Generator/Setup guides/X

X setup key, and the code it expects

X buries the text key behind “Can’t scan the QR code?” and issues one single-use backup code you cannot regenerate easily.

Service x.comAlgorithm SHA-1Step 30sDigits 6
or drop an image here

Advanced
Digits
Period
Algorithm
Waiting for a keypaste one above to start27

——————

Where X hides the key

  1. Settings → Security and account accessSecurityTwo-factor authentication.
  2. Tick Authentication app, confirm your password.
  3. On the QR screen, choose “Can’t scan the QR code?” to reveal the Base32 key.
  4. Paste it above and confirm with the six digits.

One backup codeX issues a single backup code rather than a list. Store it somewhere you will still have if the phone is gone.

Parameters X issues

AlgorithmSHA-1, the RFC 6238 default.
Period30 seconds
Digits6
URI formatotpauth://totp/X:you@x.com?secret=…&issuer=X. Paste the whole URI above and the label fills itself in.

If the key is gone

  1. Backup code, then re-enroll and generate a fresh one.
  2. Neither. X account recovery is slow and frequently ends without access restored.

Questions

Can I keep SMS 2FA as a fallback on X?
SMS two-factor is limited to paid accounts, and it is the weakest option regardless. An authenticator plus a stored backup code is the stronger pair.

Related