a recognizable name. Use Remove only when you no longer want that credential to sign in to your account.
Sign in with a passkey
On the TensorAlgo sign-in screen, choose Sign in with passkey and complete the browser/device prompt.
Email magic-link sign-in remains available as an alternative first-factor sign-in method. Adding a passkey does not remove email login.
Add authenticator two-factor authentication
Authenticator 2FA is separate from passkeys.
- Open Settings → Security → Two-factor authentication (2FA).
- Select Add authenticator app.
- Scan the QR code with a compatible authenticator app. If scanning is unavailable, use the displayed setup key.
- Enter the current six-digit code from the authenticator.
- Select Verify & enable.
- Confirm that the authenticator factor is shown as enabled.
Compatible TOTP authenticator apps include common password managers and authenticator applications that can scan a standard QR code or accept a setup key.
What changes after 2FA is enabled
When authenticator 2FA is enabled, your normal sign-in is the first factor. TensorAlgo then requires the current six-digit authenticator code before the session reaches the higher authentication level required by the account.
This applies even if you change first-factor methods. Using email magic-link instead of a passkey does not bypass enabled authenticator 2FA, and using a passkey does not remove the authenticator challenge.
Remove a security method carefully
The Security page can remove an individual passkey or an enrolled authenticator factor after a confirmation step.
Removing one passkey does not remove your other registered passkeys. Removing a passkey or authenticator also does not remove email magic-link sign-in.
Before removing a security method, make sure you understand which other sign-in methods you can still use.
Recovery and fallback
Email magic-link remains the standard account fallback for first-factor sign-in. It is not a bypass for an authenticator requirement that is already enabled.
If you can no longer complete the required second factor, use the public TensorAlgo support/contact path for account-access help. Never send a passkey credential, authenticator setup key, or one-time authenticator code in a support request.
See Troubleshoot passkeys and authenticator 2FA for common browser, passkey, code, and lost-device problems.
