Docs menu

Get started

Sign in and two-factor

Every MoorNest account signs in with a password and a code from an authenticator app. Two-factor sign-in is required for every account and cannot be switched off. This page covers your first sign-in, everyday sign-in, and what to do when you lose your authenticator.

Sign in

  1. Open https://app.moornest.com/.
  2. Enter your Username and Password, then click Continue.
  3. If your username and password match accounts in more than one workspace, pick one under Choose your workspace and click Continue. Each workspace asks for its own authenticator code.
  4. Enter the 6-digit Authenticator code from your app and click Verify and sign in.

You have five minutes to finish signing in after you enter your password. If the time runs out, click Back to sign in and start again.

A session lasts at most 8 hours. After that you sign in again.

First sign-in: set up your authenticator app

The first time you sign in, MoorNest asks you to add an authenticator before you can open your workspace.

  1. Sign in with your username and password as above.
  2. MoorNest shows an Authenticator setup key. There is no QR code: in your authenticator app, add an account by typing the key.
  3. Choose time-based, 6 digits and a 30-second interval.
  4. Enter the code your app shows and click Verify and sign in.

Keep the setup key private. Anyone who has it can make your codes.

Trust a browser for 30 days

On the code screen, tick Don't ask again on this device for 30 days before you click Verify and sign in. For the next 30 days, signing in from that browser skips the code.

  • The browser still needs your password every time.
  • Sensitive actions in the console still ask for a fresh code (see below).
  • Changing your password, your authenticator or your access forgets every browser you trusted.

Only trust a browser on a computer you control.

Fresh codes for sensitive actions

Some actions ask you to confirm with a fresh code from your authenticator app, and some also ask for your password, even though you are already signed in. A sheet opens with Your password and Code from your authenticator app. These include:

  • creating an install code, removing a server and updating agents;
  • allowing or stopping restores to a server, and starting a restore;
  • approving a site gateway and connecting storage;
  • changing email settings, inviting people and changing someone's access.

Each code works once. If you just used a code to sign in or for another action, wait for the next one. After too many wrong attempts, wait a minute and try again.

Use more than one workspace

A browser profile has one workspace open at a time. To switch, use Sign out in the account menu (top right), then sign in again and pick the other workspace. To keep two workspaces open at once, use a separate browser profile for each.

Change your password

  1. Open the account menu (top right) and choose Sign-in and security, or go to Settings > Sign-in and security.
  2. Click Change password and enter the new password twice. It must be at least 16 characters.
  3. Confirm with your current password.

Changing your password signs you out everywhere and stops jobs your account started. Sign in again with the new password.

There is no automated password recovery. If you forget your password, ask an administrator of your workspace, or email us at admin@devsmooth.com.

Lost authenticator

If you lose the phone or app that holds your codes, you cannot sign in until your authenticator is reset. There is no password-only reset. Instead:

  1. Contact another administrator in your workspace through a channel they trust, so they can check it really is you.
  2. They go to Settings > Sign-in and security, find Lost authenticator and click Request a reset. They choose your account and describe how they checked it is you.
  3. Two other administrators who are set up as reset approvers each check it is you and click Approve, with their own password and a fresh code. The request must be approved within 15 minutes.
  4. After the second approval your authenticator is cleared. Your password does not change. Sign in with your password and set up a new authenticator.

Last updated 4 October 2026.

Look