Skip to main content
Logo

Account Security Overview

Strong security protects your business data, customer information, and staff access. Use the Security page to manage your password and two-factor authentication.

Where to find it

  • On the web: After you sign in, open Security in the account sidebar (/account/security). The page title is Security, with the description Manage your account security settings.
  • In the app: Open the main menu → AccountSecurity. The screen title is Security, with the description Manage your account security.
The Security page in Fuze Store showing Password, Active Sessions, and Two-Factor Authentication sections
Security

What you can manage here

Password

  • View when your password was last changed.
    • On the web: Last changed: {{date}} or Last changed: Never.
    • In the app: Last changed {{time}} or Never changed.
  • Open Change Password to set a new password. See How to Change Your Password.

Two-Factor Authentication (2FA)

Add an extra sign-in step using an authenticator app (for example Google Authenticator or Authy) — not email or SMS codes.

  • On the web: The Two-Factor Authentication card shows Authenticator App plus Not enabled or Enabled and active (with an Active badge). Use Enable, Disable, and Recovery Codes.
  • In the app: Open Two-Factor Authentication (/account/security/two-factor). You'll see either Two-factor authentication is not enabled. with Enable Two-Factor Authentication, or Two-factor authentication is active. with recovery and disable actions.

Enable (website)

  1. On Security, tap Enable next to Authenticator App.
  2. Enter your account password when asked (Confirm Your PasswordConfirm).
  3. In Set Up Authenticator App, scan the QR code (or tap Or enter this secret key manually: and type the key into your authenticator).
  4. Enter the 6-digit code from the app and tap Verify & Activate.
  5. Recovery Codes appear next — copy or download them now. The web warns: Save these now — for your security, they won't be shown again. Use Copy Codes, Download Codes (recovery-codes.txt), or Done.

Enable (app)

  1. Open Two-Factor Authentication and tap Enable Two-Factor Authentication.
  2. Confirm your password (Confirm Your PasswordConfirm).
  3. Scan the QR (or enter the secret manually), enter the 6-digit code, and tap Verify & Activate.
  4. Save the recovery codes with Copy Codes / Download Codes, then Done.

Recovery codes after enable

  • Web: From the enabled card, open Recovery Codes. You can Regenerate (password required again) if codes are lost.
  • App: Use View Recovery Codes or Regenerate Recovery Codes.

Store recovery codes offline. Each code is typically usable once.

Disable

  1. Choose Disable (web card or app screen).
  2. Confirm your password again.
  3. 2FA turns off; the next sign-in only needs email and password (until you re-enable).

Signing in when 2FA is on

After your password is accepted, Fuze Store opens a Two-Factor Authentication challenge:

Website (/two-factor-challenge)App
PromptEnter the 6-digit code from your authenticator app to continue.Same wording for the authenticator path
FieldVerification Code (6 digits; often auto-submits)Verification Code
RecoveryUse a recovery code instead → field Recovery CodeSame toggle; placeholder style like xxxxx-xxxxx on web
Back to TOTPUse authenticator code insteadSame
ErrorsInvalid verification code. Please try again.Same
LeaveCancel (returns toward login)Back

Use a recovery code only if you cannot open the authenticator. After a successful challenge you continue into the account as usual.

Active Sessions (web)

On the web, the Active Sessions card shows your Current Session on This device, with an Active badge. It does not list other devices or offer a revoke action yet.

If you cannot sign in at all, use Forgot Password from the login screen. Password reset does not remove 2FA — after resetting, you still need authenticator or recovery codes if 2FA is enabled.

Tips for staying safe

  • Never share your password or recovery codes.
  • Use a unique password for Fuze Store POS.
  • Enable 2FA with an authenticator app for an extra layer of protection.
  • Keep your email current so you can reset your password if needed.
  • Sign out from shared or public devices after each use.
  • Review staff roles and permissions separately under store settings when the Roles & Permissions add-on is active.

Lost phone and no recovery codes?

Contact support with proof of account ownership. Regenerating codes requires signing in (and confirming your password) while 2FA still works.

Start FreeSee Demo