Skip to content
synthreo.ai

Setting Up MFA in ThreoAI

How to set up and manage multi-factor authentication (MFA) on your ThreoAI account - configure email or authenticator app verification to secure your login.

Multi-factor authentication (MFA), also called two-factor authentication (2FA), adds a second layer of security to your ThreoAI account. After entering your password during login, you are prompted to verify your identity with a one-time code before gaining access. This additional step helps protect your account even if your password is compromised, because an attacker would also need access to your email inbox or authenticator app to complete the login.

ThreoAI supports two MFA methods:

  • Email - A verification code is sent to your registered email address each time you log in. You enter this code on the login screen to complete authentication.
  • Authenticator App - A time-based one-time password (TOTP) is generated by an app on your phone, such as Google Authenticator, Microsoft Authenticator, or Authy. These codes refresh automatically every 30 seconds and do not require internet access on your phone.

Both methods provide strong account protection. Email MFA is simpler to set up because it requires no additional software, while authenticator app MFA is generally considered more secure and works even when you do not have access to your email.


MFA is configured during account setup after you accept your invitation email and set your password. You will be prompted to choose a method and complete enrollment before your first login to ThreoAI. This enrollment step is required and cannot be skipped.

  1. Select Email as your 2FA method on the enrollment screen.
  2. A verification code will be sent immediately to the email address associated with your ThreoAI account (the same email that received your invitation).
  3. Open your email inbox and locate the code. Enter it into the verification field on screen.
  4. Once the code is accepted, your Email MFA enrollment is complete. On all future logins, a new code will be emailed to you each time you enter your password.

Tip: Email verification codes are time-sensitive. If more than a few minutes have passed since the code was sent, it may have expired. Request a new code by restarting the login process if needed.

  1. Select App as your 2FA method on the enrollment screen.
  2. A QR code is displayed on screen. This QR code contains the unique secret key that links your ThreoAI account to your authenticator app.
  3. Open your authenticator app (Google Authenticator, Microsoft Authenticator, Authy, or any TOTP-compatible app) and scan the QR code using the app’s built-in camera or scanner feature.
  4. The app will begin displaying a 6-digit code that refreshes every 30 seconds. Enter the current 6-digit code shown in the app into the verification field on screen.
  5. Once the code is accepted, your Authenticator App MFA enrollment is complete. On all future logins, open the app and enter the current code when prompted after your password.

Tip: Authenticator app codes refresh every 30 seconds. If you enter a code and it is rejected, wait a few seconds for the next code to appear and try again. Do not reuse the same code after it has cycled.

The following authenticator apps are known to work with ThreoAI:

  • Google Authenticator (iOS and Android)
  • Microsoft Authenticator (iOS and Android)
  • Authy (iOS, Android, and desktop)
  • Any other app that supports the TOTP (Time-Based One-Time Password) standard

You can switch between Email and App MFA at any time from your Profile Settings. This is useful if you want to move from email verification to an authenticator app for added security, or if you need to switch back to email because you changed phones.

  1. Click your profile avatar in the top-right corner of ThreoAI and select Profile, or navigate directly to https://threo.synthreo.ai/#/profile.
  2. Locate the 2FA Method section near the top of the Profile page, above the tabs.
  3. Open the dropdown and select Email or App depending on which method you want to use going forward.
  4. If you are switching to App, a QR code will be displayed. Scan it with your authenticator app and enter the 6-digit code to confirm the link.
  5. If you are switching to Email, no additional verification is required during setup - you will simply receive a code via email on your next login.
  6. Click Save to apply the change.

Important: Changes to your MFA method take effect on your next login. Your current session is not affected. The next time you sign in, you will be prompted to verify using your newly selected method.


Once MFA is active on your account, every login to ThreoAI follows this process:

  1. Navigate to https://threo.synthreo.ai.
  2. Enter your email address and password, then click Sign In.
  3. A Confirmation code field appears on the login screen.
  4. Depending on your MFA method:
    • Email: Check your inbox for a new verification code and enter it.
    • App: Open your authenticator app and enter the current 6-digit code shown for ThreoAI.
  5. After entering the correct code, you are taken to the ThreoAI home screen.

If you enter an incorrect code, you can try again. There is no need to re-enter your password unless you navigate away from the login screen entirely.


  • Check your spam or junk folder. Verification emails from ThreoAI (sent by noreply@synthreo.ai) may occasionally be filtered by your email provider. Look in your spam, junk, or promotions folders.
  • Confirm your registered email address. Open your Profile Settings to verify the email address on file. If the address is incorrect, contact your ThreoAI administrator to update it.
  • Check for email delivery delays. Some corporate email systems may delay external messages. Wait a few minutes and check again before requesting a new code.
  • Whitelist the sender. Ask your IT team to add noreply@synthreo.ai to your organization’s email allow list to prevent future filtering.
  • Contact your ThreoAI administrator if you still cannot receive codes after trying the steps above. Your administrator can reset your MFA configuration or verify your account email.
  • Verify your phone’s clock is set to automatic/network time. Authenticator apps generate codes based on the current time. If your phone’s clock is even slightly off (manually set or drifting), the codes will not match what the server expects. Go to your phone’s Date & Time settings and enable “Set automatically” or “Use network-provided time.”
  • Wait for the code to refresh. Codes cycle every 30 seconds. If a code was close to expiring when you entered it, the server may have already moved to the next code. Wait for the next code and try again promptly.
  • Make sure you are reading the correct account entry. If you have multiple accounts configured in your authenticator app, confirm you are entering the code for your ThreoAI (Synthreo) entry and not another service.
  • Re-scan the QR code. If codes consistently fail, the secret key in your authenticator app may be out of sync. Go to Profile Settings, switch your 2FA method to App, scan the new QR code, and confirm with a fresh code.
  • Lost access to your authenticator app? If you have lost your phone, reset your phone, or uninstalled your authenticator app, you will not be able to generate codes. Contact your ThreoAI administrator to reset MFA on your account so you can re-enroll.

If you are unable to log in because MFA is blocking access and none of the steps above resolve the issue, contact your organization’s ThreoAI administrator. An administrator can:

  • Reset your MFA enrollment, allowing you to set up MFA again from scratch on your next login.
  • Verify or update your registered email address if email codes are going to the wrong address.
  • Confirm that your account is active and in good standing.

You can reach Synthreo support directly at help@synthreo.ai if your administrator is unavailable.


Can I use MFA on multiple devices? If you are using Email MFA, codes go to a single email address, so any device where you can check that email works. If you are using Authenticator App MFA, you can only scan the QR code into one app at a time. To use a new device, change your 2FA method in Profile Settings and re-scan the QR code on the new device.

Is MFA required for all users? MFA configuration is part of the initial account setup process. Your organization’s administrator determines the security policies for your ThreoAI environment.

How often will I be prompted for a code? You are prompted for an MFA code each time you log in to ThreoAI. If your session expires or you sign out, you will need to provide a new code on your next login.