Facebook Twitter
Toggle navigation
  • About
  • Security
  • Blog
  • Careers
  • Support
  • Enterprise
    • ProtonMail Business
    • GDPR Compliance
    • Guide to IT Security
  • LOG IN
  • SIGN UP

 

Ask your Question

Home /Knowledge Base /Getting started with ProtonMail/Why ProtonMail?/Security/Two-factor authentication (2FA)
Home /Knowledge Base /Getting started with ProtonMail/Login & Mailbox Passwords/Two-factor authentication (2FA)

Two-factor authentication (2FA)

Most Viewed Article

Two-factor authentication (2FA) is an additional layer of security for your ProtonMail account. With 2FA enabled, you will be prompted to enter a 6-digit code when you log in to your account. This 6-digit code will be generated by an app installed on your mobile phone.

This means that even if your password is somehow stolen, an attacker still cannot get into your account without also having access to your mobile phone. Because of this security benefit, we recommend enabling 2FA on your account.

To use 2FA, you must first install an authenticator app on your mobile phone and have access to your phone while logging in to your account. There are many authenticator apps to choose from. Below are a few options, but this is by no means a definitive list:

Android

  • Authy
  • Google Authenticator
  • FreeOTP
  • andOTP (also available from F-Droid)

iOS  and iPadOS

  • Authy
  • Google Authenticator
  • FreeOTP

Setting up two-factor authentication in ProtonMail

1. Log in to mail.protonmail.com and go to Settings → Go to settings → Account and password → Passwords and turn on the Two-factor authentication switch. This will bring up an information panel. Click Next when you’re ready to start. 

Two-factor authentication switch

2. You will now see a QR code. Open the authenticator app on your mobile device, select the option to scan a QR code, and point your device’s camera at it. Note: do not scan the demo image shown below. Scan the image shown in your account settings.

Image of  setup 2FA 1

If you prefer, you can enter the 2FA key into your authenticator app manually by clicking on the link Enter key manually instead shown above.

Image of  setup 2FA manual

Once your ProtonMail account has been successfully added to your authenticator app, click Next.

3. Enter your ProtonMail account password and the 6-figure time-sensitive code provided by your authenticator app. Click Submit when you’re done.

Image of  set up ProtonMail account

4. ProtonMail will now provide you with several 1-time use recovery codes. Please save these codes in a secure place and do not lose them. 

If you ever misplace or lose your authentication device (mobile phone, etc.), these codes provide the only way to log in to your account. If you ever lose your second-factor device, you can enter these codes instead of the 6-digit code provided by your authenticator code app. Each code can only be used once, so save all the codes.

Image of  recovery codes

Please note that resetting your ProtonMail password will automatically disable 2FA. In this case, you will need to manually enable it again: Click Settings → Go to settings → Account and password → Passwords and switch on Two-factor authentication. 

How to authenticate from multiple devices

If you wish to receive your 6-digit authentication codes on multiple devices — for example, your phone and your tablet — you must have an authentication app installed on each device. Then:

1. If you have already enabled two-factor authentication, you will need to disable it.

2.  Go to Settings → Account → Password & recovery → Passwords → Two-factor authentication and scan the QR code using the authenticator app on each device. You can also take a screenshot of the QR code and save it for later to scan with your other devices.

Or you can also enter the 2FA key into your authenticator app manually if you prefer. 

If you encounter any problems, please see our support article on Two-factor authentication (2FA) is not working.

Two password mode (legacy users)

ProtonMail now uses One Password Mode by default, but some early adopters may still be using our legacy Two Password Mode authentication system. We can combine Two Password Mode with 2FA, but some users may find entering a Login password, 2FA code, and Mailbox password too cumbersome. 

In this case, we recommend switching to One Password Mode with 2FA enabled.

Tagged: authenticationloginsecuritysetting up two-factortwo-factor

Related Articles

  • How to change your Proton password 0
  • How to recover your emails and other encrypted files after a password reset (data recovery) 0
  • Set account recovery methods in case you forget your Proton password 0
  • Security requirements and recommendations for OpenPGP keys 0
  • Who owns ProtonMail 0
  • ProtonMail security checklist for new account owners 0
Post Comment

349 comments

  1. Anonymous
    March 3, 2015
    at 8:12 AM

    Vote links are missing here.

    You must log in to vote
    0
    0

  2. Mark
    February 23, 2018
    at 9:32 AM

    Mobile VPN not working with WiFi strong signal?

    You must log in to vote
    0
    0

  3. ProtonMail Support
    March 18, 2018
    at 6:22 PM

    Please contact ProtonVPN support at https://protonvpn.com/support-form.

    You must log in to vote
    0
    0

  4. Duane Christensen
    March 9, 2015
    at 4:03 PM

    Would vote for the option of two-factor authentication, assuming a correct interpretation of what differing factors of authentication are. There are currently three main “factors” to consider; what you know (username and password), what you are (biometrics) and what you have (cell phone, dongle, etc.). Personally I prefer a combo of what I know and what I have. A simple multi-digit code sent to my cell at the moment of login attempt as an addition to my username and password is the easiest to implement and virtually makes it impossible to hack.

    You must log in to vote
    0
    0

  5. Anonymous
    March 10, 2015
    at 12:55 AM

    YubiKey, OTP (one-time passwords) or similar support would be great besides the general useranme-password. How about username-password to login and YubiKey to Decrypt the messages.

    You must log in to vote
    0
    0

  6. Themis
    April 7, 2018
    at 9:58 AM

    A vote for Yubikey.
    It would be great it ProtonMail could implement hardware token support.

    OTP: https://developers.yubico.com/OTP/
    U2F: https://developers.yubico.com/U2F/

    You must log in to vote
    0
    0

  7. Serge
    May 23, 2018
    at 2:25 PM

    +1 vote for FIDO 2FA Authentication (Yubikey is one FIDO 2FA USB implementation)
    -> https://fidoalliance.org

    You must log in to vote
    0
    0

  8. Anonymous
    March 11, 2015
    at 1:16 AM

    Second vote for YubiKey. Too often I’m in a country where I don’t have access to my home country cell phone.

    You must log in to vote
    0
    0

  9. Anonymouskiz
    March 14, 2015
    at 11:02 AM

    I vote for Google Authenticator.

    You must log in to vote
    0
    0

  10. Anon
    March 16, 2015
    at 8:06 PM

    Authy (Authy is better than Google Authenticator)
    and/or YubiKey

    You must log in to vote
    0
    0

  11. F
    March 18, 2015
    at 2:31 PM

    I have already ascribed votes to this feature in the suggestion/ideas section.

    Please also allow for back-up phones.

    You must log in to vote
    0
    0

  12. Unknown
    April 5, 2015
    at 6:57 PM

    Yubikey in OTP mode (I use already static mode for protonmail).

    You must log in to vote
    0
    0

  13. Anonymous
    April 15, 2015
    at 10:15 PM

    Toopher!!!

    You must log in to vote
    0
    0

  14. Y. Gagnon
    April 23, 2015
    at 9:49 AM

    I vote for yubikey and/or fido u2f standard

    You must log in to vote
    0
    0

  15. Anonymous
    August 10, 2015
    at 9:05 PM

    Prefer the classic “Secret question and answer”. It respects privacy.

    You must log in to vote
    0
    0

  16. mynou
    November 26, 2017
    at 8:02 PM

    me too. I am not that savvy with computers, and this would work for me.

    You must log in to vote
    0
    0

  17. Elizabeth
    February 4, 2018
    at 2:31 AM

    That would be better than downloading an app. :)

    You must log in to vote
    0
    0

  18. psmurf
    August 14, 2015
    at 4:04 PM

    Would like to see two factor authentication but without a cell phone. A cell phone ties a real identity to the account. Security questions can be guessed if enough time is spent following an individual.

    I suppose, though, two factor wouldn’t be required if no one knew the email existed.

    You must log in to vote
    0
    0

  19. YvetteM
    December 6, 2017
    at 9:05 AM

    I would prefer to have two factor without a cell phone as well. Not everyone can afford a cell phone, home phone and internet as well. I really like to have the secret questions and answers and preferably the choice to create your OWN questions and answers, not the standard ones.

    You must log in to vote
    0
    0

  20. Just another dude
    August 16, 2015
    at 11:14 AM

    You guys are aware that there isn’t an option to “log in to vote” anywhere in your support system?
    And no option to click anything to agree that this particular one is a good idea.

    You must log in to vote
    0
    0

  21. user
    September 3, 2015
    at 10:53 AM

    Yubikey in OTP mode!

    You must log in to vote
    0
    0

  22. subj
    September 9, 2015
    at 4:34 PM

    YubiKey/OTP please!

    You must log in to vote
    0
    0

  23. Chep
    September 10, 2015
    at 7:50 PM

    I think two factor authentication is mandatory in our modern world of IT vulnerabilities and malware/botnet infestations.

    YubiKey would be awesome.

    ProtonMail would easily be the most secure email service on the planet with 2 factor authentication.

    But now, end users are a keylogged-connection away from having their emails compromised, which is unfortunate. (These days, I honestly believe that two-factor authentication for one’s primary email account is absolutely mandatory, you’d have to be crazy not to have it).

    Just one guy’s $.02.

    You must log in to vote
    0
    0

  24. hvdhelm
    September 24, 2015
    at 2:35 PM

    Make it universal!
    My Vote, U2F

    You must log in to vote
    0
    0

  25. Matt Rude
    October 2, 2015
    at 3:25 PM

    Looking for FIDO U2F authentication standard to be implemented for the protonmail service.

    You must log in to vote
    0
    0

  26. Anonymous
    October 8, 2015
    at 9:12 PM

    2-factor auth should come after username/password login, but BEFORE decrypting. I don’t want attackers getting my private key, even in encrypted form.

    You must log in to vote
    0
    0

  27. Shawn
    October 9, 2015
    at 1:25 AM

    I agree — two factor authentication is mandatory. Please offer it soon.

    You must log in to vote
    0
    0

  28. chris
    October 16, 2015
    at 7:48 AM

    Absolutely – FIDO U2F please. Yubikeys sound like the way to go too. Esp their NEOs

    You must log in to vote
    0
    0

  29. ksa
    October 23, 2015
    at 5:52 AM

    up vote

    without this feature protonmail would be insecure

    You must log in to vote
    0
    0

  30. Gao
    October 28, 2015
    at 11:33 AM

    Yubikey, already supported by default in Google Chrome, simple to use, robust (I am carrying one in my pocket since a year), cheap, U2F is an open standard.

    You must log in to vote
    0
    0

  31. Anonymous
    November 12, 2015
    at 6:12 PM

    Please add support for Yubikey!

    You must log in to vote
    0
    0

  32. maxfunky
    November 13, 2015
    at 1:57 PM

    Support for YubiKey would be great !

