Secure your account
Protect your Blond access with a passkey, two-factor authentication and external login services.
You can find the security settings in the user menu at the bottom of the sidebar under Security, or directly at https://app.blond.swiss/user/security.
On the dashboard, the Security level card shows where you stand:
| Security level | What you have | Recommendation |
|---|---|---|
| Basic | only a password | Minimum requirement — we recommend more |
| Good | 2FA or a login service (Google/Apple) | Solid protection |
| Strong | a passkey | Best protection and fastest sign-in |
Passkeys
With a passkey, you sign in without a password — using your fingerprint, face or device PIN. It's faster and resistant to phishing.
Add a passkey
- In the Passkeys section, click Add passkey.
- Confirm your current password in the dialog that follows.
- Follow the prompt from your browser or device (Touch ID, Face ID, Windows Hello or a security key).
- Give the passkey a name you'll recognize later, e.g. MacBook Touch ID or iPhone Face ID.
The passkey then appears in the list with the device it uses and when it was last used.
Note
You can register several passkeys — typically one per device. That way you stay signed in even if you lose or replace a device.
Remove a passkey
Click Remove passkey next to a passkey and confirm in the dialog. Once removed, you can no longer sign in with the passkey from that device.
Two-factor authentication (2FA)
Two-factor authentication requires a six-digit code from an authenticator app in addition to your password when signing in. Even if your password is compromised, your account stays protected.
Set up 2FA
- In the Two-factor authentication (2FA) section, click Set up two-factor authentication.
- Confirm your current password.
- Install a TOTP app on your phone, e.g. Google Authenticator, Microsoft Authenticator or 1Password.
- Scan the displayed QR code with the app.
- Enter the six-digit code from the app and finish the setup.
After a successful setup, the section shows the Active status and you receive a list of backup codes.
Backup codes
Backup codes are one-time codes you can use to sign in when you no longer have access to your authenticator app — for example after losing your phone.
Copy codes: Click Copy to copy all codes to your clipboard. Store them somewhere safe, like a password manager.
Regenerate codes: Click Regenerate if you've lost your codes or used them up. The previous codes become invalid.
Warning
Each backup code only works once. Store the codes somewhere other than your phone — otherwise losing your device also means losing the codes.
Lost your phone — what now?
Sign in with your password and one of your backup codes. Go to Security, open the Two-factor authentication section, disable it and set it up again on your new device. Then regenerate backup codes — the old ones are invalid after disabling 2FA anyway.
Disable 2FA
In the Two-factor authentication (2FA) section, click Disable and confirm in the dialog. You'll need to enter your password first. Disabling 2FA also invalidates all existing backup codes.
Login services
You can link your Blond account with Google or Apple and sign in without a password.
Connect a service: Click Connect with Google or Connect with Apple and follow the sign-in with the provider. Connected services are marked Active in the list.
Disconnect a service: Click Disconnect service next to a connected service.
TIP
Linking counts as an additional sign-in method. We recommend it as a supplement — not as a replacement for a passkey or two-factor authentication.
Password confirmation
Note
For security-sensitive actions — adding or removing a passkey, enabling or disabling 2FA, regenerating backup codes — we ask for your current password. Within a short window you don't need to re-enter it. This way no one with access to an open session can change your security settings.