Before You Begin:
- Try a verification code first. Recovery codes are a last resort.
- Have the device with the authenticator app you used when you originally set up MFA — the app must already be installed, and your GrowthZone account must already be added to it.
- Recovery codes only help if you saved or printed the ten codes you were given during MFA setup.
- If you have neither, a co-worker who has MFA set up and access to GrowthZone Settings can reset your MFA for you.
Why is it asking me for this?
It means that you previously set up multi-factor authentication (MFA) for your account, and now you are simply being asked to verify that it is you.
This will be asked of you every 30 days if you are on a personal computer where you’ve selected “Trust this computer for 30 days.” If you are on a public (or new) computer, you will be required to do so every time — which ensures that it is YOU logging in.
YOU are the only one who will have the device where the authenticator app is installed and set up to provide the valid verification code — i.e., “something you have,” which is one factor in the multi-factor authentication process.
Step-by-Step Instructions
Option 1: Find your verification code
Start here. A verification code from your authenticator app is the normal way to clear the challenge.
- Open the authenticator app where you set up GrowthZone MFA.
Hint: Look on your phone or tablet for an app you’ve already installed that is referred to as an authenticator app, such as Google Authenticator or Microsoft Authenticator.
iPhone: Check your iPhone’s password manager — it supports verification codes in addition to passwords, so you may have added it there. Go to Settings > Passwords (for iOS 18, open the Passwords app), select the entry for GrowthZone, and tap the verification code.
Android: Android phones may also have their own password manager that supports verification codes. Check those apps to see if you set up GrowthZone MFA there. - In the app, locate the account name associated with GrowthZone.
Tip! The app must already be installed, and your account must already be set up in it, to get a valid code. Installing a new authenticator app from scratch will not help. Recall which app you used to originally set up MFA. - Enter the 6-digit code shown for your account name into the Authentication Challenge screen.
Tip! Codes refresh every 30 seconds or so. Make sure the code you enter has not expired — the app shows a countdown of how long the code remains valid. - Click Verify. The login process should continue successfully.
Option 2: Use a recovery code
Use a recovery code only if you have lost your device, don’t have it with you, or need to urgently bypass the verification code. You were given ten one-time-use recovery codes at setup, and they cannot be regenerated — so use them only if necessary.
- Locate the place where you stored or printed your recovery codes.
Tip! The default name of the file that may have been downloaded was “mfa recovery codes.” Searching for a file that contains that name might return results. - Enter one of the recovery codes into the Authentication Challenge screen and click Verify.
Please note: recovery codes are ten characters long and contain both letters and numbers. Enter the ten characters without dashes or spaces. - If the code is valid and has not been used previously, the login process will continue successfully.
Option 3: I can’t find a verification or recovery code
Final option — have your MFA reset so you can set it up again.
- Contact a co-worker and ask them to reset your MFA for you.
- If they have MFA set up themselves and have access to GrowthZone Settings, they can follow the steps here to immediately reset your MFA: Reset a user’s MFA
Your co-workers know you best, so having them reset your MFA ensures that a scammer isn't contacting GrowthZone to try to access your account.
If GrowthZone has to be contacted, several verification steps are required before a reset is possible, which may take longer than if a co-worker follows the simple reset steps.
Related Articles
Common Pitfalls
- Entering an expired code: verification codes refresh about every 30 seconds. If the countdown is nearly up, wait for the next code before typing it in.
- Installing a fresh authenticator app: a newly installed app has no record of your account and cannot generate a valid code. You must use the app where MFA was originally set up.
- Reusing a recovery code: each of the ten recovery codes can be used only once and cannot be regenerated. Save the unused ones somewhere you will find them.
- Typing a recovery code with dashes or spaces: enter all ten characters with no dashes or spaces.