    You must log in to vote
    0
    0

  33. Jacques
    December 2, 2015
    at 9:46 AM

    I’ll add a vote for Authy or Google Authenticator.

    You must log in to vote
    0
    0

  34. myzt
    December 5, 2015
    at 12:08 AM

    Authy + yubikey +1

    You must log in to vote
    0
    0

  35. Miguel
    December 6, 2015
    at 11:10 AM

    Looking for FIDO U2F authentication standard

    You must log in to vote
    0
    0

  36. Anonymous
    December 15, 2015
    at 8:08 PM

    FIDO U2F

    You must log in to vote
    0
    0

  37. David
    December 17, 2015
    at 2:09 PM

    Two factor authentication needs to be enabled regardless of the number of upvotes. But I would like to request support for Google Authenticator

    You must log in to vote
    0
    0

  38. Devin S
    December 18, 2015
    at 7:53 PM

    The sooner the better guys, that DDoS attack shows you are a major target. I would feel even more comfortable when you have Two Factor. I’m starting to switch all my accounts that have Two Factor over after getting my bank account hacked (they literally signed in from Nigeria) twice, which I believe was because of LastPass’s security failure.

    You must log in to vote
    0
    0

  39. Anonymous
    December 19, 2015
    at 9:28 AM

    yubikey OTP for sure

    You must log in to vote
    0
    0

  40. Anonymous
    December 30, 2015
    at 5:44 PM

    OTP Please :-)

    You must log in to vote
    0
    0

  41. Anonymous
    January 2, 2016
    at 12:56 PM

    Google authenticator please!

    You must log in to vote
    0
    0

  42. Anonymous
    January 25, 2016
    at 10:47 AM

    Yeah, two factor authentication is a great security feature to have. Please add it soon

    You must log in to vote
    0
    0

  43. nickik
    January 26, 2016
    at 3:20 PM

    People who suggest Google Authenticator are simply misinformed. You add no security if you log into your app with Google Authenticator as your 2 Factor because they are on the same phone. If you want to use TOTP then using the Yubikey Authenticator is an option. However this can not be enforced and is a horrible idea.

    Hardware based Token over NFC are by far the best option for 2 Factor on Smartphone apps. Lastpass (Password Manager) support this and it works fantastically. They use HOTP and the Yubicloud, a more modern approche would be to use U2F over NFC.

    tl;dr: The most secure would definitely be U2F over NFC.

    You must log in to vote
    0
    0

  44. alex
    January 28, 2016
    at 4:01 PM

    Please add two way authentication

    You must log in to vote
    0
    0

  45. firefoxos
    February 2, 2016
    at 11:47 PM

    I love this service already even though I haven’t used it yet, but not having two factor authentication would definitely be a big drawback for me.

    You must log in to vote
    0
    0

  46. Tim
    February 8, 2016
    at 12:40 PM

    Google Authenticator or Authy please

    You must log in to vote
    0
    0

  47. Marek
    February 14, 2016
    at 5:52 AM

    Yubikey is the way to go here.

    The current setup (one password logs in, the other decrypts) does nothing to protect one token from the vulnerabilities of the other. For example, a keylogger could capture both passwords if they are typed.

    Yubikey solves this problem.

    However, it’s not true that Yubikey is “virtually unhackable” as someone claimed above. Have a look at the recently disclosed “LostPass” vulnerability. This is essentially a phishing attack in which a login screen that looks pixel-for-pixel identical to the real thing, asks the user for authentication. Password and Yubikey tokens are captured. The attacker then uses these to authenticate himself and gain entry to LastPass.

    Nevertheless, Yubikey is far more secure than almost all other 2FA alternatives. For example, NFC Yubikey-enabled logins bypass the problem of logging in through a phone app when its the same phone that would receive Google Authenticator or Authy codes.

    Finally, someone above said that Yubikey could not be enforced.

    That’s true. But you can’t enforce people using sensible, long and complicated passwords. Or checking their computer for vulnerabilities, rootkits, viruses and a whole lot else besides.

    You can’t force everyone to use 2FA, or Yubikey specifically. But that doesn’t mean it shouldn’t be an option. It should.

    You must log in to vote
    0
    0

  48. Jason
    February 17, 2016
    at 10:34 AM

    Still can’t Vote for this but YubiKey.
    I can’t and won’t use ProtonMail as my default email provider unless it offers two-factor authentication.

    You must log in to vote
    0
    0

  49. jolucadol
    February 21, 2016
    at 10:29 AM

    ” Would vote for the option of two-factor authentication, assuming a correct interpretation of what differing factors of authentication are. There are currently three main “factors” to consider; what you know (username and password), what you are (biometrics) and what you have (cell phone, dongle, etc.). Personally I prefer a combo of what I know and what I have. A simple multi-digit code sent to my cell at the moment of login attempt as an addition to my username and password is the easiest to implement and virtually makes it impossible to hack. ”

    Totally agree with these words. Thank you Duane Christensen.

    It would be a great idea to implement Authy. We are working with them for years and have had 0 problems. Authy.com is a very good solution.

    Regards

    You must log in to vote
    0
    0

  50. Simon
    February 24, 2016
    at 2:34 PM

    It would be nice to use google authenticator too. There’s no need to use mobile numbers and I don’t care if google knows my email (it anyway does).

    You must log in to vote
    0
    0

  51. Tajvia Willis
    March 19, 2016
    at 3:26 PM

    I see that there are requests for many different forms of second factor authentication. I would appreciate the option to choose many, similar to Lastpass.

    You must log in to vote
    0
    0

  52. Anonymous
    March 21, 2016
    at 12:02 PM

    Please add it, this is a must! A keylogger on your computer and you are done..

    You must log in to vote
    0
    0

  53. Anonymous
    March 24, 2016
    at 2:53 PM

    Google authenticator.

    You must log in to vote
    0
    0

  54. Maxime
    March 24, 2016
    at 5:11 PM

    Please enable two factor authentication with Ubikey.

    Thanks

    You must log in to vote
    0
    0

  55. Monsam
    March 25, 2016
    at 10:57 AM

    Two-factor implementation is imperative. Basing authentication in passwords is shown to be so weak as to use only the identification.

    Passwords are dead.

    No use having the entire system encrypted mail if you can access with a simple password.

    People use weak password. And the computers is far superior to these. Also social engineering.

    A double factor based on something that you have, as a mobile phone, for most people is really simple. There are many applications that generate a seed. SMS sending is not necessary.

    It is also interesting to evaluate the direct use of the second factor as the only factor, because if this is used for recovery of the password, the password is not need, except for the convenience of access only with password to an already verified and saved device.

    In any case, today a service like this should implement double factor if want to be safe. Meanwhile, this is serious failure for choose this service of mail as the main day to day or for use in actual need for privacy.

    You must log in to vote
    0
    0

  56. Evan
    March 29, 2016
    at 5:52 AM

    2FA all the way!

    You must log in to vote
    0
    0

  57. Raymond
    March 30, 2016
    at 8:30 PM

    A must have for this type of email account

    You must log in to vote
    0
    0

  58. Dave
    April 7, 2016
    at 6:51 PM

    Two Factor Authentication is a MUST this days, this times … nowadays every serious company that desire to keeps data and wants to keep their users safely have it, and it’s not a must because every companies have it, but because PROTONMAIL without Two Factor Authentication it’s a incomplete solution! It has it all right, except this.
    I hope we will see soon this implemented .
    Thank you

    You must log in to vote
    0
    0

  59. Anonymous
    April 8, 2016
    at 9:11 AM

    Yubikey and Google authenticator would be great additions for 2FA.

    You must log in to vote
    0
    0

  60. Even
    April 8, 2016
    at 11:55 AM

    This is critical feature for my team

    You must log in to vote
    0
    0

  61. Thijs
    April 8, 2016
    at 8:49 PM

    DUO woult be nice

    You must log in to vote
    0
    0

  62. Thijs
    April 8, 2016
    at 8:50 PM

    DUO would be nice!

    You must log in to vote
    0
    0

  63. Jay S
    April 9, 2016
    at 3:05 PM

    I vote for Google Authenticator.

    You must log in to vote
    0
    0

  64. Aldo
    April 10, 2016
    at 6:59 AM

    google authenticator please!

    You must log in to vote
    0
    0

  65. Adam
    April 12, 2016
    at 5:45 AM

    I’d be happy with anything but yubikey support would definitely be my preference.

    You must log in to vote
    0
    0

  66. Hellrabbit
    April 13, 2016
    at 6:39 PM

    Yubikey for the best !

    You must log in to vote
    0
    0

  67. FS
    April 13, 2016
    at 8:09 PM

    I do love the service Protonmail offer but as long you guys can’t offer two factor authenticator, i will not use it as a primary e-mailservice. Sadly!

    You must log in to vote
    0
    0

  68. Juliano
    April 14, 2016
    at 1:13 AM

    Google Authenticator é boa ideia

    You must log in to vote
    0
    0

  69. Anonymous
    April 14, 2016
    at 3:33 PM

    up vote

    I use the FreeOTP Android app, which, I think, also works if Google Authenticator is supported.

    You must log in to vote
    0
    0

  70. AP
    April 17, 2016
    at 8:50 PM

    Only reason I haven’t fully switched to ProtonMail yet is lack of 2FA .. everything else looks good. Would be a terrific addition

    You must log in to vote
    0
    0

  71. AP
    April 17, 2016
    at 8:51 PM

    +1 – no upvote buttons here

    You must log in to vote
    0
    0

  72. Will
    April 17, 2016
    at 11:21 PM

    Authy is a super 2FA solution that works just as well as google’s but isn’t owned by Google. Bottom line, 2FA is not a negotiable if proton mail wants to be a serious player in the secure privacy world.

    You must log in to vote
    0
    0

  73. Ursula
    April 20, 2016
    at 2:05 PM

    I vote for Authy or LastPass Authenticator.

    You must log in to vote
    0
    0

  74. Daniel
    April 26, 2016
    at 11:20 AM

    Please add support for Yubikey.

    You must log in to vote
    0
    0

  75. Anonymous
    April 30, 2016
    at 2:11 AM

    +1 for yubikey u2f or at least otp / time based otp

    You must log in to vote
    0
    0

  76. PJ
    May 1, 2016
    at 3:46 PM

    Please add it asap. No protection against keyloggers ….

    You must log in to vote
    0
    0

  77. Anonymous
    May 2, 2016
    at 1:42 PM

    Would also like to see this!

    You must log in to vote
    0
    0

  78. Anonymous
    May 4, 2016
    at 12:07 AM

    OTP Authenticator

    Swiss SafeLab OTP Authenticator is a free strong one-time password app.

    You must log in to vote
    0
    0

  79. Sven
    May 4, 2016
    at 6:57 AM

    Google Authenticator would be great!

