Authenticator App - Novaz

Atlassian Cloud 2FA Setup with an Authenticator App

id.atlassian.com SupportedChecked against official help · September 25, 2026

Your Atlassian account is how you log in to Atlassian cloud apps, so one leaked password could expose your team's work. Atlassian calls the feature two-step verification and supports verification codes from an authenticator app, so Authenticator App - Novaz can supply them.

A Atlassian Cloud account can expose source code, deploy keys, and infrastructure — prime targets for attackers. Besides an authenticator app, Atlassian Cloud also offers SMS text codes and security keys. An authenticator app (TOTP) is usually the best balance of security and convenience — and it's safer than SMS codes, which can be intercepted through SIM-swap attacks. For the strongest protection, Atlassian Cloud also supports hardware security keys.

2FA methods Atlassian Cloud supports

  • SMS text message
  • Authenticator app (TOTP)
  • Security key (U2F / WebAuthn)

Before you start

  • Your Atlassian account email address and password (setup asks for the password again)
  • If an organization manages your account and enforces SAML single sign-on, two-step verification is set up in your identity provider instead
  • Authenticator App - Novaz installed on your iPhone or iPad
  • A safe place to copy, print or record your emergency recovery key
  • An API token for any script that uses your password for basic authentication against Atlassian Cloud REST APIs, because that stops working once two-step verification is on

Part 1: Turn on 2FA in Atlassian Cloud

  1. 1

    Open Manage two-step verification

    Log in to your Atlassian account at id.atlassian.com/manage-profile/security and select "Manage two-step verification".

  2. 2

    Enter your password and select Set up

    Enter your password in the "Atlassian account password" field and select the "Set up" button. If two-step verification is already on, you'll see "Unlock settings" instead.

  3. 3

    Choose the authenticator app method

    Select the authenticator app as your verification method. If you're adding it to an existing setup, select "Enable authenticator app". Then follow the instructions on your screen and keep the page open.

Part 2: Add Atlassian Cloud to Authenticator App - Novaz

  1. 4

    Add Atlassian in Authenticator App - Novaz

    Open Authenticator App - Novaz and tap the + button. Scan the code Atlassian shows on screen, or choose to enter a setup key if Atlassian gives you one to type. Check the account name, then tap "Save".

Part 3: Confirm and finish

  1. 5

    Enter the verification code

    Back on Atlassian, enter the current code from Authenticator App - Novaz as a single string, for example 111000 rather than 111 000, and finish the on-screen steps.

  2. 6

    Record your emergency recovery key

    Copy, print or record the emergency recovery key Atlassian shows and keep it somewhere secure. It's how you get back in if you lose access to your authenticator app.

  3. 7

    Log in again on your other devices

    Atlassian keeps you logged in on your current device but may log you out of others. There, enter your email address and password, then the code from Authenticator App - Novaz.

  4. 8

    Save a way to recover your account

    If Atlassian Cloud offers backup or recovery codes, download them or write them down and store them somewhere safe. They are how you get back into your account if you ever lose your phone. If it doesn't, check how Atlassian Cloud recovers accounts before you need it.

If something goes wrong

  • Atlassian won't accept a code you know is right: type it without spaces, make sure you're reading the Atlassian entry in Authenticator App - Novaz, and check that your iPhone sets its date and time automatically (Settings > General > Date & Time).
  • You got a new phone or want to switch apps: disable two-step verification, then enable it again with Authenticator App - Novaz on the new phone. If your organization requires two-step verification, don't disable it: you won't be able to log in to turn it back on, so ask your admin.
  • A script or integration stopped logging in: passwords no longer work for REST API basic authentication, so switch it to an API token.

How to recover your Atlassian Cloud account

Atlassian gives you one emergency recovery key, not a list of backup codes. Enter your email address and password, and when asked for a verification code select "Use recovery key" (the troubleshooting page calls the link "Can't use your phone?"), then enter the key. Each key works once, so Atlassian gives you a new one to record. While you're still logged in, you can replace a lost key with "Create new emergency recovery key" under "Manage two-step verification". If you've lost the key and an organization manages your account, ask your organization admin. Otherwise, on the recovery key screen select "Can't find your recovery key?", then "Send recovery email". The first email, "Steps to recover your Atlassian account", has no link; 24 hours later a second email brings a one-time link, which expires after a short period, to disable two-step verification or enrol a new device. If no email arrives, contact Atlassian Support.

Frequently asked questions

Which two-step verification methods does Atlassian offer?
An authenticator app, a security key such as a YubiKey, and text (SMS) messages. SMS is only available as your first method, under "Limited security option". You can enable more than one method.
Can my organization make two-step verification mandatory?
Yes. An organization admin can require it for managed accounts through an authentication policy, and you'll then need to enable it using the steps above. If the organization enforces single sign-on, two-step verification happens in your identity provider instead.
Can I turn off just the authenticator app?
Yes, as long as another method is enabled. Under "Manage two-step verification", select "More actions" (•••) next to the method, then "Disable".

Generate your Atlassian Cloud codes in Authenticator App - Novaz

Free, offline, and encrypted. One tap for every 6-digit code.

Get the app

More Developer guides

Novaz is not affiliated with, endorsed by, or sponsored by Atlassian Cloud. Atlassian Cloud and its logo are trademarks of their respective owner and are used here for identification only.