Reference

Two Factor Setup on gg368

Activating two factor authentication on your gg368 account means every login requires a second check — your password plus a one-time code sent to your device.

OTP VerificationDevice AuthenticationLogin ProtectionAccount Lock Control
gg368 Two Factor Setup on gg368
gg368 How Two Factor Authentication Works Here

How Two Factor Authentication Works Here

Two factor setup on gg368 runs through your account security settings. Once logged in, head to Profile, then Security, and switch on the two factor option. You will be prompted to link an authenticator app — Google Authenticator works directly — or enable SMS-based OTP delivery to your registered mobile number. Every subsequent login asks for your password first, then a six-digit

code that refreshes every thirty seconds. If you switch phones, you disable the old device link before activating the new one. Players in Bekasi who use the mobile browser get the same setup path as desktop — the flow adapts to your screen without steps changing.

HELP WHILE SETTING UP

Support Paths for Two Factor Issues

Running into a problem mid-setup or locked out after switching devices? Our support team handles two factor issues directly — use the channel that suits your situation and we will walk you through the recovery steps.

Live Chat Support Reach our live chat from the Help icon in your account. For two factor lockouts, have your registered mobile number ready so we can verify your identity before resetting.
Email Account Help Send a two factor reset request to our support email with your account username and a screenshot of the error. We respond to account security cases as a priority queue.
In-App Recovery Flow If you still have access to your registered email, use the in-app recovery link on the login screen. It sends a single-use bypass code so you can re-enrol your authenticator.
HOW WE PROTECT YOU

Security Signals Behind Our 2FA System

Two factor authentication is one layer inside a wider account protection setup. Here is what sits behind it and why each part matters for your account safety on gg368.

Encrypted OTP Delivery

One-time codes are transmitted over encrypted channels. Even if your SMS is intercepted, the thirty-second expiry window makes a stale code useless before it can be replayed.

Device Session Binding

After two factor setup, new device logins always trigger a fresh authentication challenge. A session opened on your phone in Jakarta will not silently carry over to an unverified browser.

Authenticator App Compatibility

Google Authenticator and compatible TOTP apps work with our setup flow. Authenticator-based codes never travel over a network, removing the SMS interception risk entirely.

Account Recovery Verification

Disabling two factor requires identity confirmation — registered email plus a support-issued token. We do not allow 2FA removal through password alone, which blocks social-engineering attempts.

Two Factor Authentication Glossary

Quick definitions for the terms you will see during two factor setup and account security management on gg368.

What is TOTP?

TOTP stands for Time-based One-Time Password. It is a six-digit code generated by an authenticator app every thirty seconds, used as the second step in two factor login.

What is OTP in account security?

OTP means One-Time Password — a single-use code sent by SMS or generated by an app. It expires quickly and cannot be reused, making it a reliable second login factor.

What does 2FA mean?

2FA is short for two factor authentication. It combines something you know (your password) with something you have (a device or app code) to confirm your identity at login.

What is an authenticator app?

An authenticator app like Google Authenticator generates time-based codes offline. It does not need a mobile network signal, so it works even in low-coverage areas around Indonesia.

What is a recovery code?

A recovery code is a single-use backup code issued when you activate 2FA. Store it offline — it lets you regain account access if you lose the device running your authenticator.

What is session binding?

Session binding ties an authenticated login to a specific device or browser fingerprint. A new device attempting access triggers a fresh two factor challenge before the session is granted.

What You Are Asking About Two Factor Setup

These are the questions we see most often when account holders work through two factor setup for the first time or after changing devices.

Log in, go to Profile then Security, and toggle on two factor authentication. Choose SMS OTP or an authenticator app, complete the verification prompt, and the feature activates immediately for all future logins.

Yes. The security settings page works the same way on your phone browser as it does on desktop. The layout adjusts to your screen but every setup step — including QR code scanning for authenticator apps — is accessible.

Use your saved recovery code to log in, then go to Security settings to re-enrol your new device. If you do not have a recovery code, contact live chat with your registered details and we handle the reset manually.

Authenticator apps generate codes offline and are not vulnerable to SIM-swap attacks, making them the stronger option. SMS OTP is still a solid second factor if an authenticator app is not convenient for you.

Two factor authentication only applies at the login stage. Once you are inside your account, deposit flows through DANA, OVO, or GoPay follow the same steps as before — 2FA does not add extra steps to payment processing.

You can disable 2FA from the Security settings page, but the process requires your registered email confirmation plus a support-issued token. We do not allow removal by password alone to protect against unauthorised changes.
Reference

Two Factor Setup

Service availability depends on eligible regions and local law. Users should check local rules before opening an account.

Access may be available only where local law permits.