Two-factor authentication adds a second check when you sign in to Kintsugi, so a stolen password is not enough on its own to reach your sales tax data. You set it up once from your Account page using any authenticator app.
Time required: About 3 minutes
You will need: An authenticator app on your phone, and your Kintsugi sign-in details
Looking for state portal 2FA instead? This article is about signing in to Kintsugi. It does not cover two-factor authentication on a state tax portal such as TNTAP, myPATH, or MyDOR. For those, see Two-factor authentication for state tax portals.
Install an authenticator app on your phone if you do not have one. Kintsugi works with any standard authenticator app, including Google Authenticator, Microsoft Authenticator, Authy, and the built-in authenticators in 1Password and Bitwarden.
Two things are worth knowing before you turn this on:
Once two-factor authentication is enabled, you need your authenticator app every time you sign in, so set it up on a device you keep with you
The Kintsugi Account page does not display backup or recovery codes, so if you lose access to your authenticator app, contact support to regain access
Sign in to Kintsugi.
Use your usual email address and password.
Open your Account page.
Click your name at the bottom of the left navigation, then click Account.
Set up the Two-factor authentication for your Kintsugi account.
Scroll past the Email, First name, and Last name fields. You will see the heading Two-factor authentication and a QR code.
Add Kintsugi to your authenticator app.
Open your authenticator app, choose the option to add or scan a new account, then scan the QR code on screen. If your camera cannot read it, manually type/enter the code shown under Can't scan? Use manual setup code.
Enter the 6-digit code.
Your authenticator app now shows a rotating 6-digit code for Kintsugi. Type it into the Verification code field.
Click Enable two-factor authentication.
Codes refresh about every 30 seconds. If the code expires while you are typing, wait for the next one and enter that instead.
Sign out of Kintsugi, then sign back in. After you enter your email address and password, Kintsugi asks for a 6-digit code. Open your authenticator app, read the current code for Kintsugi, and enter it. If you reach your dashboard, two-factor authentication is working.
Signing in becomes a two-step process:
Enter your email address and password as usual
Enter the current 6-digit code from your authenticator app
Your authenticator app generates codes on the device itself, so it keeps working without an internet connection or mobile signal.
Kintsugi supports authenticator app codes only. There is no SMS or email option for two-factor codes at the moment.
Setting this up secures your own sign-in. It does not turn on two-factor authentication for your teammates, who each set it up on their own Account page
The Account page does not generate backup or recovery codes
Two-factor authentication protects your Kintsugi sign-in. It has no effect on the credentials Kintsugi uses to file on state tax portals, which are managed separately
Enabling two-factor authentication does not change your role or permissions in Kintsugi
Q: Which authenticator apps can I use?
A: Any app that supports standard time-based codes. Google Authenticator, Microsoft Authenticator, Authy, 1Password, and Bitwarden all work. You do not need a specific app.
Q: The QR code will not scan. What now?
A: Use the manual setup code shown beneath the QR code. In your authenticator app, choose the manual or "enter setup key" option, then type the code exactly as it appears.
Q: What if I lose my phone or delete the authenticator app?
A: Contact support through the chat bubble in the app so the team can verify your identity and help you regain access. Because there are no recovery codes, this is the only route back in.
Q: Does this apply to everyone on my account?
A: No. Each person enables it on their own Account page.
Q: Is this the same as the two-factor authentication on my state's tax portal?
A: No. They are separate systems. Turning it on in Kintsugi changes nothing on a state portal, and vice versa.
Q: Why does my code stop working after a few seconds?
A: Codes are time-based and rotate about every 30 seconds. If your phone's clock has drifted, codes can fail even when typed correctly. Turn on automatic date and time on your phone, then try again.
For further concerns, we're always here to help. If you can't find the answer you're looking for, just reach out to us using the chat in the bottom right corner of your screen.