Runa Labs logo

RUNA LABS

Home

Signing In & Two-Factor Authentication

Ways to sign in, and how to add a second layer of security.

Ways to Sign In

You can access Runa Labs two ways, and both reach the same account if they share an email address:

  • Sign in with Google: one-click OAuth — the fastest option.
  • Email + password: register with any email (including a Proton Mail address), verify it via the link we send, then sign in with your password. Use 'Forgot password?' on the gateway to reset it by email.

Two-Factor Authentication

Two-factor authentication (2FA) is optional but strongly recommended, especially since your account can hold encrypted exchange API keys. It works on top of either sign-in method above. Runa Labs uses standard time-based one-time passwords (TOTP), so it works with any authenticator app — including Proton Authenticator, Google Authenticator, Authy, and 1Password. You are not locked to any single vendor.

Enabling 2FA

  1. Go to the Accounts tab and find the Two-Factor Authentication panel.
  2. Click 'Enable 2FA'. A QR code and a manual setup key appear.
  3. In your authenticator app, add a new account and scan the QR code (or type the key by hand).
  4. Enter the 6-digit code your app shows and click 'Confirm & Enable'. 2FA is now active.

Your setup key is shown only during setup. If you switch phones later, disable and re-enable 2FA to generate a fresh key, or keep your authenticator app's own backup so you don't lose access.

Signing In With 2FA

Once enabled, after you sign in with Google you'll be asked for a 6-digit code once per browser session. Enter the current code from your authenticator app to unlock the terminal. Codes rotate every 30 seconds — if one is rejected, wait for the next and use the newest.

Disabling 2FA

In the same Accounts panel, enter a current code and click 'Disable 2FA'. Requiring a valid code to turn it off prevents anyone with a hijacked session from silently removing your protection.

The shared 2FA secret is encrypted at rest with the same key that protects your exchange API keys. Runa Labs never shows it again after setup.

Disclaimer: The content provided by Runa Labs is for informational and educational purposes only and does not constitute financial, investment, or trading advice. Runa Labs is not a registered financial advisor and does not hold any financial licenses. All trading and investment activities involve significant risk of loss. You are solely responsible for your own financial decisions. The Service is a technical execution dashboard for sophisticated, eligible traders. It is not available to U.S. persons or to residents of sanctioned or restricted jurisdictions — see the Terms of Service for the current list.