Your shop holds customer chats, orders and payouts — worth protecting with a second check at login.
- Open Account → Settings → security.
- Turn on the OTP / one-time-code check.
- From then on, signing in requires the code sent to your verified email or phone.
Your data is encrypted in transit and AES-256 at rest, hosted on AWS Africa (Cape Town). 2FA adds the human layer on top of that.
Make sure every Admin and Owner has 2FA on — they’re the accounts with the most access.