Why 2FA is the most important security setting on Maclear: what it protects against

03.06.2026

2 Min.

Two-Factor Authentication (2FA) is an optional but strongly recommended security measure on Maclear. It adds a second verification step on top of your password — even if your credentials are compromised, an attacker cannot log in without the one-time code only you can generate or receive. According to the Microsoft Digital Defense Report 2025, phishing-resistant MFA blocks over 99% of identity-based attacks.

A password alone is not enough to protect a financial account. Passwords can be leaked, stolen, or compromised through phishing — and once an attacker has your credentials, they can log in without your knowledge. According to the Microsoft Digital Defense Report 2025, phishing-resistant MFA blocks over 99% of identity-based attacks — even when attackers already have a valid username and password. This makes 2FA the single most effective account protection measure available.

What happens if I do not set up 2FA on Maclear?

2FA is optional on Maclear — you can use the platform without it. However, accounts without 2FA are significantly more vulnerable to unauthorized access. If your password is compromised, there is no second layer of protection. Enabling 2FA is strongly recommended for all investors.

Which 2FA methods does Maclear support?

Maclear supports two methods: authenticator app and email verification. Only one method can be active at a time. For setup instructions, see Article 21.

Why is an authenticator app more secure than email 2FA?

An authenticator app generates time-based one-time passwords (TOTP) locally on your device — they are never transmitted over the internet and cannot be intercepted. Email-based codes travel through email servers and are vulnerable if your email account is compromised. For maximum security, Maclear recommends setting up 2FA via authenticator app.

Regulatory disclosure: Maclear AG, registered in Switzerland, member of PolyReg SRO, a self-regulatory organization supervised by FINMA.


Verwandte Artikel

How to close your Maclear investor account: what happens to active investments?

To close your Maclear account, email support@maclear.ch after withdrawing all available funds. Active investments keep running until repaid on schedule — to exit earlier, list them on the Secondary Market. Personal data is retained for at least 10 years under Swiss AML law before deletion, and closed accounts can be reactivated within that period.

How to change your password on Maclear

Change your Maclear password from Personal Settings while logged in, or reset it from the login page via "Forgot your password?" if you can't sign in. Passwords need Latin characters only, at least 8 characters in length, with one uppercase, one lowercase, one number, and one special character. A strength indicator confirms your choice during setup.

How to change your email address on Maclear

Changing your Maclear email is a support-handled action for security reasons. Email support@maclear.ch with a selfie holding your passport or national ID; after identity confirmation, your address is updated within 1–2 business days. KYC, POA, Form A, active investments, AutoInvest, and referral history all stay intact — nothing needs redoing.

Can I use both 2FA methods on Maclear at the same time?

Maclear supports only one active 2FA method at a time — either the authenticator app or email, not both. The system is built around a single-active-method architecture to keep the authentication flow unambiguous and recovery paths clear. To switch, email support@maclear.ch for a reset; identity confirmation typically takes 1–2 business days.