Spread bets and CFDs are complex instruments and come with a high risk of losing money rapidly due to leverage. 69% of retail investor accounts lose money when trading spread bets and CFDs with this provider. You should consider whether you understand how spread bets and CFDs work, and whether you can afford to take the high risk of losing your money.

Help and Support

Two-factor authentication FAQs

How do I protect my account with two-factor authentication? 

Two-factor authentication (2FA) provides a second security layer for your account, protecting against unauthorized access by requiring a separate one-time password (OTP) when you log in.  

The system generates OTPs that are valid for 30 seconds, making them more secure than traditional passwords.  

 



What is Two-Factor Authentication (2FA)? 

Two-factor authentication (2FA) is a security feature that requires two different forms of identification before granting access to your account: 

  1. Something you know - Your username and password 
  2. Something you have - A unique code from your authentication app 

 

When 2FA is enabled, even if someone obtains your password, they cannot access your account without the second factor - a time-sensitive code that changes every 30 seconds. 

 

How Does It Work? 

When you log in to your IG account with 2FA enabled: 

  • You enter your username and password as usual 
  • You're prompted to enter a 6-digit code from your authentication app 
  • This code is valid for only 30 seconds, making it virtually impossible for unauthorized users to access your account 

 



How do I set up 2FA?  

Prerequisites 

Before you begin, ensure you have: 

  • The latest version of the IG Trading mobile app 
  • A smartphone capable of running authentication apps  


  

Step 1: Download an Authentication App

Choose one of these industry-standard authentication apps from your device's app store: 

  • Google Authenticator  
  • Microsoft Authenticator  
  • Authy  
  • Other compatible TOTP (Time-based One-Time Password) apps  


  

Step 2: Access Security Settings

  1. Open the IG Trading app on your mobile device 
  2. Log in to your account 
  3. Navigate to Account → Security 
  4. Find the "Two-Factor Authentication" option 


  

Step 3: Enable Two-Factor Authentication

  1. Toggle on "Two-Factor Authentication" 
  2. A unique secret key will be generated for your account 
  3. Keep this screen open - you'll need this key for the next step 


  

Step 4: Link Your Authentication App

  1. Open your chosen authentication app 
  2. Tap the "+" or "Add Account" button 
  3. Select "Manual Entry" or "Enter Key Manually" 
  4. Enter the following:  
  • Account Name: IG Trading (or any name you prefer) 
  • Secret Key: Copy the key from the IG app
  1. Save the entry  


  

Step 5: Verify and Activate

  1. Your authentication app will now display a 6-digit code for IG 
  2. Enter this code in the IG app to verify the connection 
  3. Tap "Confirm" to complete the setup 
  4. You'll receive confirmation that 2FA is now active

Note: Clients can only set up the new third-party authenticator app via their Mobile Trading app. However, clients can login to the web platform using the OTP from the third-party authenticator app. 





How do I log in with 2FA?  


  

On Desktop/Web Platform

  1. Visit the IG website and click "Log in" 
  2. Enter your username/email 
  3. Enter your password 
  4. When prompted, open your authentication app 
  5. Enter the current 6-digit code 
  6. Complete login


  

On Mobile App

With biometrics enabled: 

  1. Use Face ID/Touch ID as normal 
  2. Enter the 6-digit code when prompted 

Without biometrics: 

  1. Enter username and password 
  2. Enter the 6-digit code when prompted 



Which platforms work with 2FA?  

✅ Compatible with: 
❌ Not compatible with: 
  • IG web trading platform 
  • IG mobile trading apps (iOS and Android) 
  • L2 Dealer platform 
  • IG API (with special instructions)
  • MetaTrader 4 (MT4) 



 

How do I use 2FA with special platforms? 

For API users with 2FA enabled: 

  • Live API: Append the 6-digit code to your password  

Example:  

If your password is "MyPassword" and the code is "123456" 

Enter "MyPassword123456" 

  • Demo API: Uses separate credentials - no 2FA code needed (Don't add the code). 

TradingView Integration 

For TradingView users: 

  1. Enter your username 
  2. In the password field, enter your password followed immediately by the 6-digit code  

Example: "YourPassword123456" 




What if I get a new phone? 

If you get a new phone or need to change your authentication device: 


1. If you still have your old phone - before switching phones
  • Disable 2FA in the IG app 
  • Set it up again on your new device 

2. If you've already lost access to your old phone

Contact IG support to disable 2FA - Email helpdesk.uk@ig.com from your registered email with: 

  • You'll need to verify your identity (see below) 
  • Your full name and date of birth  
  • Trading account login or account ID  
  • Registered postal address  
  • Registered contact number  
  • Account balance  
  • Last market you traded  
  • Last four digits of your registered card(s)Shape
 

How do I turn off 2FA? 

To remove 2FA from your account: 

  1. Open the IG mobile app 
  2. Go to Account → Security 
  3. Toggle off "Two-Factor Authentication" 
  4. Enter your current authentication code to confirm 
  5. 2FA will be disabled immediately  



Why isn't my 2FA code working? 
 If you experience these issues, try these solutions: 

"Invalid Code" Error 

  • Check the time: Codes expire every 30 seconds 
  • Verify device time: Ensure your phone's time is set to automatic 
  • Wait for new code: Try the next code that appears 


Can't Access Authentication App 

  • Lost phone: Contact IG support immediately 
  • App deleted: Reinstall and you'll need to set up 2FA again 
  • Phone broken: Use backup codes if available, or contact support 


Login Issues After Password Reset 

  • Remember to add the 6-digit code after your new password 
  • Format: NewPassword123456




Lost Access? Here's What to Do 

If you cannot access your authentication app, contact IG support immediately: 

Email: helpdesk.uk@ig.com 

Include the following information from your registered email address: 

  • Your full name and date of birth 
  • Trading account login or account ID 
  • Registered postal address 
  • Registered contact number 
  • Current account balance (approximate is fine) 
  • Last market you traded 
  • Last four digits of your registered card(s) 

Our security team will verify your identity and help you regain access to your account. 





Frequently Asked Questions 

1. Can I use 2FA on multiple devices?  

No, 2FA can only be active on one device at a time for security reasons. 



2. What if I travel to a different time zone?  

Authentication apps work globally. Just ensure your phone's time is set to automatic. 



3. Is 2FA mandatory?  

No, but we strongly recommend it for all accounts to ensure maximum security. 



4. Can I use SMS for 2FA instead of an app?  

Currently, IG only supports app-based authentication for maximum security. 



5. Will 2FA slow down my trading?  

No, once logged in, you can trade normally without additional authentication. 





 

Best Practices for Maximum Security 

  1. Keep your authentication app updated 
  1. Never share your authentication codes with anyone - IG staff will never ask for them 
  1. Use a strong, unique password in combination with 2FA 
  1. Enable screen lock on your phone 
  1. Consider using an authentication app with backup features 




Are you finding this article useful?

Positive FeedbackNegative Feedback

Related articles

How Do I Secure My Cryptocurrency?

Making Your First Cryptocurrency Purchase with IG

Where can I download and install MT4?