    You must log in to vote
    0
    0

  80. John Doe
    May 4, 2016
    at 6:33 PM

    2FA using Authy with backup via phone / SMS for those of us that can’t have our phone or a Ubikey everywhere we are. Authy over Google Auth because Google Auth is a pain when you switch phones, etc. whereas Authy carries over regardless.

    You must log in to vote
    0
    0

  81. William
    May 5, 2016
    at 2:46 AM

    U2F Universal Two Facto Authentication would be great!

    You must log in to vote
    0
    0

  82. Private
    May 6, 2016
    at 12:52 PM

    PLEASE add this! I request the 2fa apps

    You must log in to vote
    0
    0

  83. Anonymous
    May 14, 2016
    at 2:38 PM

    yes, 2fa please!

    You must log in to vote
    0
    0

  84. Jason
    May 16, 2016
    at 7:55 PM

    I’d like to vote for this too. Would be nice if it integrated with Duo for push.

    You must log in to vote
    0
    0

  85. Anonymous
    May 17, 2016
    at 6:47 AM

    Soon is not soon enough. Hurry up with the 2FA

    You must log in to vote
    0
    0

  86. Tim
    May 18, 2016
    at 7:47 PM

    Yes! ProtonMail definitely needs 2FA!

    You must log in to vote
    0
    0

  87. Dominik
    May 25, 2016
    at 6:54 AM

    Yes!

    You must log in to vote
    0
    0

  88. Francisco A.
    May 25, 2016
    at 7:28 PM

    Two-factor authentication is a must-have feature. Hopefully it will be implemented soon.

    You must log in to vote
    0
    0

  89. Anonymous
    May 29, 2016
    at 3:32 PM

    I vote for an U2F key including happlink and yukikey among possibles hardware to have, associated with a good old long enough password for the knowledge factor.

    You must log in to vote
    0
    0

  90. Greg
    May 29, 2016
    at 6:13 PM

    Still no progress a year after 2FA was suggested a year ago?
    The only thing stopping me paying for a premium account is the lack of U2F authentication.

    You must log in to vote
    0
    0

  91. ProtonMail Support
    May 31, 2016
    at 1:03 PM

    Hi,
    We are planning to implement 2FA by the end of the year. For more information please visit this link: https://protonmail.com/blog/secure-email-roadmap/

    You must log in to vote
    0
    0

  92. NeedThis
    May 31, 2016
    at 8:25 AM

    would love 2f auth

    You must log in to vote
    0
    0

  93. anon
    May 31, 2016
    at 8:32 AM

    Please add 2FA as soon as possible. This is the one thing I need to switch over to protonmail 100%

    You must log in to vote
    0
    0

  94. rgr
    June 4, 2016
    at 1:17 PM

    FIDO U2F please

    You must log in to vote
    0
    0

  95. Anonymous
    June 8, 2016
    at 4:05 AM

    Two factor auth please

    You must log in to vote
    0
    0

  96. Anonymous
    June 15, 2016
    at 2:01 AM

    This has been on the road map for 2 years, when are you going to implement it?

    You must log in to vote
    0
    0

  97. ProtonMail Support
    June 18, 2016
    at 4:03 PM

    We are planning on implementing 2FA this year: https://protonmail.com/blog/secure-email-roadmap/

    You must log in to vote
    0
    0

  98. gio
    June 17, 2016
    at 2:23 PM

    yubikey 4 pls

    You must log in to vote
    0
    0

  99. gio
    June 19, 2016
    at 4:04 AM

    yeah,

    once yubikey 4 is supported, i will switch to premium account. hehehe

    You must log in to vote
    0
    0

  100. Anonymous
    June 19, 2016
    at 7:40 PM

    That’s great to hear. Hopefully you will choose FIDO U2F, it’s widely used already and the most convenient. Google Auth is not secure, neither is SMS verification.

    You must log in to vote
    0
    0

  101. Nate
    June 20, 2016
    at 3:53 PM

    Bump re 2FA authentication using industry standard like OpenID or Google OAuth 2.0

    You must log in to vote
    0
    0

  102. user
    June 28, 2016
    at 8:18 PM

    Authy, the Best option

    You must log in to vote
    0
    0

  103. Thierry
    July 1, 2016
    at 8:28 AM

    there is no up vote botton.

    You must log in to vote
    0
    0

  104. ProtonMail Support
    July 2, 2016
    at 11:55 AM

    Can you please try clicking on the “Helpful” button?

    You must log in to vote
    0
    0

  105. Thierry
    July 1, 2016
    at 8:30 AM

    I would appreciate 2FA for additional security. Following options should be offered (in order of importance). 1. mobile phone, 2. email, 3. Google OAuth 4. other solutions.

    You must log in to vote
    0
    0

  106. paul joyce
    July 3, 2016
    at 7:09 PM

    Please add ASAP.
    A keystroke logger defeats ALL of (personal) security mechanisms. I have not migrated to PM because of this and only this.
    Please add.

    Also – cannot vote above

    You must log in to vote
    0
    0

  107. user
    July 10, 2016
    at 5:29 PM

    +1 for FIDO U2F

    You must log in to vote
    0
    0

  108. Anonymous
    July 12, 2016
    at 11:05 PM

    +1 for Authy or any 2fa

    You must log in to vote
    0
    0

  109. Anonymous
    July 14, 2016
    at 7:45 PM

    +1 2FA
    Google Authenticator + U2F

    You must log in to vote
    0
    0

  110. Jarrod
    July 15, 2016
    at 7:39 AM

    I look forward to this feature being implemented.

    You must log in to vote
    0
    0

  111. Anton
    July 20, 2016
    at 9:42 PM

    Waiting for this feature.

    You must log in to vote
    0
    0

  112. Russell Rounds
    July 22, 2016
    at 6:26 PM

    Two factor authentication is a HUGE deal and a must have for a service. I feel this is protonmail’s biggest drawback by far, especially since almost every email service has this.

    You must log in to vote
    0
    0

  113. Russell Rounds
    July 22, 2016
    at 6:27 PM

    Also, I wasn’t able to upvote this article, but would have.

    You must log in to vote
    0
    0

  114. Russell Rounds
    July 22, 2016
    at 6:28 PM

    Also, please allow us to use FIDO U2F keys please.

    You must log in to vote
    0
    0

  115. Hermes
    July 27, 2016
    at 10:22 PM

    Authy please!

    You must log in to vote
    0
    0

  116. dcmargo54
    August 1, 2016
    at 9:23 PM

    Duo Security for 2Fa. Auth.

    You must log in to vote
    0
    0

  117. Jan Jansen
    August 3, 2016
    at 9:54 PM

    Hi, please enable 2FA, so I can do a complete switch from other email solution that provides the authentication (and pay for premium), without 2FA this is just a toy for now.

    You must log in to vote
    0
    0

  118. Anonymous
    August 7, 2016
    at 11:02 PM

    PLEASE hurry an enable 2FA. I don’t care if it’s Premium only for now, I just need the feature.

    I use protonmail for my business and we are high-profile and have numerous attacks in the past.

    Yubikey supprt would be best, but I will settle for Google Authenticator. Just don’t require SMS or “questions and answers” as both are insecure.

    You must log in to vote
    0
    0

  119. Anonymous
    August 9, 2016
    at 6:14 PM

    It’s is great to see that ProtonMail will be adding 2FA to its security measures. Can you provide any insights at to which 2FA methods will be available?

    You must log in to vote
    0
    0

  120. ProtonMail Support
    August 10, 2016
    at 1:16 PM

    We are still working on this, and exploring multiple options. More details will be available when we are ready to implement it.

    You must log in to vote
    0
    0

  121. Anonymous
    August 9, 2016
    at 9:52 PM

    Any update on this? Would gladly make a donation towards its implementation.

    You must log in to vote
    0
    0

  122. ProtonMail Support
    August 10, 2016
    at 1:15 PM

    We are working on this, and it should be available in the future, but we don’t have an exact date.

    You must log in to vote
    0
    0

  123. Santo
    August 9, 2016
    at 9:52 PM

    Is there any update on this?

    You must log in to vote
    0
    0

  124. ProtonMail Support
    August 10, 2016
    at 1:15 PM

    We are working on this, and it should be available in the future, but we don’t have an exact date.

    You must log in to vote
    0
    0

  125. Nancy Williams
    August 10, 2016
    at 2:37 PM

    I seem to be having incoming mail blocked…..also I get frequent “too many attempt to log in” messages when I am trying to log in. Can a third party block incoming mail? And do you have such a message at log-in? Thank you

    You must log in to vote
    0
    0

  126. ProtonMail Support
    August 12, 2016
    at 2:05 PM

    Can you please contact us at contact@protonmail.com if you are still experiencing this issue?

    You must log in to vote
    0
    0

  127. Anonymous
    August 11, 2016
    at 3:55 PM

    The idea of protomail is good. But protonmail is not a real alternative as long as 2FA is not supported.

    You must log in to vote
    0
    0

  128. ProtonMail Support
    August 12, 2016
    at 2:01 PM

    We will be adding 2FA very soon. Thank you for your patience!

    You must log in to vote
    0
    0

  129. Anonymous
    August 11, 2016
    at 5:30 PM

    It’s been 1 year.

    Yes the response from 1 day ago indicates it is still in the works, but for all us paid investors this is a huge pain point and quite simply unacceptable if ProtonMail wishes to be at the forefront of email security. YubiKey, Toopher, GoogleAuth, etc. needs to be implemented ASAP. It should be the top priority of any security conscious company.

    If a hack occurs against ProtonMail due to not having this feature implemented, ProtonMail would likely see a large exodus in funding and accounts.

    Love the service though and your customer service rocks! :)

    You must log in to vote
    0
    0

  130. Greg Burd
    August 16, 2016
    at 12:38 AM

    +1 for YubiKey, Authy and/or Google Authenticator. Good to hear that 2FA is “coming soon” Support Team. :-)

    You must log in to vote
    0
    0

  131. mrhut10
    August 17, 2016
    at 9:05 AM

    i would like to upvote please !!!! can’t work out how to.

    You must log in to vote
    0
    0

  132. ProtonMail Support
    August 18, 2016
    at 1:52 PM

    You can use the vote buttons, but only once. Once you have clicked on helpful/not helpful the button becomes inactive, and you can only click the other one to change your vote.

    You must log in to vote
    0
    0

  133. NED
    August 17, 2016
    at 1:02 PM

    Cannot upvote. Need this feature.

    You must log in to vote
    0
    0

  134. Emiliano
    August 22, 2016
    at 3:38 PM

    I vote for Nitrokey

    You must log in to vote
    0
    0

  135. Thad Ryker
    August 22, 2016
    at 3:54 PM

    I also cannot upvote this issue. The “Helpful” button is not enabled for clicking, only the “Not Helpful” and I have NEVER clicked either. Please fix this. I also would vote in favor of Yubikey as an option but Authy would also be a good option, hopefully you would support multiple options.

