Password & Two-Factor Authentication
Keep your Basecamp account secure with a strong, unique password and two-factor authentication (2FA). To get to both, click your profile picture in the bottom left, then Account & Settings → Profile, password, 2FA, then click Change your login info.
Changing your password
Enter your current password and your new password, then save your changes. Use a password manager to generate and store a strong, unique password. Reusing passwords across services is one of the most common ways accounts get compromised.
Setting up two-factor authentication
Make your account more secure with two-factor authentication (2FA). 2FA adds a second step to your login beyond your password. After entering your password, you'll verify your identity with a code from an authenticator app on your phone.
Click Set up 2FA on the login info page and follow the on-screen steps. When setup is complete, save your recovery codes somewhere safe. You'll need them if you ever lose access to your authenticator app.
Adding a security key
After enabling 2FA, add a hardware security key — such as a USB key, fingerprint reader, or Windows Hello — as an additional second-factor option. Security keys offer stronger protection against phishing than 6-digit codes.
Go to Security keys on the login info page and click Add a security key. Give your key a nickname so you can identify it if you add more than one.
If you don't have your key handy, fall back to your authenticator app code or a recovery code.
Trouble with two-factor authentication
If you've lost access to your authenticator app, use one of the recovery codes you saved during setup to log in.
If you're already logged in elsewhere, go to Account & Settings → Profile, password, 2FA → Change your login info to view your recovery codes or reconfigure 2FA.
If you're locked out entirely, contact an admin or owner on your account — they can deactivate 2FA on your behalf from Adminland. If you're not sure who to reach, email support@basecamp.com from the address registered to your account.
📝 NOTE: Account owners can require 2FA for all members from Adminland.