← All help articlesHELP / TEAM2FA

Code groups and permissions

Assign owned codes and give people the role they need.

Assign one code to several groups

On Codes open the code menu and choose Assign To Group. Only the code owner can assign that code to another group they can edit. A single authenticator entry can appear in multiple code groups; the underlying secret is not duplicated.

Find and arrange codes

Use the No Group filter on Codes to find codes you own that have not been assigned to a code group. Drag the handle on any code to move it in your list, or focus the handle and press the up or down arrow key. Your order is saved for your account across devices and does not change how teammates see their codes.

Understand roles

Viewer can see and request current codes. Editor can also add owned codes to a group and hide or remove group entries. Admin has those abilities and can manage that code group’s access. Organization owners and administrators manage organization membership and its security settings. A user may have access through a direct grant, a user group, or several groups.

Review access

Open Code Groups, select a group, then Access to inspect direct grants. For a specific code, open its three dot menu and choose Who Has Access to inspect effective access paths and active temporary links. Removing one grant might leave another path. If someone may have copied a setup secret, rotate it at the external service.

Ready to continue?

Open the app to follow these steps, or browse another help article.

Open Team2FA ↗ All help articles

Essential session cookies, a local privacy preference, a getting started preference and an install reminder preference support the service. Optional analytics is currently inactive, even if you allow it.