Set up Two-Step Authentication for Shopify with an Authenticator App

Setting up TOTP for Shopify with an Authenticator App

Two-step authentication (or two-factor authentication) provides an extra layer of security for your Shopify account. You will need to install an authenticator app on a mobile device (iOS, Android, or Windows) to complete the setup process.


Before You Begin

Install an Authenticator App

You must first download and set up a mobile authenticator app that can scan QR codes and retrieve authentication data.

  • Recommended Authenticator Apps:

    • Google Authenticator (Android/iPhone)

    • Duo Mobile (Android/iPhone)

    • Amazon AWS MFA

    • Authenticator (Windows/Android/iPhone)

Note: Shopify Support cannot help you install these third-party apps. Please follow the app's instructions carefully.


Activate an Authenticator App in Shopify

  1. From your Shopify admin dashboard, click your store name in the top bar.

  2. Click your profile, and then click Security.

  3. In the Two-step authentication section, click Turn on two-step.

  4. Enter your password, and then click Next.

  5. From the Authentication method list, select Authenticator app.

  6. Using your authenticator app, scan the QR code displayed on your screen.

  7. Enter the six-digit code that is generated by your authenticator app, and then click Turn on.


Complete Your Security Setup

After activating your primary method, complete the following optional but highly recommended security steps:

  • Create a backup authentication method that you can use if your primary method is unavailable.

  • Save your recovery codes in case you are unable to use either your primary or backup authentication method. Store these codes in multiple secure places, such as:

    • A local file on a mobile device or computer.

    • A password manager (e.g., LastPass or 1Password).

    • A secure cloud storage location.

    • A printed or handwritten document.

After setup, you will require your mobile device to complete two-step authentication every time you log in.

    • Related Articles

    • TikTok TOTP Setup (Mobile App Required)

      TikTok's two-step verification typically requires a minimum of two verification methods to be enabled. We will enable the Authenticator App method, as it is the most secure for TOTP. How to set up TOTP for TikTok Open the TikTok App on your mobile ...
    • Instagram TOTP Setup (Mobile App Required)

      This process is designed to generate the Secret Key for your Marketing Success Manager to set up your TOTP code in their system. You will then set up your own TOTP method separately for your personal login, ensuring you always have a code. Part 1: ...
    • Link Social Media Accounts to the Social App

      Learn how to connect your business's social media accounts to your Social app, including step-by-step instructions for Facebook, Instagram, LinkedIn, Threads, YouTube, Google Business Profile, and Pinterest. How to Link Social Accounts Connecting ...
    • Auto Import Content and Blog Posts to the Social App

      You can automatically import content from your blog or website to your Content Library. The importer runs every hour. You can import content automatically from either Google Drive or a RSS Feed. To auto import content: Select the Create tab at the ...
    • Social App Analytics

      The Social App's Analytics dashboard gives you insight into the performance of your social posts and your social accounts. The dashboard is devided into two sections: social post analytics and social account analytics. Social post analytics Post ...