Free tools Windows power users keep installed
One-click scans. No signup required.
Google Authenticator can work completely offline because it generates one-time codes using time-based algorithms (TOTP). The app does not need a network connection to compute a valid code—what it needs is the same shared secret and a correctly set device clock.
“Without sync” usually means you’re not relying on account/device syncing across phones. Google Authenticator stores your tokens locally and you control whether you can transfer them to another device. If you plan ahead (time settings, backup codes, and transfer/export options), you can use it reliably even when you never have connectivity.
This guide covers offline use on the same phone, how to set up accounts so they work without sync, and what to do when codes stop working.
How Google Authenticator works offline (TOTP and why sync isn’t required)
Most Google Authenticator entries use TOTP (Time-based One-Time Password). Your authenticator and the service each share a secret key. Every ~30 seconds, both sides compute a new code from that secret and the current time.
#1 Best Overall
- POWERFUL SECURITY KEY: The YubiKey 5C NFC is the most versatile physical passkey, protecting your digital life from phishing attacks. It ensures only you can access your accounts
- WORKS WITH 1000+ ACCOUNTS: Compatible with popular accounts like Google, Microsoft, and Apple. A single YubiKey 5C NFC secures 100+ of your favorite accounts, including email, password managers, and more
- FAST & CONVENIENT LOGIN: Plug in your YubiKey 5C NFC via USB and tap it, or tap it against your phone (NFC), to authenticate. No batteries, no internet connection, and no extra fees required
- MOST SECURE PASSKEY: Supports FIDO2/WebAuthn, FIDO U2F, Yubico OTP, OATH-TOTP/HOTP, Smart card (PIV), and OpenPGP. That means it’s versatile, working almost anywhere you need it
- PRIMARY & SPARE KEYS: Just like having a spare house key, we recommend buying two YubiKeys - one for daily use and one as a spare. That way you’ll never get locked out of your accounts
Because the computation happens locally, a data connection isn’t required. What is required is that your phone time is reasonably accurate and that the authenticator entry matches the service’s secret.
Prerequisites before you go offline
Before you rely on offline codes, confirm these items are in place.
1) Have already added the accounts on the phone you’ll use
You can’t generate valid codes for accounts you haven’t enrolled. Enrollment happens when you scan a QR code or enter a setup key.
2) Ensure your phone time is set automatically
If your clock is off by minutes, codes can fail even with a strong signal. Accurate time is the main offline requirement.
Quick wins for a faster PC:
Scan for outdated or missing drivers - takes under a minuteDriver Scan →Repair Windows errors before they cause bigger problemsFix Now →3) Store backup codes from each service (if offered)
Many services (Google, Microsoft, GitHub, WordPress-hosted setups, etc.) provide one-time backup codes for account recovery. Save them offline (print or secure storage).
Use Google Authenticator offline on the same phone
Once accounts are enrolled, offline usage is straightforward.
Keep your phone’s time accurate (the #1 offline requirement)
On both iPhone and Android, enable automatic time/date so the device stays aligned with network time whenever it has ever connected.
Rank #2
- POWERFUL SECURITY KEY: The Security Key C NFC is the essential physical passkey for protecting your digital life from phishing attacks. It ensures only you can access your accounts.
- WORKS WITH 1000+ ACCOUNTS: Compatible with Google, Microsoft, and Apple. A single Security Key C NFC secures 100 of your favorite accounts, including email, password managers, and more.
- FAST & CONVENIENT LOGIN: Plug in your Security Key C NFC via USB-C and tap it, or tap it against your phone (NFC) to authenticate. No batteries, no internet connection, and no extra fees required.
- TRUSTED PASSKEY TECHNOLOGY: Uses the latest passkey standards (FIDO2/WebAuthn & FIDO U2F) but does not support One-Time Passwords. For complex needs, check out the YubiKey 5 Series.
- BUILT TO LAST: Made from tough, waterproof, and crush-resistant materials. Manufactured in Sweden and programmed in the USA with the highest security standards.
- iPhone (iOS): Settings → General → Date & Time → set Set Automatically to ON.
- Android: Settings → System → Date & time → enable Automatic date & time and Automatic time zone.
If you travel, time zone updates matter. Automatic time zone helps prevent “it used to work, now it doesn’t.”
Do these 3 things before closing this tab:
1Repair Windows errors before they cause bigger problems2Scan for outdated or missing drivers - takes under a minute3Clear out junk files and repair common Windows errorsHow to generate codes when you have zero signal
With no Wi‑Fi and no cellular data:
- Open Google Authenticator.
- Find the account name (e.g., your email provider or “GitHub”).
- Copy the currently displayed 6-digit code (or the number of digits shown for that entry).
- Paste it into the service’s 2FA prompt before the timer expires.
If you see a countdown ring/timer, wait until it refreshes if your entry is near expiration and you’re entering slowly.
Set up accounts so they work without sync
To avoid depending on sync, you need your enrollment stored on the phone that will be offline, plus a recovery plan for when that phone changes or fails.
