Reference

Two Factor Setup: Add a Second Lock to Your netplay88 Account

Two factor setup on netplay88 puts a second verification step between your login and anyone who isn't you. Once active, every sign-in requires both your password and a one-time code — so your wallet balance and account history stay yours, even if your password…

OTP VerificationAuthenticator App SupportAccount Lock ProtectionQuick Setup Steps
netplay88 Two Factor Setup: Add a Second Lock to Your netplay88 Account
HOW WE SECURE ACCOUNTS

Security Standards Behind netplay88 Two Factor Setup

We built two factor setup around the same verification logic we apply to large withdrawal requests — a second credential that cannot be replicated by someone who only knows your password. The setup process uses standard TOTP protocol, the same method behind widely-used authenticator apps, so the code you enter is valid for only 30 seconds and cannot be reused. Where local law in Indonesia permits, the feature is available to all account holders.

TOTP Protocol

Time-based one-time passwords expire every 30 seconds. Even if a code is intercepted, it cannot be reused — each login window requires a fresh code from your device.

No Password-Only Access

Once two factor setup is active, your password alone cannot open the account. Both factors must be present, reducing the risk from phishing or credential reuse.

Wallet-Backed Identity Check

Account recovery requests related to two factor setup are cross-checked against your registered e-wallet — DANA, OVO, or GoPay — before any security change is approved.

Device Session Tracking

We log the devices that complete a successful two factor login. Unfamiliar device sessions are flagged, and you can review or end active sessions from Account Settings.

netplay88 How Two Factor Setup Works on Your Account

How Two Factor Setup Works on Your Account

Two factor setup works by pairing your password with a second credential — a time-sensitive one-time code generated by an authenticator app or sent directly to your registered mobile number. To activate it, head to Account Settings, select Security, then tap Enable Two Factor. From there, scan the QR code with your authenticator app or confirm your phone number to receive SMS

codes. Once the code is verified, the setting saves and every future login will ask for both. Players in Bandung accessing via mobile will notice the prompt appears immediately after the password field, keeping the flow short and the account locked down.

HELP WHILE SETTING UP

Account Support During Two Factor Setup

If you run into a step that doesn't go through as expected during two factor setup, our account support team is ready to walk you through it. Reach us through live chat, the in-app help button, or email — and have your registered wallet (DANA, OVO, or GoPay) on hand for identity verification before we make any changes to your security settings.

Live Chat Support Connect with our account team through live chat if two factor setup stalls at the QR scan step or the SMS code doesn't arrive on your registered number.
Email Verification Help Email our support team with your account ID if you are locked out after enabling two factor setup. Wallet verification via DANA, OVO, or GoPay helps confirm your identity quickly.
In-App Account Help Use the in-app help shortcut inside Account Settings to raise a two factor setup issue without leaving the page — the team receives your account context automatically.

Two Factor Setup: Key Terms Explained

These are the terms you'll come across when activating or managing two factor setup on your account — explained plainly so the process makes sense at every step.

What is TOTP?

TOTP stands for Time-Based One-Time Password. It is a short code generated by an authenticator app that changes every 30 seconds and is used as your second login credential.

What does 'authenticator app' mean?

An authenticator app is a phone application — such as Google Authenticator or Authy — that generates the timed codes used in two factor setup without needing a mobile signal.

What is a QR code in this context?

A QR code in two factor setup is a scannable image shown in Account Settings. Your authenticator app scans it once to link your account and start generating login codes.

What does 'recovery code' mean?

A recovery code is a one-use backup code issued when you activate two factor setup. Save it securely — it lets you access your account if you lose your authenticator device.

What is a 'device session'?

A device session is an active login instance on a specific phone or computer. Two factor setup logs these so you can see where your account is currently signed in.

What does 'second factor' mean?

The second factor is any credential beyond your password — typically a timed code from an app or an SMS code sent to your phone — used to confirm your identity at login.

Frequently Asked Questions About Two Factor Setup

Here are the questions we hear most from account holders working through two factor setup for the first time — and from those who need to update or recover it later.

Open Account Settings, go to Security, and select Enable Two Factor. Scan the QR code with your authenticator app or enter your phone number for SMS codes, then confirm with the first generated code to complete activation.

Yes. During two factor setup, choose the SMS option and enter the mobile number linked to your account. A verification code will be sent each time you log in, as long as your number is current.

Use the recovery code you saved when you first activated two factor setup. If that is not available, contact our support team with your registered e-wallet — DANA, OVO, or GoPay — ready for identity verification.

Two factor setup applies to account login only. Deposits via DANA, OVO, and GoPay and withdrawal requests follow their own verification steps and are not blocked by the two factor login process.

Yes. Go to Account Settings, select Security, and choose Disable Two Factor. You will need to enter a valid code from your authenticator app or SMS to confirm before the setting is turned off.

Codes expire every 30 seconds, so a brief time-sync gap between your device clock and our server is the most common cause. Check that your phone's time is set to automatic, then try with the next fresh code.