    You must log in to vote
    0
    0

  136. Jered
    August 26, 2016
    at 11:44 PM

    Also voting for Authy/Yubikey. Would love to ditch my current email for protonmail, but 2FA is too critical for protection against key loggers to give up.

    You must log in to vote
    0
    0

  137. CandyMcApples
    August 29, 2016
    at 2:59 AM

    I’ll pay for an account once 2FA is implemented

    You must log in to vote
    0
    0

  138. anonymous
    August 29, 2016
    at 1:53 PM

    Please Support Yubikey and Google Authenticator.

    See more:
    https://www.yubico.com
    https://github.com/yubico

    https://play.google.com/store/apps/details?id=com.google.android.apps.authenticator2&hl=en
    https://github.com/google/google-authenticator

    best regards

    You must log in to vote
    0
    0

  139. Jomico
    September 1, 2016
    at 7:24 PM

    I vote for Two Factor Authentication

    You must log in to vote
    0
    0

  140. Dude on Internet
    September 1, 2016
    at 7:33 PM

    Authy or an NFC/Yubikey thingie.

    You must log in to vote
    0
    0

  141. George
    September 1, 2016
    at 10:07 PM

    I will upgrade an account as soon 2FA is implemented

    You must log in to vote
    0
    0

  142. Jonathan Cummins
    September 5, 2016
    at 2:00 PM

    Two Factor Authentication is an absolute must in 2016. I cannot take protonmail seriously without such a basic feature. Love the product in general and I am using it but not as my primary account until 2FA is enabled.

    You must log in to vote
    0
    0

  143. Eager to Sign Up
    September 6, 2016
    at 12:41 AM

    Bump. Needs 2FA

    You must log in to vote
    0
    0

  144. Chris
    September 9, 2016
    at 1:43 AM

    2FA, please. I use my Yubikey everyday with every account that supports it. Thanks.

    You must log in to vote
    0
    0

  145. Anonymous
    September 9, 2016
    at 8:21 AM

    I would make a deal with Threema!

    You must log in to vote
    0
    0

  146. Darren
    September 10, 2016
    at 6:54 AM

    2FA definitely – open source – no additional cost for the 2FA solution please – I am a paid member

    You must log in to vote
    0
    0

  147. Alex
    September 10, 2016
    at 10:11 AM

    2FA please! Authy would be great.

    You must log in to vote
    0
    0

  148. efukgrgfgldckivbtddbchtlkkkr
    September 13, 2016
    at 10:19 AM

    Yes I vote on this too! It is a must to have.
    Hardwareccccccfnitukehei or software would be ok

    You must log in to vote
    0
    0

  149. Gabor Radics
    September 13, 2016
    at 10:22 AM

    TFA is a must and would be very well welcomed here!
    Hardware or software.
    Thanks

    You must log in to vote
    0
    0

  150. Jason Caldwell
    September 20, 2016
    at 2:08 PM

    +1 for 2FA

    You must log in to vote
    0
    0

  151. Axens
    September 20, 2016
    at 2:51 PM

    I vote! Any type of it is must be

    You must log in to vote
    0
    0

  152. Neal
    September 20, 2016
    at 8:26 PM

    I cannot wait to see it coming. Had some strange behavior on my account looking at the authentication logs late August. 2FA would be very welcome!

    You must log in to vote
    0
    0

  153. Marceli
    September 22, 2016
    at 9:14 AM

    Two factor authentication is mandatory today.

    You must log in to vote
    0
    0

  154. Will
    September 25, 2016
    at 5:08 PM

    Given the security and privacy that is core to the Proton Mail mission, I’m surprised that two factor authentication wasn’t part of the MVP. Authy is an open source client that works on multiple platforms that could manage the client side work. Please consider this a bold double handed vote for 2 factor authentication. This article at Wired is four years old. The TL;DR is that the security flaws in Apple and Amazon’s process would have been mitigated had the author simply had 2 factor authentication implemented on his gmail account: https://www.wired.com/2012/08/apple-amazon-mat-honan-hacking/

    You must log in to vote
    0
    0

  155. John Ralph Bates
    September 26, 2016
    at 6:31 PM

    Please implement Trusona for MFA! They are leading the #NoPassword revolution.

    You must log in to vote
    0
    0

  156. Cesar
    September 28, 2016
    at 1:22 PM

    +1
    We need it please.
    Thank you.

    You must log in to vote
    0
    0

  157. no
    October 2, 2016
    at 5:24 AM

    What is the deal, two years ago it was “integrate it into our login process soon.” ???!!!

    This should be basic stuff for a security focused company….

    You must log in to vote
    0
    0

  158. ProtonMail Support
    October 5, 2016
    at 1:58 PM

    We are working on this, and we want to make it as easy as possible for the users.

    You must log in to vote
    0
    0

  159. vegapunk
    October 3, 2016
    at 4:59 PM

    +1 Please add it, it’s necessary to have this in this kind of days :)

    You must log in to vote
    0
    0

  160. anoon
    October 5, 2016
    at 12:41 PM

    Please add 2FA. Why not?

    You must log in to vote
    0
    0

  161. ProtonMail Support
    October 5, 2016
    at 2:11 PM

    We are working on adding this feature, but we do not have an exact date when it will be available.

    You must log in to vote
    0
    0

  162. James
    October 6, 2016
    at 7:19 AM

    Shocking it’s not implemented yet. Seems even those that don’t focus on security have this.

    You must log in to vote
    0
    0

  163. Baz
    October 6, 2016
    at 2:01 PM

    +1 Please add it.

    It would be great for free users too – not just for paying! Think of how many new signups you’d have?

    You must log in to vote
    0
    0

  164. Anonymous
    October 12, 2016
    at 6:16 AM

    That’s a feature that should’ve been there from the get-go.
    I don’t know how can one think of secure service without MFA.
    Just implement TOTP, there are plenty of ready libraries.

    You must log in to vote
    0
    0

  165. Gerard
    October 13, 2016
    at 6:00 AM

    Big +1; TOTP is the easiest and most convenient for the end-user.

    You must log in to vote
    0
    0

  166. Anonymous
    October 13, 2016
    at 6:12 AM

    Would love this feature ASAP. I’m even using Yubikey with my Gmail account.

    You must log in to vote
    0
    0

  167. PT
    October 13, 2016
    at 12:56 PM

    As George said: I will upgrade an account as soon 2FA is implemented
    Protonmail without 2FA is only BETA/Demo for me.
    Please send me an email as soon as 2FA has been implemented, and I will hit the ‘Upgrade’ button.
    Thanks!

    You must log in to vote
    0
    0

  168. DavidD
    October 13, 2016
    at 8:10 PM

    i have a suggestion for two factor authentication maybe integrate the yubikey product.

    You must log in to vote
    0
    0

  169. Chris
    October 14, 2016
    at 3:53 PM

    Agreed. This security feature is a must have option for any security conscious service.

    You must log in to vote
    0
    0

  170. Tim
    October 14, 2016
    at 8:24 PM

    I’d like to vote to add this, too. U2F would be ideal.

    You must log in to vote
    0
    0

  171. dan
    December 1, 2016
    at 7:03 PM

    I’m super confused. Does 2FA exist or not exist on ProtonMail? I opened my email account today and one of the emails was introducing me to 2FA and telling me how to enable it. But I don’t seem to have 2FA under the Security tab as the instructions tell me.

    So can somebody confirm whether it really does exist or not? I use 2FA on everything possible.

    You must log in to vote
    0
    0

  172. ProtonMail Support
    December 8, 2016
    at 5:51 PM

    You have to refresh to update to the latest version of ProtonMail.

    You must log in to vote
    0
    0

  173. Michael
    December 1, 2016
    at 9:38 PM

    Microsoft Authenticator is not supported??

    You must log in to vote
    0
    0

  174. ProtonMail Support
    December 8, 2016
    at 5:51 PM

    If it is OTP, it should work.

    You must log in to vote
    0
    0

  175. Anonymous
    December 2, 2016
    at 8:29 AM

    Unfortunately, I don’t have a smartphone, I’m still using my old flip-phone, is it possible to use SMS for 2FA like Gmail does?
    And can I use 2FA alongside the Mailbox password, making into 3FA?
    Thanks!

    You must log in to vote
    0
    0

  176. ProtonMail Support
    December 8, 2016
    at 5:50 PM

    You can use it with two password mode. We don’t support SMS, but you can install a 2FA app on your desktop.

    You must log in to vote
    0
    0

  177. Jerry
    December 4, 2016
    at 9:56 PM

    This is a good step in the right direction, but OTP is less secure than U2F, which is what larger tech companies are beginning use (at least for employees). Please do not neglect this important, open, and widely used and supported 2FA standard.

    You must log in to vote
    0
    0

  178. Niels
    December 5, 2016
    at 12:48 PM

    Thx for the 2FA that is added now.
    For the record, Blackberry users can use Authomator (http://www.authomator.com/).
    Available via Blackberry World (off course)

    You must log in to vote
    0
    0

  179. Niels
    December 5, 2016
    at 1:29 PM

    Great to see 2FA is implemented. For those who use a Blackberry, you can use Authomator for your 2FA code: https://appworld.blackberry.com/webstore/content/22517879/

    You must log in to vote
    0
    0

  180. bestofbasile
    December 6, 2016
    at 10:17 PM

    Google authenticator make no sense against The privacy Protonmail aim to

    You must log in to vote
    0
    0

  181. Gaaawd
    December 7, 2016
    at 12:35 PM

    Google authenticator worked for me, but not FreeOTP….

    You must log in to vote
    0
    0

  182. Anonymous
    December 8, 2016
    at 11:37 AM

    You should send an sms with a code for people who do not want Internet on their phone.

    You must log in to vote
    0
    0

  183. ProtonMail Support
    December 8, 2016
    at 5:33 PM

    Too dangerous because SMS can be easily intercepted.

    You must log in to vote
    0
    0

  184. Anonymous
    December 8, 2016
    at 11:39 AM

    You should send an sms for those who do not want Internet on their phone.

    You must log in to vote
    0
    0

  185. Anonymous
    November 23, 2017
    at 8:53 AM

    As Protonmail does not support yet Yubikey I use as 2nd Auth Factor Yubico Authenticator, that is the same as Google Auth but need the yubikey to generate codes.
    The problem is that I use multiple keys, for example one in the desktop and another for mobile.
    Aditionally both keys work as a backup or altenative method in case of loss.
    As far as I see Protonmail only allows one method for 2nd Factor Auth. Why not allowing more than one method?

    You must log in to vote
    0
    0

  186. ProtonMail Support
    February 16, 2018
    at 4:40 PM

    We plan on supporting more 2FA methods in the future, but we do not have a timeline at the moment.

    You must log in to vote
    0
    0

  187. sweeps
    November 24, 2017
    at 1:21 AM

    So if Protonmail supports OTP then it would support Yubikey right?

