Authenticator App - Novaz

MongoDB 2FA: How to Set Up an Authenticator App

mongodb.com Supported

MongoDB supports app-based two-factor authentication (2FA). Turning it on adds a second layer of protection, so a stolen password alone can't unlock your MongoDB account.

A MongoDB account can expose source code, deploy keys, and infrastructure — prime targets for attackers. Besides an authenticator app, MongoDB also offers email codes, a proprietary app, SMS text codes and security keys. An authenticator app (TOTP) is usually the best balance of security and convenience — and it's safer than SMS codes, which can be intercepted through SIM-swap attacks. For the strongest protection, MongoDB also supports hardware security keys.

2FA methods MongoDB supports

  • Authenticator app (TOTP)
  • Email code
  • Proprietary app
  • SMS text message
  • Security key (U2F / WebAuthn)
  1. 1

    Download Authenticator App - Novaz

    Install Authenticator App - Novaz from the App Store on your iPhone or iPad and open it — you'll use it to scan MongoDB's QR code and generate your 6-digit sign-in codes.

  2. 2

    Sign in to MongoDB and open your MongoDB account security settings.

  3. 3

    Turn on two-factor authentication and choose the authenticator-app option.

    Look for "Authenticator app", "Authentication app", or "TOTP" rather than SMS.

  4. 4

    Scan the QR code with Authenticator App - Novaz.

    Open Authenticator App - Novaz, tap add, and point your camera at the QR code MongoDB displays. Can't scan? Enter the setup key manually instead.

  5. 5

    Enter the 6-digit code to confirm.

    Type the code Authenticator App - Novaz generates to verify and link your MongoDB account.

  6. 6

    Save a way to recover your account.

    If MongoDB shows backup or recovery codes, store them somewhere safe, away from your phone. If it doesn't, check how MongoDB recovers accounts (support, an admin, or another sign-in method) before you need it.

Menu names on MongoDB can change — the official MongoDB 2FA documentation ↗ always has the exact, current path.

How to recover your MongoDB account

If you lose access to your authenticator and MongoDB gave you backup or recovery codes when you turned on 2FA, sign in with one of them; keep them somewhere safe, away from your phone. Not every service issues codes. If MongoDB doesn't, or you didn't save them, use MongoDB's account-recovery or support process (or ask your admin, for a work account) to get back in.

Frequently asked questions

Does MongoDB work with authenticator apps like Authenticator App - Novaz?
Yes. MongoDB supports TOTP authenticator apps, so you can generate its two-factor codes in Authenticator App - Novaz.
Is MongoDB two-factor authentication free?
Yes. Enabling authenticator-app 2FA on MongoDB is free — you only need the free Authenticator App - Novaz.
What if I lose access to my MongoDB 2FA codes?
If MongoDB gave you backup or recovery codes during setup, sign in with one of them. If it didn't, or you didn't save them, use MongoDB's account recovery or contact its support (or your admin, for a work account), then add the account to Authenticator App - Novaz again.
Should I use an authenticator app or a security key on MongoDB?
MongoDB supports both. An authenticator app like Authenticator App - Novaz is free and works on any phone; a hardware security key adds phishing resistance. You can enable both.

Generate your MongoDB codes in Authenticator App - Novaz

Free, offline, and encrypted. One tap for every 6-digit code.

Get the app

More Developer guides

Novaz is not affiliated with, endorsed by, or sponsored by MongoDB. MongoDB and its logo are trademarks of their respective owner and are used here for identification only.