Skip to main content

Secure your Account

Keep your Superform account safe and secure.

Updated yesterday

It’s important to properly secure your Superform account to protect against hacks and the potential loss of funds. Superform provides several built-in security features (like multi-factor authentication and passkeys) that you can enable to keep your account safe.

Multi-Factor Authentication (MFA)

Multi-Factor Authentication (MFA) adds an extra layer of security to your Superform account. You can require a second step of verification using an authenticator app such as Google Authenticator.

For best security, keep your authenticator app on a separate device or ensure your backup codes are safely stored in case you lose access.

How to set up MFA on Superform:

  1. Go to your Profile in the top right of the app and click Settings

2. Go to Security, where you will find MFA settings. Click Add.

3. Scan the QR code with your authenticator app

4. Enter the 6-digit code from the app to confirm setup

5. Save your backup codes and store them securely.

These codes let you regain access to your account if you lose your device or authenticator app. Keep them in a safe place, such as a password manager, an encrypted file, or an offline paper copy stored securely. Each code is one-time use only.

Passkeys

Passkeys are a modern, phishing-resistant way to log in without passwords. They work by using a secure credential stored on your device, in your cloud account (like iCloud or Google), or on a hardware key.

Types of passkeys:

  • Device Passkeys — stored on a single device (e.g. Face ID on iPhone)

  • Synced Passkeys — saved in your cloud account (iCloud Keychain, Google Password Manager) and usable across devices

  • Hardware Keys — external devices like YubiKey that hold passkeys for maximum protection

For best security and reliability, it’s recommended to set up a synced or hardware passkey so you don’t lose access if your primary device is lost or replaced.

How to step up a passkey on Superform:

  1. Go to Settings → Account → Add Passkey

  2. Select your passkey type (device, synced, hardware)

  3. Follow the login prompt from your browser or device

  4. Save your backup codes and store them securely

Export your Private Key

FOR EXPERIENCED USERS ONLY

Your private key is the secret code that controls your account. It’s the ultimate backup — if you ever lose access to your login credentials, you can import your private key to fully restore your account and funds (Import feature is coming at a later date). It's a universal recovery method but that also makes it a single point of failure. Only export your private key if you know what you're doing.

⚠️ DO NOT SHARE YOUR PRIVATE KEY WITH ANYONE. Anyone who has it has complete control over your account and can steal all of your funds.

How to export your private key:

  1. Ensure you are on a secure and private device

  2. Go to Settings → Security → View Private Key

  3. Read the warnings carefully and proceed only if you’re absolutely sure you want to reveal/export it

  4. When revealed, copy it and store it securely right away, for example in:

    • A paper backup kept in a safe

    • DO NOT store it digitally

Did this answer your question?