    You must log in to vote
    0
    0

  188. Marc Menard
    November 24, 2017
    at 2:40 PM

    I think what would be REALLY NICE too, is a similar article for the other end of the process, which is “how to migrate 2FA to a new device (be it a phone or tablet)”. Good thing you provided those one-time use codes, or that would have been it. And I had to use two codes, one to log in, then one to deactivate 2FA. From there all was good to reactivate it. Now that it’s fresh in my head, I will probably remember… in two years. Yeah. Right. I’m 55 now, and memory recall is not what it used to be. I guess I’m writing that on paper, but my method may not be the most elegant… ;-)

    You must log in to vote
    0
    0

  189. Pierre-Yves
    November 25, 2017
    at 6:43 PM

    https://thehackernews.com/2017/05/ss7-vulnerability-bank-hacking.html

    You must log in to vote
    0
    0

  190. Pierre-Yves
    November 25, 2017
    at 6:45 PM

    Too factor authentication… not full proof since… a while…

    You must log in to vote
    0
    0

  191. Mosh
    November 26, 2017
    at 5:16 AM

    Hi! Can I use WinAuth ?

    You must log in to vote
    0
    0

  192. ProtonMail Support
    February 16, 2018
    at 3:10 PM

    Any authenticator app that supports the OTP protocol can be used with ProtonMail.

    You must log in to vote
    0
    0

  193. Ansari
    November 27, 2017
    at 8:47 AM

    my phone damaged. how can i login with two factor pass code ? please help me

    You must log in to vote
    0
    0

  194. ProtonMail Support
    February 15, 2018
    at 4:52 PM

    Please contact our support team at contact@protonmail.com or using the support form at https://protonmail.com/support-form.

    You must log in to vote
    0
    0

  195. CW
    December 2, 2017
    at 4:13 PM

    Yubi key or Google Auth.

    You must log in to vote
    0
    0

  196. Adam Lewis
    December 2, 2017
    at 4:27 PM

    Any updates on Yubikey/U2F support? U2F is now supported via W3C/WebAuthN in both Chrome and Firefox now. Edge promising support any day now. REALLY need this. OTP is not secure, it can be phished and man-in-it-the-middled in real-time just as easily as a long-lived password.

    You must log in to vote
    0
    0

  197. Jacob
    December 5, 2017
    at 2:53 PM

    Are there plans to suppurt Yubikey or is this the extent ProtonMail will support 2FA?

    You must log in to vote
    0
    0

  198. rhbkbit
    December 5, 2017
    at 7:47 PM

    Please add support for Yubico/Yubikey for 2FA. Its much more secure than using Phone 2FA! Also its the only way to compete with the new Gmail Advanced Protection plan.

    You must log in to vote
    0
    0

  199. David H
    December 6, 2017
    at 8:52 PM

    LastPass Authenticator should be supported too!

    You must log in to vote
    0
    0

  200. ProtonMail Support
    February 14, 2018
    at 3:45 PM

    Any authenticator that uses the OTP protocol should work with ProtonMail.

    You must log in to vote
    0
    0

  201. frank
    December 11, 2017
    at 1:50 AM

    Also wishing for Yubikey/U2F

    You must log in to vote
    0
    0

  202. Old Smatterphonehand
    December 11, 2017
    at 11:34 PM

    I have an old smartphone, Android 4.1 or something. It is not possible to update this anymore. Is it safe to use it for Two Factor Authentification? Or should I better buy a new phone for this purpose?

    You must log in to vote
    0
    0

  203. ProtonMail Support
    February 9, 2018
    at 3:56 PM

    If your phone can run a 2FA app, it should be safe to use it for this purpose.

    You must log in to vote
    0
    0

  204. Divert
    December 21, 2017
    at 8:44 PM

    I want to use Evolution or Thunderbird clients, for that I will need to get a copy of my private key, but on the downloads I only see the public one.

    Also could you explain how do you manage / handle my private key? how do you say you do not have access to my stuff if you have that key?

    Regards

    You must log in to vote
    0
    0

  205. ProtonMail Support
    February 8, 2018
    at 2:30 PM

    You can use ProtonMail with Thunderbird via the ProtonMail Bridge, which doesn’t require you to download your private key. Private key downloading is nor supported yet.
    You can read more about the Bridge app here: https://protonmail.com/bridge/.

    You must log in to vote
    0
    0

  206. Casper de Lange
    December 23, 2017
    at 3:54 PM

    Hello, I do only have a regular cellphone. Is it in future also possible to use to log in. Like with yahoo they send you an SMS with a code to log in

    You must log in to vote
    0
    0

  207. ProtonMail Support
    February 8, 2018
    at 2:11 PM

    SMS verification may be considered in the future, but we cannot speculate on a timeline.

    You must log in to vote
    0
    0

  208. Anonymous
    December 28, 2017
    at 4:52 AM

    Is Yubico going to be implemented any time soon?

    You must log in to vote
    0
    0

  209. Quassar
    December 29, 2017
    at 12:29 AM

    Authy dont have ProtonMail on list i cant genere code….

    You must log in to vote
    0
    0

  210. ProtonMail Support
    February 7, 2018
    at 4:34 PM

    If you need any assistance please contact our support team at contact@protonmail.com or using the support form at https://protonmail.com/support-form.

    You must log in to vote
    0
    0

  211. Anonymous
    December 31, 2017
    at 2:25 PM

    Yubikey. Not everyone has an electronic leash, or even lives in an area where such service is extant.

    You must log in to vote
    0
    0

  212. x
    January 1, 2018
    at 3:13 PM

    Plz change authentication methodes to include something for people not using smart phones like text message or some of the obove like ubykey ect

    You must log in to vote
    0
    0

  213. Anonymous
    January 7, 2018
    at 7:18 PM

    Please implement Yubikey FIDO U2F support for 2FA. It’s universally recognized as the most secure form of 2FA.

    You must log in to vote
    0
    0

  214. Anonymous
    January 9, 2018
    at 7:23 AM

    Is there any possibility, how to disable 2FA, when i lost my Google Authenticator code (trough support or anything else)? I am inside mailbox, but when i tried to disable 2FA and put the recovery codes, the answer is incorrect login credentials.

    You must log in to vote
    0
    0

  215. ProtonMail Support
    February 7, 2018
    at 2:27 PM

    Please contact our support team at contact@protonmail.ch, via the report bug button or using the support form at https://protonmail.com/support-form.

    You must log in to vote
    0
    0

  216. Christina
    January 9, 2018
    at 3:28 PM

    I prefer Yandex Key. Please investigate how it works for logging into Yandex.Mail on the computer. Never having to input your password or a 2FA code at login is a beautiful thing (on a computer). Now, if everyone could get onboard with this, life would be grand!

    You must log in to vote
    0
    0

  217. Anonymous
    January 9, 2018
    at 5:32 PM

    Please don’t ever make this compulsory. I understand the benefits, but it entails a link to your real-world identity (the phone). I would stop using proton immediately, even though in every other respect, it is the best thing going.

    Quite apart from the anonymity issue, how are users in countries with oppressive regimes going to explain having that app on their phone? Even in the US, with its saintly respect for human and other rights, they could ask why you have proton, and even demand access to the account. They may not be able to do it to citizens, but they can to anyone else.

    You must log in to vote
    0
    0

  218. Anonymous
    January 11, 2018
    at 10:46 AM

    +1 for FIDO U2F

    You must log in to vote
    0
    0

  219. Sasha
    January 11, 2018
    at 11:41 PM

    Yubikey!

    Many of these 2FA apps are problematic if you lose your phone (lose your phone = lose access to ProtonMail!) or feature cloud backup (= increasing your attack surface). It would be great it ProtonMail could implement hardware token support.

    OTP: https://developers.yubico.com/OTP/
    U2F: https://developers.yubico.com/U2F/

    N.B.: I am a paid ProtonMail user, and a Yubikey user– I have no financial ties to yubico. I just want good security. :)

    You must log in to vote
    0
    0

  220. Anonymous
    January 20, 2018
    at 3:06 PM

    If I enable this for my mail account, will it also ask for the code when using the VPN (which is running on the same account)?

    You must log in to vote
    0
    0

  221. ProtonMail Support
    February 6, 2018
    at 2:27 PM

    Only the ProtonVPN webpage will ask for your 2FA code, the ProtonVPN app will not ask you to enter the 2FA code.

    You must log in to vote
    0
    0

  222. elias
    January 22, 2018
    at 6:33 PM

    Vote for Yubikey!

    You must log in to vote
    0
    0

  223. Cat in the blue
    January 25, 2018
    at 1:07 AM

    How is it 2018 and U2F such as with a yubikey is still not supported? Searching through other threads shows people have been asking for this for years, and with good reason.

    In order for a user to bring their account’s TOTP security up to par with U2F, they need to make their authenticator itself (and its backups) only accessible via U2F which is an unwieldy process

    You must log in to vote
    0
    0

  224. Anonymous
    January 29, 2018
    at 2:11 PM

    how to disable 2FA if the primary @FA device with Google Authenticator is lost?

    You must log in to vote
    0
    0

  225. ProtonMail Support
    February 5, 2018
    at 4:33 PM

    Please contact our support team at contact@protonmail.com or using the support form at https://protonmail.com/support-form.

    You must log in to vote
    0
    0

  226. Elizabeth
    February 4, 2018
    at 2:28 AM

    I avoid downloading apps. Downloading things opens the probability of getting malware. I completed the 2 step authentification process with another email today which utilizes text messages to the phone as the 2nd step. Why can’t proton mail utilize such a method instead of requiring an app?

    You must log in to vote
    0
    0

  227. Josh
    February 15, 2018
    at 8:37 PM

    There is much higher risk of a hack using SMS than an app. Rather, it would be nice to be able to use a physical token like YubiKey.

    You must log in to vote
    0
    0

  228. B
    February 13, 2018
    at 2:29 AM

    Another vote for yubikey

    You must log in to vote
    0
    0

  229. martial
    February 15, 2018
    at 2:55 AM

    for security reason. The “app” comes from Proton and is under control. Not the txt msg.

    You must log in to vote
    0
    0

  230. Anonymous
    February 15, 2018
    at 6:12 AM

    I don’t have a smartphone (just a simple flip phone), so I can’t set up two-factor authentication in ProtonMail the way it currently works. Why can’t ProtonMail handle two-factor authentication the way that other websites do, by sending a confirmation code to the phone number you type in?

    You must log in to vote
    0
    0

  231. ProtonMail Support
    February 20, 2018
    at 4:10 PM

    We don’t support 2FA by SMS, but you can install a 2FA app on your computer.

    You must log in to vote
    0
    0

  232. Alan Moreira
    March 5, 2018
    at 3:47 PM

    Sms contains known critical security flaws. It is not legal to use this method in a secure email.