Use a QR code or setup key while you still have access
Most services let you add an authenticator app via a QR code. When your phone has camera access, scan the QR and confirm the test code the service displays.
When asked, choose the option for Authenticator app (often described as TOTP). Avoid recovery methods that require SMS if you expect no cellular coverage later.
What’s actually slowing this PC down?
Pick the symptom - the matching free tool is one click away.
Save backup codes from the service (where available)
Backup codes are your safety net when you can’t access the authenticator entry. Store them offline (password vault download, printed copy, or secure offline storage).
Good practice: keep backup codes separate from the phone so a lost device doesn’t automatically remove your recovery path.
Rank #3
- POWERFUL SECURITY KEY: The YubiKey 5 NFC is the most versatile physical passkey, protecting your digital life from phishing attacks. It ensures only you can access your accounts
- WORKS WITH 1000+ ACCOUNTS: Compatible with popular accounts like Google, Microsoft, and Apple. A single YubiKey 5 NFC secures 100+ of your favorite accounts, including email, password managers, and more
- FAST & CONVENIENT LOGIN: Plug in your YubiKey 5 NFC via USB and tap it, or tap it against your phone (NFC), to authenticate. No batteries, no internet connection, and no extra fees required
- MOST SECURE PASSKEY: Supports FIDO2/WebAuthn, FIDO U2F, Yubico OTP, OATH-TOTP/HOTP, Smart card (PIV), and OpenPGP. That means it’s versatile, working almost anywhere you need it
- PRIMARY & SPARE KEYS: Just like having a spare house key, we recommend buying two YubiKeys - one for daily use and one as a spare. That way you’ll never get locked out of your accounts
Move Google Authenticator to a new phone without relying on sync
Google Authenticator’s “no sync” story is mostly about token transfer rather than cloud synchronization. If you replace a device, you have to move accounts using the app’s transfer features or rely on service backup codes.
Android to Android and iPhone to iPhone using Transfer accounts
Google Authenticator includes a transfer flow that uses a QR-like exchange between devices. Internet isn’t the goal here—the goal is pairing phones and copying the entries.
- On the new phone, install Google Authenticator from the app store.
- On the old phone, open Google Authenticator.
- Go to Settings (gear icon) → look for Transfer accounts.
- Follow the on-screen instructions to generate a transfer code/scan target.
- On the new phone, choose the matching option to start receiving.
- Confirm each account transfer when prompted.
If the transfer screen references time windows or requires confirmation codes, do the transfer while both phones are awake and nearby.
Android to iPhone or iPhone to Android: what to expect
Cross-platform transfer depends on whether the transfer feature is available for the specific versions of the app and OS at the time of your move. If the transfer option isn’t available across platforms on your devices, treat it as “no sync” and switch to recovery methods.
Fallback plan:
- Use the service’s backup codes to regain access.
- Re-enroll the accounts on the new phone using QR/scanning setup.
- Optionally repeat for each 2FA-enabled service (email, GitHub, banking, etc.).
When “offline” works but codes fail: troubleshooting checklist
Most “offline” failures are actually time mismatch, wrong entry, or the service not using TOTP.
Fix time drift and recheck settings
Start here every time.
- Confirm Set Automatically (iPhone) or Automatic date & time (Android) is ON.
- Restart the phone if you recently changed time settings.
- Open Google Authenticator and pick the newest code (don’t use one that’s about to expire).
- Try entering the code quickly and watch the service’s error message behavior (some allow a small time drift window).
If your environment blocks time updates for long periods (airplane mode for days with a drifting clock), you may need to return to automatic time syncing whenever possible.
Verify you didn’t copy the wrong entry or key
When you add accounts manually, it’s easy to mix up issuer names. Confirm:
Rank #4
- POWERFUL SECURITY KEY: The Security Key NFC is the essential physical passkey for protecting your digital life from phishing attacks. It ensures only you can access your accounts.
- WORKS WITH 1000+ ACCOUNTS: Compatible with Google, Microsoft, and Apple. A single Security Key NFC secures 100 of your favorite accounts, including email, password managers, and more.
- FAST & CONVENIENT LOGIN: Plug in your Security Key NFC via USB-A and tap it, or tap it against your phone (NFC) to authenticate. No batteries, no internet connection, and no extra fees required.
- TRUSTED PASSKEY TECHNOLOGY: Uses the latest passkey standards (FIDO2/WebAuthn & FIDO U2F) but does not support One-Time Passwords. For complex needs, check out the YubiKey 5 Series.
- BUILT TO LAST: Made from tough, waterproof, and crush-resistant materials. Manufactured in Sweden and programmed in the USA with the highest security standards.
- The entry name matches what you expect (e.g., the exact account label).
- You didn’t scan the wrong QR code.
- Digits count matches what the service expects (often 6).
If you suspect a mismatch, delete and re-add that entry from the service’s 2FA settings.
