How can we help?
How do I set up two-factor authentication?
Last updated on November 14, 2025Omise's current security measures require all merchant accounts, including Admin, Finance, and Technical roles to set up two-factor authentication or 2FA to perform the following actions:
- Add and manage recipients
- Add and manage transfers and transfer schedules
- Roll secret key
- Invite and manage team members
2FA adds an extra layer of security to your account, protecting it against unauthorized access and activities in case of password leaks.
Setup Steps
Download and install an authenticator app of your choice to your mobile device. We recommend using Google Authenticator, which is free of charge and can be linked to your Gmail account to safely store your authentication connections.
On the Omise dashboard, click the
Person
icon on the right side, then selectTwo-Factor Authentication
. You can also click on this link to access the settings page directly.Click the
Enable 2FA
button.Click the confirmation link sent to your email under the subject
[Omise] 2FA Setup Confirmation
.Scan the QR code using the authenticator app installed on your mobile device. If unable to scan, manually enter the email address and key.
After successfully scanning the QR code or entering the key, the authenticator app will display a 6-digit verification code.
Enter this code into the
Authentication code
field and clickVerify code
to verify and complete the setup process.Once 2FA is successfully enabled, the screen will refresh automatically, and a set of Recovery Codes will be issued.
Crucial: Ensure that you click the
Download
button to save your 10 recovery codes and store them in a safe place.Recovery codes are used in case of emergencies, such as being unable to access the 2FA codes from your authenticator app or losing your mobile device.
Each recovery code can be used only once. However, if you run out, you can click
Generate new codes
to generate a new set.
How to Sign in:
- Click the
I have activated 2FA
tickbox. - Enter the current 6-digit code from your authenticator app into the
Authentication code
field before signing in.
Important notes:
Once 2FA is set up for your account, never delete the connection from your authenticator app or uninstall the app. Doing so will prevent you from logging into your Omise dashboard.
Each 6-digit code lasts 30 seconds and regenerates repeatedly. Ensure you enter the code correctly and in time to successfully log in to your Omise dashboard.
If your account has multiple users, we recommend you invite each user as a team member instead of sharing credentials.
For instructions on how to invite and manage team members, please refer to the How to manage user access to the dashboard?” article.
Related articles:
Can’t find your answer?
Get in touch with us and we’ll get back to you as soon as possible