    You must log in to vote
    0
    0

  233. Linda Bernhardt
    February 24, 2018
    at 7:39 PM

    I am a new proton mail user. I forgot my username and password. Please advise me what to do. Also, I do not know what you mean by “recovery email”.

    You must log in to vote
    0
    0

  234. ProtonMail Support
    March 18, 2018
    at 6:17 PM

    Please contact our support team at contact@protonmail.ch, support@protonmail.ch or using the support form at https://protonmail.com/support-form.

    You must log in to vote
    0
    0

  235. Tina
    February 25, 2018
    at 12:38 PM

    +1 for Yubikey :)

    You must log in to vote
    0
    0

  236. Name
    February 27, 2018
    at 12:19 PM

    Though I ‘ve never used one, from my research and given the philosophical nature of protonmail’s security/’anonymity’ focus, I would say Yubikey! Doesn’t require the Identification that comes with a cell phone, which is good if, say, you have multiple protonmail accounts, and not all of them are meant to be linked to your public persona for whatever reasons (journalism, activisim…) A device like Yubikey with OTP would be ideal as if I recall you can set it up to authorize multiple accounts with multiple protocols, so with one key, unlinked to your contact information you could secure all of your proton usage, etc. great for authenticating an account accessed over the TOR network where correlating anoynmous web data flow with very much not anonymous mobile broadcast communications data.

    You must log in to vote
    0
    0

  237. Anonynous
    February 27, 2018
    at 2:30 PM

    Yubikey support would be great or just FIDO U2F

    You must log in to vote
    0
    0

  238. ISO
    February 28, 2018
    at 6:12 AM

    Voting for Yubikey and/or fido u2f standard

    You must log in to vote
    0
    0

  239. Paulo Cravo
    February 28, 2018
    at 11:33 PM

    i have my mailbox with full mails encripted you not give me solutions

    You must log in to vote
    0
    0

  240. ProtonMail Support
    March 18, 2018
    at 5:38 PM

    If you have reset your password, new encryption keys are generated while the previous ones are disabled. Because of this, your existing messages will become unreadable but you can restore them by providing the old password in the Settings > Keys tab on the web app. https://protonmail.com/support/knowledge-base/restoring-encrypted-mailbox/.
    For further assistance, please contact our support team at contact@protonmail.ch, support@protonmail.ch or using the support form at https://protonmail.com/support-form.

    You must log in to vote
    0
    0

  241. Mark Naumowicz
    March 5, 2018
    at 1:50 PM

    Where is DUO push integration please? Let us know please

    You must log in to vote
    0
    0

  242. ProtonMail Support
    March 6, 2018
    at 5:04 PM

    Any authenticator app with support for the OTP protocol can be used with ProtonMail.

    You must log in to vote
    0
    0

  243. Alan Moreira
    March 5, 2018
    at 3:43 PM

    No option to use one-time use recovery codes. How do I disable two-factor verification without this option?

    You must log in to vote
    0
    0

  244. ProtonMail Support
    March 6, 2018
    at 4:59 PM

    You use the recovery codes instead of the code generated by the app to log in. Once you log in with a recovery code, you will need a second recovery code to disable 2FA.
    If you need any assistance, please contact our support team at contact@protonmail.com or using the support form at https://protonmail.com/support-form.

    You must log in to vote
    0
    0

  245. Anonymous
    March 6, 2018
    at 10:09 AM

    Please, add the “remember device” feature for the 2FA… It’s really annoying to have to type every time the 2FA code on the same personal device :(

    You must log in to vote
    0
    0

  246. Scott
    April 24, 2018
    at 3:40 PM

    I too vote for this feature. I should be able to tell ProtonMail to trust my primary computer for 30 days or something like that, so I don’t have to enter my second factor every day.

    You must log in to vote
    0
    0

  247. nose
    March 8, 2018
    at 8:42 PM

    Yubikey please. I’ve been using these for several years now and they are FIDO U2F.

    You must log in to vote
    0
    0

  248. LP
    March 15, 2018
    at 1:27 AM

    I am using Lineage with F-Droid, I have not looked yet for 2FA, I just found this thread.
    There are a lot of great ideas here.
    Keep up the Awesome work PM.

    You must log in to vote
    0
    0

  249. Gene
    March 29, 2018
    at 3:44 PM

    Hi, the QR code is not showing up properly. I tried to enter the text into my authenticator manually but it fails every time. Not sure what is wrong with it.

    You must log in to vote
    0
    0

  250. ProtonMail Support
    March 29, 2018
    at 3:52 PM

    Please contact our support team at contact@protonmail.ch, support@protonmail.ch, via the report bug button or using the support form at https://protonmail.com/support-form.

    You must log in to vote
    0
    0

  251. Jeff
    April 6, 2018
    at 5:42 AM

    YubiKey OTP, please. :c)

    You must log in to vote
    0
    0

  252. Mr E
    April 6, 2018
    at 11:26 PM

    Add yet another vote for Yubikey.

    You must log in to vote
    0
    0

  253. Richard
    April 13, 2018
    at 8:31 PM

    +1 on Yubikey

    You must log in to vote
    0
    0

  254. Paul
    April 15, 2018
    at 2:21 AM

    I use Password Manager from MicroTrend, the ProtonMail app is supported with MicroTrend Password Manager. I recommend Password Manager for extra security.

    You must log in to vote
    0
    0

  255. Andy
    April 16, 2018
    at 2:30 PM

    +1 for SMS authentication, or ideally a 2-factor app with SMS as backup. Some of the commenters are concerned about security for SMS, but if you make it an opt-in feature then they can opt-out.

    You must log in to vote
    0
    0

  256. Johan
    April 24, 2018
    at 6:52 PM

    more + 1 for yubikey, superb solution, super secure, why don’t Protonmail support this?

    You must log in to vote
    0
    0

  257. Stan
    May 2, 2018
    at 9:42 AM

    Yu-bi-key! Yu-bi-key!

    You must log in to vote
    0
    0

  258. ProtonmailComments
    May 3, 2018
    at 4:11 PM

    I would like to have authentication via ordinary text messages/SMS: these apps require WiFi or the use of cellphone data, and requires an additional app. YubiKey would be good too.

    You must log in to vote
    0
    0

  259. Anon
    May 5, 2018
    at 8:57 PM

    I vote U2F

    You must log in to vote
    0
    0

  260. Pete
    May 8, 2018
    at 3:52 AM

    OK so two factor authentication is the way to go. However, what if your smartphone has been hacked/cloned and your two factor authentication is an app that generates a code (say google authenticator). If someone else has access to everything you are doing on your smartphone they presumably will be able to access the code you are provided? I believe the way to go is something like certain financial institutions use where they provide a key fob and you press a button and it illuminates and provides a code. It works similarly to google authenticator in that a new code is generated/changes every few seconds but it is not on a connected device which cannot be accessed/seen remotely. Also, protonmail when they adopt such a system should provide for a nonviewable entry box for that codes input thereby denying anyone who is still hacking viewing the smartphone/pc from seeing what is typed. Feedback appreciated. Thanks.

    You must log in to vote
    0
    0

  261. Anonymous
    May 10, 2018
    at 5:54 AM

    I vote for Yubikey OTP or U2F please

    You must log in to vote
    0
    0

  262. erte
    May 14, 2018
    at 8:05 AM

    +1 on Yubikey

    You must log in to vote
    0
    0

  263. Anonymous
    May 23, 2018
    at 3:42 PM

    Two-factor authentication is actually more of a bug than a feature if the attacker has taken control of your cell phone through malicious software and/or SS7. (Which I now know from painful, hard-won experience on a Gmail account.)

    Please, please consider adding Yubikey authentication which is not subject to that form of hacking and most importantly, not requiring any access to the phone at all.

    You must log in to vote
    0
    0

  264. Anonymous
    May 26, 2018
    at 3:38 PM

    I’d love Yubikey support :)

    You must log in to vote
    0
    0

  265. Anon (with a paid account)
    May 29, 2018
    at 1:41 AM

    Is there any update on ProtonMail implementing/supporting YubiKey (by yubico)? i appreciate there have been a number of updates above re no timeline but i’m hoping there may be an update at this stage? I appreciate PM team have been working hard in a number of areas re security and features and whilst sympathetic to that i would really love to see yubikey supported its the only aspect of my online accounts (That i really care about) that does not currently support it.

    You must log in to vote
    0
    0

  266. John L Huntingford
    June 4, 2018
    at 6:58 AM

    I think this is amazing

    You must log in to vote
    0
    0

  267. CoolJ
    August 20, 2018
    at 3:32 PM

    I hope we can get yubikey working as well.
    Thanks

    You must log in to vote
    0
    0

  268. Lex
    August 20, 2018
    at 6:14 PM

    That’s clear, no yubikey, no protonmail

    You must log in to vote
    0
    0

  269. Kostadin
    August 21, 2018
    at 10:38 AM

    Please add support for Yubikey!

    You must log in to vote
    0
    0

  270. Snoty
    August 29, 2018
    at 5:43 PM

    Please yubikey

    You must log in to vote
    0
    0

  271. Dan
    August 30, 2018
    at 4:40 PM

    +1 Yubikey

    You must log in to vote
    0
    0

  272. Just currius
    September 1, 2018
    at 8:37 AM

    HELLO PROTONMAIL !

    ADD THE SUPPORT TO USE MORE THAN ONE TWO FACTOR AUTHENTICATION

    I would like to use both Authy and my Yubico for the same account to log in. not a choice option between yubico or authy to log in.

    What I’m using now:

      Login Password – Authy – Mail Password

    I would like to use:

    Login Password – Yubico – Authy – Mail Password

    You must log in to vote
    0
    0

  273. Just saying
    September 3, 2018
    at 11:01 AM

    I don’t know about “developed” countries, but in Russia usage of cellphones (SMS, apps) for 2FA is a security hole.

    You must log in to vote
    0
    0

  274. Dan
    September 5, 2018
    at 2:04 AM

    +1 for Yubikey

    You must log in to vote
    0
    0

  275. Parrq
    October 29, 2018
    at 4:47 PM

    Support for hardware tokens seems like a good idea. U2F or FIDO2, e.g. If the team thinks this isn’t a good idea (vs just prioritizing development resources), would love to hear the reasons why not, as the info would likely be very informative.

    You must log in to vote
    0
    0

  276. Joel D. Tessler
    April 7, 2019
    at 11:00 PM

    Cannot log in with apple mohave OS? It rejects my password using Epic browser with VPN enabled.

    JDT

    You must log in to vote
    0
    0

  277. ProtonMail Support
    April 23, 2019
    at 2:19 PM

    Please contact our support team using the support form at https://protonmail.com/support-form.

