How to enable 2FA on Google Fi
- Sign in to your Google Fi account.
- Open Account settings → Security (the exact path varies; see the official docs link above).
- Choose your preferred method from the list — TOTP and hardware keys are the recommended options.
- For TOTP: scan the QR code with Kaito or your authenticator app of choice. Verify the first 6-digit code before saving.
- For hardware keys: insert your key when prompted and tap to enroll. Register at least two keys per account so loss of one doesn't lock you out.
- Save the recovery codes somewhere safe — they're your last resort if you lose your authenticator and your hardware keys.
Recovery
https://support.google.com/accounts/answer/185834
Sharing Google Fi 2FA with a team (with Kaito)
Kaito gives you a vault for shared TOTP and a real-time inbox for shared SMS, with per-token group permissions and an audit log on every code view. To share Google Fi access with your team:
- In Kaito, go to Tokens → New and add the Google Fi 2FA seed (or scan the QR).
- Permission the token to a group:
code-onlyfor most teammates,full-seedonly for the admins who would handle rotation. - Stream the audit log to your SIEM if you want a complete record of which team members generated codes for Google Fi and when.
Note: Google Fi's terms on account sharing are unclear or grey-area. Many teams share access in practice; doing so via Kaito gives you a clean audit trail if it ever becomes a question.
Frequently asked questions
Does Google Fi support 2FA?
Yes. Google Fi supports 2FA via SMS, TOTP, Custom app, Hardware key.
What is the most secure 2FA method for Google Fi?
A hardware security key (FIDO2 / WebAuthn) is the most phishing-resistant option Google Fi supports. Use TOTP as a fallback.
Can I share Google Fi 2FA with my team?
Google Fi's terms on account sharing are grey-area. Many teams share access in practice; using Kaito gives you a clean audit trail if it ever becomes a question.
How long does it take to enroll Google Fi 2FA in Kaito?
Under two minutes. Open the Google Fi security settings, scan the QR code with Kaito's add-token flow, and verify the first generated code matches.