Two-Factor Authentication (2FA) adds an extra layer of security to your account by requiring a time-based code, in addition to your password, for sensitive actions such as signing in or confirming withdrawals (depending on your security settings).
Set up 2FA
- Sign in to NexPlace and open Account / Security Settings.
- Select Two-Factor Authentication (2FA).
- Scan the QR code using an authenticator app (for example, Google Authenticator, Microsoft Authenticator, Authy, or 1Password).
- Enter the 6-digit code provided in your authenticator app to confirm setup.
- If the platform provides backup codes, download or copy them and store them securely.
What Are Backup Codes?
Backup codes are one-time recovery codes that allow you to access your account if you lose access to your authenticator app (for example, if you lose your phone).
Each backup code can typically be used once. After use, it becomes invalid.
Because they can be used to access your account, backup codes should be stored offline in a secure location and never shared with anyone.
If you lose access to your authenticator
If you lose your phone or access to your authenticator app:
- Use a backup code if you have one available.
- If you do not have backup codes, contact Customer Support.
For security reasons, additional identity verification may be required before 2FA can be reset.
Best practices
- Never share 2FA codes or backup codes with anyone (Customer Support will never ask for them).
- Store backup codes offline in a secure location (not in email or cloud notes).
- Avoid SMS-based 2FA where possible; authenticator apps are generally more secure.
Current 2FA Structure on NexPlace
NexPlace currently uses separate Two-Factor Authentication (2FA) mechanisms depending on the type of action performed.
As a result, authentication requirements may differ between account login and certain sensitive actions, such as withdrawals or API key creation.
The structure below reflects the platform’s current configuration. If changes are introduced in the future, this article will be updated accordingly.
Email & Password Users
For users who register with an email address and password, the following configuration applies:
- Login: Requires Login 2FA (Code A)
- Withdrawals: Requires Withdrawal 2FA (Code B)
- API Key Creation: Email notification is sent upon API key creation
SSO Users (Google / Apple / Android)
For users who sign in using Single Sign-On (SSO) providers, the following configuration applies:
- Login: No NexPlace platform 2FA is required (Authentication relies on the SSO provider’s authentication controls)
- Withdrawals: Requires Withdrawal 2FA (Code B)
- API Key Creation: Email notification is sent upon API key creation
Important
If you are an email/password user, ensure that both 2FA mechanisms are properly configured to avoid access or withdrawal interruptions.
Help Center