    You must log in to vote
    0
    0

  278. Anonymous
    April 9, 2019
    at 8:21 AM

    Yubikey OTP or U2F please

    You must log in to vote
    0
    0

  279. Anonymous
    April 17, 2019
    at 2:17 AM

    Seriously, why is there still no support for U2F or FIDO2? As Parrq said – if there are reasons, we’d love to hear.

    You must log in to vote
    0
    0

  280. Richard Alman
    April 17, 2019
    at 1:12 PM

    Is implementation of security key technology, like Yubico 5, in the plan for addressing phishing attacks, and improving account security?

    Thank you,

    You must log in to vote
    0
    0

  281. ProtonMail Support
    April 23, 2019
    at 1:35 PM

    Yes, U2F support will be available in the future.

    You must log in to vote
    0
    0

  282. Concerned User
    April 18, 2019
    at 2:11 AM

    +1 for Yubikey

    You must log in to vote
    0
    0

  283. Camille Bierens de Haan
    April 18, 2019
    at 9:09 AM

    QRCode leads to Error page…. on my Android mobile

    You must log in to vote
    0
    0

  284. ProtonMail Support
    April 23, 2019
    at 1:25 PM

    Please contact our support team: https://protonmail.com/support-form.

    You must log in to vote
    0
    0

  285. Eden D Zenarosa
    April 18, 2019
    at 1:52 PM

    I can’t log in to my account because my old phone stopped working, I have a new phone but I dont know how to put back the 2FA authenticator .

    You must log in to vote
    0
    0

  286. ProtonMail Support
    April 23, 2019
    at 1:25 PM

    Please contact our support team: https://protonmail.com/support-form.

    You must log in to vote
    0
    0

  287. Gabriele Lavermicocca
    April 18, 2019
    at 5:09 PM

    Hello,
    I enjoy your free version of Proton Mail.
    Last week, I deleted most o my old emails, but still today it shows my use of 98%.
    Why?

    You must log in to vote
    0
    0

  288. ProtonMail Support
    April 23, 2019
    at 1:24 PM

    Make sure to clear out the Trash folder once you delete messages from the Inbox. Clear your Spam folder as well.
    Be advised that messages deleted from Trash and Spam cannot be recovered.

    You must log in to vote
    0
    0

  289. Solomon
    April 20, 2019
    at 11:04 PM

    Hardware tokens seem like a must, especially for a privacy/security focused email service. It would be really nice to see this in the near future. It looks like this has been asked for for nearly 4 years now.

    You must log in to vote
    0
    0

  290. ProtonMail Support
    April 23, 2019
    at 1:07 PM

    We do plan on adding U2F support soon but can’t provide an ETA yet.

    You must log in to vote
    0
    0

  291. Vinh Nguyen
    May 23, 2019
    at 10:42 AM

    YubiKey is a MUST! Please make it happen.

    You must log in to vote
    0
    0

  292. STB
    May 26, 2019
    at 6:53 AM

    Yes hardware token Yubikey compatibility needed, 4 years to long to wait. Please make it priority.

    You must log in to vote
    0
    0

  293. PEB
    May 27, 2019
    at 4:55 PM

    We NEED support for Yubikey, please add it.

    You must log in to vote
    0
    0

  294. Anonymous
    May 27, 2019
    at 8:22 PM

    We need U2F support now.

    You must log in to vote
    0
    0

  295. Oyama Hall
    May 30, 2019
    at 1:00 PM

    +1 vote for Yubikey

    You must log in to vote
    0
    0

  296. R S
    June 1, 2019
    at 2:00 AM

    I just ordered a U2F device today as someone sent me a ransomware email ((on hotmail – byebye 4ever hotmail)) with one of my oldschool passwords in the subject line. They said they keylogged my “device” through a Cisco router

    You must log in to vote
    0
    0

  297. Sweet Mallorca
    June 3, 2019
    at 9:41 AM

    +1 for Yubikey

    You must log in to vote
    0
    0

  298. Kevin R
    June 5, 2019
    at 11:48 AM

    I hope that you will consider ‘Yubikey’ as a future OTP. I can’t think of anything better. I can’t always get a sig. on my mobile, so a ‘key’ would be the answer, when using machines away from home. Please consider!

    You must log in to vote
    0
    0

  299. graybeered
    June 23, 2019
    at 9:42 PM

    Another vote for Yubikey. Simple to use and not dependent on smartphone security.

    You must log in to vote
    0
    0

  300. anonymous
    June 27, 2019
    at 10:36 AM

    I have started using 2-FA with Authy on my Android O.S. and I am very pleased with it as it is working well and being a free user who doesn’t even know if he requires that much extra security helps Me know I am safe not just think it if you feel me.

    You must log in to vote
    0
    0

  301. anonymous
    June 27, 2019
    at 10:42 AM

    I would like to see Yubikey available too since using a Cell-Phone is very vulnerable not just to attacks/hackers but getting Lost etc. yet I somehow never lose those things. Yet the 2-FA which i use Authy with is working out great for Me as I don’t if two passwords would make all that much of a difference, unless I were to of been constantly changing them which would be a huge pain in the butt.

    You must log in to vote
    0
    0

  302. Adam H
    June 29, 2019
    at 6:14 AM

    I use Codebook by Zetetic, and have for about 8 years. Their addition of TOTP is what lead me to transitioning to Proton. Yubi keys physically store things in secure locations at home should my mobile be lost or broken.

    You must log in to vote
    0
    0

  303. Mark
    June 29, 2019
    at 10:06 AM

    Can we have a two-factor authentication via SMS for dumbphones? Not everyone wants a smartphone.

    You must log in to vote
    0
    0

  304. Jan Ebrard
    July 1, 2019
    at 8:55 AM

    Is it possible to add a computer/device to a ‘trusted devices’ list, on which 2FA is disabled until further notice? Or at least something like ‘Trust this device for the next 30 days’? This of course for the webmail.

    You must log in to vote
    0
    0

  305. ProtonMail Support
    July 25, 2019
    at 12:48 PM

    Not right now, but we may support this in the future.

    You must log in to vote
    0
    0

  306. JJAskiz
    July 1, 2019
    at 11:35 AM

    Another good Two-Factor Authentication App is Yandex Key, There is an App for it both in the Play Store and the Apple App Store but I don’t think there are any Software for it for Windows OS, Linux OS and Apple OS at the moment.

    You must log in to vote
    0
    0

  307. JJAskiz
    July 1, 2019
    at 12:02 PM

    I always use Two-Factor Authentication/ Two Step Authentication on all my online accounts, The way I set up my Two-Factor Authentication/ Two Step Authentication Codes and my Backup/ Recovery Codes is perfect. I have two offline encrypted devices (One device which I carry with me and the other second device is hidden in a secure location which only I know which I use as a backup incase something happens to the first device.) Both my offline encrypted devices have two different encryption software’s on them which are protected by two different passwords which are protecting both my Two-Factor Authentication Codes/ Two Step Authentication Codes and my Backup/ Recovery Keys, Talk about Fort Knox Security.

    XD

    You must log in to vote
    0
    0

  308. Anonymous
    July 4, 2019
    at 1:51 AM

    When you support Yubikey, then I’ll sign up.

    You must log in to vote
    0
    0

  309. GeoB
    July 8, 2019
    at 3:06 PM

    Any consideration of a longer-term 2FA authentication on secure devices? I log in to PM regularly from a secure workstation (I believe ;) and it seems that allowing a 7-day 2FA auth (ie I only get asked once per week for my 2nd FA on that device, always get asked for 1st FA) would be sufficient. Obviously respect those who don’t want this, so it is an option not forced.

    You must log in to vote
    0
    0

  310. ProtonMail Support
    July 19, 2019
    at 12:57 PM

    We don’t store info about devices you use to log in, so this is not possible at the moment.

    You must log in to vote
    0
    0

  311. Sergiu
    July 9, 2019
    at 5:41 PM

    Please add WebAuth (U2F) support, I am having issues having most of the friends on Tutanota because of this cryptical security issue.
    Thank you!

    You must log in to vote
    0
    0

  312. JP
    July 9, 2019
    at 10:38 PM

    Yubikey when? We’re in mid-2019 already, other than that I love the service but yeah it’s a must.

    You must log in to vote
    0
    0

  313. E.D.B
    July 12, 2019
    at 10:05 PM

    The sooner the better for U2F, please.

    You must log in to vote
    0
    0

  314. Anon
    July 16, 2019
    at 5:09 AM

    Every time I have to pull my phone out to read my email I think of this thread. Where is the Yubikey support already?! ITS BEEN YEARS! This looks like it would take at most a few hours to set up.

    You must log in to vote
    0
    0

  315. Jeffery Birks
    July 16, 2019
    at 4:39 PM

    Absolutely must have 2fa or mfa these days, and hopefully we will see the back of passwords soon.

    You must log in to vote
    0
    0

  316. Chris
    July 17, 2019
    at 11:37 AM

    Hi Protonmail ! can you please add Yubikey as an optional security feature, pretty please !!

    You must log in to vote
    0
    0

  317. Paid ProtonMail User
    July 19, 2019
    at 5:00 PM

    Tutanota already has Yubikey support and a Calendar. At the beginning of 2019, they did not have both (or at least the Calendar, I am not sure about the Yubikey support). Why are you developing the email service slower than Tutanota? Is it because of the more rigorous software testing process? Or because you do not have enough human resources to develop and maintain both email and VPN services? Or something else? ProtonMail is five times more expensive than Tutanota, and the only significant difference is the country where servers are located. I became a paid user of ProtonMail half a year ago. Since than Tutanota has released email client for Linux. They have Tutanota Android app in F-Droid market, etc. I did not observe major new features in ProtonMail within this half a year except the implementation of a new encryption algorithm. The ProtonMail Bridge for Linux is tough to install and update. It seems that there are no plans to improve it, at least its installation on Linux systems.

    I know that you are planning to release a Calendar soon, and I am ready to wait for it. But why don’t you add Yubikey support? Many, many security-focused software services incorporated the Yubikey into their source code, why not you? Do ProtonMail, and Yubico dislike each other? Or ProtonMail plans to release ProtonKey in the unforeseeable future and does not want to implement the support for a product of its potential competitor?

    You must log in to vote
    0
    0

  318. ProtonMail Support
    July 25, 2019
    at 11:58 AM

    Please see: https://www.reddit.com/r/ProtonMail/comments/cdm4cs/yubikey_status_update/etwmo6l/

    You must log in to vote
    0
    0

  319. spacemonkey
    July 21, 2019
    at 12:45 PM

    +1 for Yubikey support

    You must log in to vote
    0
    0

  320. charona
    August 12, 2019
    at 11:29 AM

    yubikey please

    You must log in to vote
    0
    0

  321. CL
    September 27, 2019
    at 1:15 PM

    is it possible to Add 1password as 2FA generator ?

    You must log in to vote
    0
    0

  322. ProtonMail Support
    October 3, 2019
    at 2:54 PM

    As long as you can scan the QR code or enter the code manually, you can use any 2FA app which supports time-based OTP codes.

