
Flavor 2FA adds powerful two-factor authentication to your WordPress site without the complexity. No bloat, no confusing settings – just solid security that protects your site from unauthorized access.
For Users:
* Choose between authenticator app or email verification
* 10 recovery codes for emergency access
* “Trust this device” option to skip 2FA on personal devices
* Simple, clean verification screens
For Admins:
* Require 2FA for specific user roles
* Grace period for new users
* Force immediate 2FA setup on next login
* Lockout protection against brute force attacks
* Reset 2FA or unlock accounts with one click
* See 2FA status for all users at a glance
This plugin uses a third-party service to generate QR codes during the TOTP authenticator app setup process.
When a user chooses the “Authenticator App” method during 2FA setup, the plugin generates a QR code image via the QR Server API. This QR code contains the TOTP secret URI (which includes the site name, user email, and secret key) so the user can scan it with their authenticator app.