Open Security. The controls here protect access to your TraderLobby identity. We will look at three sign-in tools: a password, an authenticator app, and a passkey. They have different jobs. You do not need to change any of them just to follow the explanation. Start with Change Password. The form asks for the current password, the new password, and confirmation of the new password. Confirmation means entering the new value again so the app can check that the two entries agree. Apply submits the request. A successful result displays Password updated. If the form reports an error, read it and resolve that issue instead of assuming the change was saved. Choose a unique password that you do not use for other accounts. A password manager can help you create and keep it. Follow the requirements shown by the actual password flow; changing a password while signed in and resetting a forgotten password are different routes. If you cannot provide the current password, the forgotten-password route is the relevant one to inspect. Do not guess repeatedly in the change form. Next, find Multi-factor authentication and Authenticator app. Multi-factor authentication, often shortened to MFA, adds another check to the sign-in process. In this flow, an authenticator app generates a short code that changes over time. That code is separate from your password and separate from an email verification code. If setup is available and you intentionally choose to enable it later, Set up MFA begins the process. Add the displayed account to your authenticator by scanning its setup code, or use the setup-key option if scanning is not possible. Then enter the authenticator's current six-digit code in TraderLobby and choose Confirm and enable. Opening the setup screen alone does not complete enrollment. Look for Enabled and the successful completion message. Treat the setup image and setup key as private. They are not decorative pictures to share in a support post. After successful setup, the app displays recovery codes. Those deserve their own careful step, which we will cover on the next page. Do not disable MFA simply to repeat the demonstration. Finally, find Passkeys. When this feature is configured for the environment and supported by your device, Add a passkey starts a device sign-in setup. Your device may ask for its PIN, a biometric check, or a security key. Approve only the setup you intentionally started. Look for Passkey added and the updated list before considering it complete. If passkeys are unavailable, read the explanation and keep using the supported sign-in route. If a device prompt is canceled or fails, that is not proof a passkey was saved. Removing a listed passkey changes an access method, so keep another working method available before considering removal. Your check is to locate the password form, authenticator status, and passkey area. Explain what confirms each successful setup. You do not need to enter a password, scan a setup image, or remove any protection to complete this page.