Passwords get stolen — through phishing, reused-credential leaks, or a snooped browser. The classic fix is a second factor: something you have, in addition to something you know. ChargePeer now supports TOTP two-factor authentication, the same open standard used by Google, GitHub, and your bank.
Once you enable it, signing in becomes a clean two-step flow: enter your email and password, then enter the fresh 6-digit code from your authenticator app. No code, no session. Even if someone has your password, they cannot get in without your phone.
No new app to install. ChargePeer 2FA works with Google Authenticator, Authy, 1Password, Bitwarden, Microsoft Authenticator, and any other standard TOTP app. Turning it on is a one-minute job from Settings → Two-Factor Authentication: generate your unique secret, add it to your authenticator (manual secret entry works too), and confirm with the code it shows.
You can copy the secret key if you ever need to re-add it to a new device, and disabling is just as easy — but we ask for a fresh code before we turn it off, so a stolen session cannot strip your protection. Challenges expire after five minutes and lock out after five wrong attempts.
ChargePeer is a peer-to-peer energy marketplace: your account holds real balances, charger access codes, and booking history. Two-factor authentication is the single highest-impact step anyone can take to lock those down — and now every user can enable it in under a minute.