TL;DR, my computer broke because I spilled water onto it. I got a new phone recently and my number was changed, so I couldn’t use that to log back in with 2-step verification, and I tried send it to my alternate email instead. It says I have to “wait 24 hours” but I never get the fucking verification email so apparently I have lost my email account and everything attached to it.

  • Skull giver@popplesburger.hilciferous.nl
    link
    fedilink
    English
    arrow-up
    4
    ·
    1 year ago

    When you set up 2FA, you were given a bunch of six digit access codes, with the advice to print them out and keep them at a safe place. Those codes will recover your account even if your backup email doesn’t work. You can enter any of those to get your account back. You should immediately change the phone number associated with your phone, because each of those codes can only be used once and account security settings may require a second confirmation code (so if you’ve burned your last backup code you’ll get stuck).

    The “up to 24 hours” rarely takes longer than a few minutes in my experience. It’s technically possible for the codes to arrive a day later (or even longer), but I’ve never had to wait more than 5-10 minutes for communication from Google.

    If you do get access to your account back, generate new codes and keep them safe in case this happens again!

    Also consider not using SMS for 2FA. It’s better than nothing, but criminals often steal phone numbers if they think you have cryptocurrency stored on an account linked to your email address. Things like Passkeys and offline one-time codes (“TOTP”) are a lot safer. Just make sure to store your backup 2FA codes safely!

  • tjhart85@kbin.social
    link
    fedilink
    arrow-up
    2
    ·
    edit-2
    1 year ago

    Too late for OP, but for everyone that can get into their accounts but doesn’t know what the backup codes are, go here, select ‘backup codes’ and then keep them in a safe place.

      • Awwab@kbin.social
        link
        fedilink
        arrow-up
        3
        arrow-down
        1
        ·
        1 year ago

        When you setup the account they gave you a document with a number of codes that you could print out and save for just a case like this.

        If you have tied a credit card to the account there is a chance you could use that to prove ownership and have support get you back in.

  • Double_A@discuss.tchncs.de
    link
    fedilink
    English
    arrow-up
    3
    arrow-down
    3
    ·
    1 year ago

    We really need some legislation for those cases. Your digital “life” also deserves some rights. You should have some way to legally appeal a permanent ban or other lock-outs. Similar to how a GDRP data request works.