    You must log in to vote
    0
    0

  323. Malaia
    September 30, 2019
    at 10:15 PM

    +1 for FIDO2 / yubikey

    You must log in to vote
    0
    0

  324. brittany hates google
    October 1, 2019
    at 2:18 PM

    Bundle AutoCrypt into the platform for interoperability and PFS

    You must log in to vote
    0
    0

  325. brittany hates google
    October 1, 2019
    at 2:19 PM

    another vote for yubikey AND the new fido/u2f 2.0 NOT requiring chromium (way less costly tokens)

    authy can suck my left toe

    You must log in to vote
    0
    0

  326. Joey
    October 3, 2019
    at 8:39 AM

    Please add yubikey support!
    We want hardware 2factor support.

    You must log in to vote
    0
    0

  327. ignac
    October 3, 2019
    at 3:56 PM

    +1 for FIDO2 / yubikey

    You must log in to vote
    0
    0

  328. Ryan Kozak
    October 9, 2019
    at 7:07 PM

    FIDO2 please!

    I don’t have an android or ios device, would still like two factor auth through hardware support.

    You must log in to vote
    0
    0

  329. Joe Mainusch
    October 11, 2019
    at 6:23 PM

    u2f/FIDO2/Webauthn

    It’s unfathomable that you don’t already support Webauthn. I can’t conceive of a legitimate reason why.

    You must log in to vote
    0
    0

  330. P.W.F.
    October 13, 2019
    at 4:40 AM

    You should include an option for landline phones/non-smartphones to deliver a 2FA code via voice for those in rural areas with unreliable or no available signal, those with disabilities making use of text/smartphones difficult or impossible and those that intentionally do not own or carry smartphone devices due to ethical/mental health/security-related personal reasons. Also in the US, many poor people use “Obamaphones” which can often be lost or disconnected and only have limited data service which can lock some out for up to three weeks until the phone renews on the 1st of every month.

    You must log in to vote
    0
    0

  331. AA
    October 13, 2019
    at 4:46 PM

    How do I disable 2FA? I did not receive the one time recovery code, what do i do?

    You must log in to vote
    0
    0

  332. ProtonMail Support
    October 18, 2019
    at 1:21 PM

    Recovery codes are provided during 2FA set up. If you don’t have the code, please contact our support team: https://protonmail.com/support-form.

    You must log in to vote
    0
    0

  333. Anonymous
    October 15, 2019
    at 6:58 PM

    please no app, no mobile phone, only self-supplied question/answer which can quickly and easily be changed

    You must log in to vote
    0
    0

  334. Anonymous
    October 24, 2019
    at 11:02 AM

    I vote for FIDO2 support. I don’t want to use a smartphone anymore.

    You must log in to vote
    0
    0

  335. Anonymous
    October 26, 2019
    at 2:39 PM

    I would much love to be able to use my Yubikey rather than my phone.

    You must log in to vote
    0
    0

  336. Mikaela
    November 6, 2019
    at 6:38 PM

    I have a 2fa made in authy and have no access to it. Can you help me by this? I really am frustrated.. I need to access my protonmail account because there are important stuffs that I need to open.. :(

    You must log in to vote
    0
    0

  337. ProtonMail Support
    November 7, 2019
    at 3:47 PM

    Please contact our support team: https://protonmail.com/support-form.

    You must log in to vote
    0
    0

  338. RA M. Wahl
    November 7, 2019
    at 12:21 PM

    +1 for FIDO2 / yubikey

    You must log in to vote
    0
    0

  339. hector
    December 6, 2019
    at 9:59 PM

    +1000 for Fido2

    You must log in to vote
    0
    0

  340. anonymous
    December 13, 2019
    at 8:07 AM

    I use Authy and they don’t have any Email Support. I got problems when I had to get a New Cell-Phone and Sim Card. I was forced to Recover my Authy Account but when i did the Back-Ups didn’t work meaning I still had the “Authy Account” intact with all the things I was using to access my Account but it wouldn’t work for some reason on my New Cell-Phone and or Sim Card so who knows what the problem is.

    That’s the only problem with using Authy I am kind of screwed without any Email Support from them and all I can do is now use Authy without my Account Backed-Up on it. I got to make sure the Codes I was given in case I loose Access to my Device that I Wrote down by hand don’t get lost.

    You must log in to vote
    0
    0

  341. Valentin Reis
    December 16, 2019
    at 6:24 PM

    +1 for token-based U2F

    You must log in to vote
    0
    0

  342. RGB
    December 19, 2019
    at 7:15 AM

    https://theintercept.com/2016/06/22/battle-of-the-secure-messaging-apps-how-signal-beats-whatsapp/

    https://www.wired.com/story/ditch-all-those-other-messaging-apps-heres-why-you-should-use-signal/

    https://www.wired.com/2016/06/even-ftcs-lead-technologist-can-get-hacked/

    When a mobile phone is hacked 2FA (two factor authentication) fails, any OTP (one time password) or TAC (transaction authorisation code) are received by the hacker who can then withdraw money from a credit card, bank account or debit card.

    That’s why I’m against 2FA that uses a phone.

    You must log in to vote
    0
    0

  343. ProtonMail Support
    December 25, 2019
    at 4:17 PM

    ProtonMail cannot protect against a compromised device, regardless of 2FA being activated or not.
    https://protonmail.com/blog/protonmail-threat-model/

    You must log in to vote
    0
    0

  344. Jochen Forche
    December 21, 2019
    at 8:28 AM

    PLEASE WITH JUBYKEY!!!!!!

    You must log in to vote
    0
    0

  345. Kent McHenry
    February 9, 2020
    at 2:18 PM

    +1 for Yubikey

    You must log in to vote
    0
    0

  346. Anonymous
    March 8, 2020
    at 7:50 PM

    Please add Yubikey

    You must log in to vote
    0
    0

  347. Peter
    March 9, 2020
    at 6:16 PM

    Another thumbs-down for using a mobile phone (similar to P.W.F above). I do not have one and cannot use one for medical reasons. I am not alone. Also phones break, run out of battery, get lost or stolen, there are areas where there is no reception (but a fibre/ADSL internet may be available)…….
    Use of a fixed landline is not great either – what if you are away from your landline travelling etc.?
    I’m not familiar with most of the above suggestions involving technology so I can’t suggest an alternative………

    You must log in to vote
    0
    0

  348. Gottfried Vom Orde
    March 9, 2020
    at 7:53 PM

    Hi, can I use my fingerprint touch identification instead of typing the password?

    You must log in to vote
    0
    0

  349. ProtonMail Support
    March 13, 2020
    at 3:20 PM

    Hi,

    You can add a PIN/Biometric lock to the app in the Settings and stay logged in. The app will then require you to use your fingerprint or PIN to open.

    You must log in to vote
    0
    0

Comments are closed.

Support Categories

  • 41Bridge
  • 8Import and export
  • 16Why ProtonMail?
  • 3Storage
  • 6ProtonMail Professional FAQ
  • 2Privacy
  • 16Business
  • 30Premium
  • 13Getting started
  • 12Calendar
  • 118Getting started with ProtonMail
  • 14Custom Domains
  • 12Security
  • 4Sign Up
  • 13Login & Mailbox Passwords
  • 9Why won't it let me?
  • 4Something is wrong!
  • 12Switching to ProtonMail
  • 18Mobile
  • 10Contacts
  • 11Send & receive messages
  • 6Getting organized
  • 27ProtonMail tips & tricks

 

Knowledge Base
  • Why ProtonMail
  • Sign Up
  • Login & Mailbox Passwords
  • Switching to ProtonMail
  • Mobile
  • Contacts
  • Send & receive messages
  • Getting organized
  • ProtonMail tips & tricks
  • Plans and prices
  • Upgrading
  • Downgrading
  • Features
  • Upcoming features
  • Planned features
  • Feature request
Didn't find the answer you were looking for? We're happy to help you! Contact our support team

Proton AG

Route de la Galaise 32
1228 Plan-les-Ouates
Geneva, Switzerland



General: Show Email
Media: media@protonmail.com
Legal: legal@proton.ch
Partnership: partners@protonmail.com



Abuse: abuse@protonmail.com
For legal/police inquiries
click here



For support inquires please visit:
protonmail.com/support

General Inquiries

For customer support inquiries, please submit the following form for the fastest response:
Support Form

For all other inquiries:
contact@protonmail.com

    -----BEGIN PGP PUBLIC KEY BLOCK-----
    Version: OpenPGP.js v4.10.8
    Comment: https://openpgpjs.org

    xjMEX85NMRYJKwYBBAHaRw8BAQdAhwFxKgsFU8QiBZlbUxuzrJIiYgVzM0Av
    B/IPUTv5YTbNL2NvbnRhY3RAcHJvdG9ubWFpbC5jb20gPGNvbnRhY3RAcHJv
    dG9ubWFpbC5jb20+wo8EEBYKACAFAl/OTTEGCwkHCAMCBBUICgIEFgIBAAIZ
    AQIbAwIeAQAhCRCtuTRTXwNhqxYhBA1L6MzXf+0hb7gsI625NFNfA2GrPUUA
    /1kRWoKzi4VLDxQkQHJme+C2d8Kuj5qGUESG2UdT8oXpAP9Q9Ko9cAFEWXnL
    Tz5neP+QFezaPyQJ1hzRgXIHbu8QCM44BF/OTTESCisGAQQBl1UBBQEBB0Ac
    REfc4aE34zZnVQ9MS5S+Xk6xEq53x0gWzY4/TrR4KQMBCAfCeAQYFggACQUC
    X85NMQIbDAAhCRCtuTRTXwNhqxYhBA1L6MzXf+0hb7gsI625NFNfA2GrIBEA
    /1rIGinVCXDEHzb7eKKRHnKZP1HLlIneGO2KxXODzEiAAP9dC33bnoXiuKnL
    xQy1XWSLdMzPNCWeY5buvwrJXl15AQ==
    =sMlu
    -----END PGP PUBLIC KEY BLOCK-----

You can also Tweet to us:
twitter.com/protonmail

ProtonMail

  • Pricing
  • Security
  • Shop
  • Press/Media Kit
  • Onion Site
  • ProtonMail Status

Features

  • iOS App
  • Android App
  • IMAP/SMTP Bridge
  • ProtonVPN
  • ProtonMail Business
  • Encrypted Contacts

Legal

  • Imprint
  • Privacy Policy
  • Terms & Conditions
  • Transparency Report
  • Report Abuse
  • GDPR Compliance

Company

  • Blog
  • Team
  • Careers
  • Support
  • Donate
  • Open Source

Social

  • Facebook
  • Twitter
  • Feedback Forum
  • Reddit
  • Instagram

 

 

© 2022 Proton AG. All Rights Reserved.