Sentry 2FA: How to Set Up an Authenticator App
Your Sentry account gives you access to your organizations' projects and settings. Sentry calls the feature two-factor authentication (2FA), and its "Authenticator App" method works with any authenticator app that supports TOTP, so Authenticator App - Novaz can generate your codes. After 2FA is on, you need your password and an authentication code every time you log in.
A Sentry account can expose source code, deploy keys, and infrastructure — prime targets for attackers. Besides an authenticator app, Sentry also offers SMS text codes and security keys. An authenticator app (TOTP) is usually the best balance of security and convenience — and it's safer than SMS codes, which can be intercepted through SIM-swap attacks. For the strongest protection, Sentry also supports hardware security keys.
2FA methods Sentry supports
- SMS text message
- Authenticator app (TOTP)
- Security key (U2F / WebAuthn)
Before you start
- Your Sentry login details and a verified email address. If your email isn't verified, Sentry asks you to verify it before you can add a method
- Authenticator App - Novaz installed on your iPhone or iPad
- Sentry open on a computer, so the QR code is on a different screen from your phone
- A secure place for your recovery codes that's separate from your phone, ideally somewhere you can reach from another device
Part 1: Turn on 2FA in Sentry
- 1
Open Security settings
In Sentry, open "Settings" and, under the "Account" section, click "Security".
- 2
Add Authenticator App
The "Two-Factor Authentication" panel lists the available methods. Click "Add" next to "Authenticator App". If your email isn't verified yet, Sentry prompts you to verify it first. Sentry then displays a QR code.
Part 2: Add Sentry to Authenticator App - Novaz
- 3
Scan the QR code in Authenticator App - Novaz
Open Authenticator App - Novaz, tap the + button and scan the QR code. If it won't scan, copy the "Authenticator secret" from Sentry, choose to enter a setup key in the app and paste it in. Check the account name, then tap "Save".
- 4
Note the code
Authenticator App - Novaz now shows a code for Sentry. Use the code that's currently on screen.
Part 3: Confirm and finish
- 5
Enter the token and click Confirm
Back in Sentry, type the code into the "Authenticator token" field and click "Confirm".
- 6
Get your recovery codes
A modal appears with recovery options. Click "Get Recovery Codes", then copy, print or download them (the download is saved as sentry-recovery-codes.txt). Store them somewhere secure, away from your phone.
- 7
Know when Sentry will ask for a code
From now on, whenever you log in, Sentry asks for your password and a code from Authenticator App - Novaz.
If something goes wrong
- Sentry shows "Error adding Authenticator: App authenticator": the clocks on your devices aren't in sync. Make sure the clocks on your computer and iPhone are correct (set automatically, same time zone), then try again.
- You're changing phones: Sentry asks you to disable 2FA on your account before you enable it on the new device. Then repeat the steps above with Authenticator App - Novaz.
- Your organization removed you for not having 2FA: open the "Mandatory: Enable Two-Factor Authentication" email and click "Enable Two-Factor Authentication", then set up at least one method. Do this within three months to get your access and settings back. If you can't find the email, ask an Owner or Manager to resend your invite from "Organization Settings" > "Members".
Checked against Sentry's own help pages on September 25, 2026. Menu names can change, so these pages have the current path:
- How do I enable two-factor authentication (2FA) on my Sentry account? – Sentry Help Center ↗
- Why should I enable two-factor authentication? – Sentry Help Center ↗
- How do I recover my account if I lost my 2FA credentials? – Sentry Help Center ↗
- Why am I getting an error when adding an authenticator app? – Sentry Help Center ↗
- Two-Factor Authentication (2FA) – Sentry Docs ↗
How to recover your Sentry account
Sentry gives you recovery codes at setup, so if you lose or change your phone you still have a backup way in. To see them later, go to "Settings" > "Account" > "Security" and click "View Codes" next to Recovery Codes. "Regenerate Codes" creates a new set and invalidates all previous codes. If you've lost your phone and your codes, ask an Organization Owner to open "Organization Settings" > "Members" > your name and click "Reset two-factor authentication". If the organization requires 2FA, they must turn that off before they can reset yours. If you belong to more than one organization, contact Sentry's support team. If you're the Organization Owner, contact support from the email address you want reset, verify the last 4 digits and expiry date of the card on file, and CC two team members from the organization, ideally managers or admins. Sentry warns that support may not be able to restore access if you lose your authentication device or can't get to your recovery codes.
Frequently asked questions
- Which 2FA methods can I add to Sentry?
- "Authenticator App", for any app that supports TOTP, such as Authenticator App - Novaz, and "Passkey / Biometric / Security Key".
- Will Sentry ask for a code every time I log in?
- Yes. Once 2FA is enabled, every login needs your password and a code from your 2FA method.
- Can my organization require 2FA?
- Yes. An Owner who has 2FA on their own account can go to "Organization Settings" > "General Settings", toggle "Require Two-Factor Authentication" under Security & Privacy and click "Confirm". Members without 2FA are removed from the organization and sent an email to set it up. Require 2FA isn't available with single sign-on (SSO), so SSO organizations require it through their identity provider.
Generate your Sentry codes in Authenticator App - Novaz
Free, offline, and encrypted. One tap for every 6-digit code.
Get the appMore Developer guides
Novaz is not affiliated with, endorsed by, or sponsored by Sentry. Sentry and its logo are trademarks of their respective owner and are used here for identification only.