Confirm the service is expecting TOTP (not HOTP or something else)
Some systems use different formats. Google Authenticator supports common TOTP flows, but if a service is configured for a different method (or if you selected the wrong setup option), codes won’t validate.
Re-check the service’s 2FA method choice. The correct one usually says something like Authenticator app (TOTP) or Time-based code.
Recommended Free Tools
After reinstall, recover accounts the right way
Reinstalling can remove locally stored tokens if you don’t have an available transfer method or backup. Best recovery order:
- Use the service’s backup codes to sign in.
- Open each service’s 2FA settings and re-enroll using a QR code on your offline-ready new phone.
- If available, repeat the Transfer accounts flow from a still-working old device.
Keep in mind: if you deleted the app and you no longer have the old device (or you didn’t transfer beforehand), you’re typically forced to re-enroll via backup codes.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Alternatives if you truly need no-touch recovery across devices
If your threat model includes device loss plus long-term offline use, relying only on a single authenticator device can be risky. Some users switch to workflows that create recoverable backups.
Use backup codes first, then consider another authenticator with backups
Some authenticators support encrypted backups (varies by product). The goal isn’t “more apps”—it’s creating a recovery path that doesn’t require the original phone to still be working.
Crashes, No Sound, or Screen Glitches?
Random freezes, missing sound and display glitches usually trace back to one bad driver. Find and replace yours safely.Free scan · under a minutePC Slower Than It Used to Be?
A free scan shows the junk files, broken settings and background clutter dragging Windows down - then fixes them in one click.Free scan · Windows 10 & 11Best Value
- POWERFUL SECURITY KEY: The YubiKey 5C Nano is the most versatile physical passkey, protecting your digital life from phishing attacks. It ensures only you can access your accounts
- WORKS WITH 1000+ ACCOUNTS: Compatible with popular accounts like Google, Microsoft, and Apple. A single YubiKey 5C Nano secures 100+ of your favorite accounts, including email, password managers, and more
- FAST & CONVENIENT LOGIN: The YubiKey 5C Nano is designed to stay plugged into your device via USB-C. Simply tap it to authenticate. No batteries, no internet connection, and no extra fees required
- MOST SECURE PASSKEY: Supports FIDO2/WebAuthn, FIDO U2F, Yubico OTP, OATH-TOTP/HOTP, Smart card (PIV), and OpenPGP. That means it’s versatile, working almost anywhere you need it
- PRIMARY & SPARE KEYS: Just like having a spare house key, we recommend buying two YubiKeys - one for daily use and one as a spare. That way you’ll never get locked out of your accounts
Before switching, test with one low-risk account and confirm the codes work after a device restore.
Use password managers that store TOTP (where supported)
Many password managers can store TOTP secrets and generate codes. This can help when you manage multiple accounts and want a recovery story aligned with the password manager’s backup system.
Tradeoff: you’re now depending on the password manager’s availability and backup/recovery design, not only Google Authenticator.
Common mistakes that break offline codes
- Turning off automatic time sync and then traveling or losing network time updates for days.
- Assuming “offline” means “I can create new tokens for accounts I haven’t added.” You can’t.
- Relying on SMS-based 2FA for accounts you’ll need while offline.
- Replacing a phone without doing transfer or saving backup codes. That’s how lockouts happen.
- Entering codes too late when the 30-second window ends.
FAQs
Can I use Google Authenticator with airplane mode on?
Yes. Once the account is already added, Google Authenticator generates TOTP codes locally. Airplane mode affects signal, not code generation.
The Tool Desk
Outbyte Driver Updater FREEScan for outdated or missing drivers - takes under a minuteDriver Scan →Outbyte PC Repair FREERepair Windows errors before they cause bigger problemsFix Now →Why do my offline codes fail even though they used to work?
The most common causes are phone time drift (automatic time off or clock skew), wrong entry/QR scan, or the service expecting a different 2FA method than TOTP.
Does Google Authenticator sync my codes to a new phone automatically?
Generally, no. Google Authenticator is not “cloud synced” in the way many people expect. You typically need to use Transfer accounts (when supported) or recover via the service’s backup codes and re-enroll.
What if I lost my phone and don’t have backup codes?
Your options depend on the services involved. Many accounts require backup codes, account recovery email/phone, or additional identity checks. For any account still accessible, sign in using recovery methods, then re-enroll authenticator app 2FA on a new device.
How many digits are codes in Google Authenticator?
Most TOTP implementations use 6-digit codes. Some systems may use a different length, but the app shows the expected code format for each entry.
Bottom Line
Google Authenticator works offline because TOTP codes are generated locally from shared secrets and the current time. If you keep your device clock accurate and you’ve enrolled accounts before going offline, you don’t need network sync to use it.
For a true “offline or without sync” plan, pair the app with backup codes and use transfer features when you change phones. That combination is what prevents lockouts when signal is gone or devices change.
Quick Recap
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.




