Open Settings → Security. Pushctl asks you to confirm your password before showing sensitive security controls.
Change your password
Enter your current password, enter and confirm a new password, then select Save.
Two-factor authentication
Enable 2FA
Select Enable 2FA.
Scan the QR code
Add the account to a TOTP-compatible authenticator app.
Confirm the code
Enter the six-digit code to finish setup.
Save recovery codes
Store the recovery codes somewhere separate from your password and authenticator device.
When enabled, each password sign-in requires an authenticator code or one unused recovery code. You can view new recovery codes or disable 2FA from the same page.
Passkeys
Register a passkey to sign in without typing your password. Give each passkey a recognizable name so you can remove a lost or replaced authenticator later.
Register more than one passkey when possible, for example one on your laptop and one on your phone.