Since Signal Logins don't use a phone number, there's no traditional Registration Lock to protect your account so instead, Signal lets you add a second layer of security through authenticator apps (TOTP) and/or passkeys. You can set up one or both, and only one needs to be confirmed when you're recovering your account (so if you've added both, you're never locked out just because you're missing one).
Head to Signal Settings
.
Tap your avatar to view your Signal Login.
Add, view, and remove your second factors at any time. Signal supports up to 2 authenticator apps and 8 passkeys per account, with a combined maximum of 10 second factors total.
Once it's added, Signal will ask you to confirm a 6-digit code from the app to make sure everything's set up correctly if the code doesn't match, you'll just be asked to try again. From there, you can add additional authenticator apps or remove existing ones whenever you'd like.
To add a passkey, choose "Passkey" from your 2FA settings this will open your device or operating system's built-in passkey setup, letting you save it to a password manager, your OS-level passkey store, or a physical security key, whichever you prefer. You'll be asked to confirm the passkey to complete setup, and just like with authenticator apps, you can add multiple passkeys or remove ones you no longer use at any time.
Please note: Signal doesn't store any recovery codes for your second factors right now, and we can't see or restore your authenticator app or passkey setup on our end. This keeps your account genuinely tied to your devices, not something support can access or reset. So it's worth keeping a backup of your authenticator app (many apps offer their own encrypted cloud backup) and setting up a passkey alongside it if you can, just in case one method becomes unavailable.