[All Platforms][Other] 2-Factor Authentication

Spotify should, as a matter of good practice and safety, implement 2-step authentication.


Previously, Spotify enabled the option to log out other sessions other than the current session.


This would prevent hackers from stealing accounts, which would additionaly lead to less account hacks and less work for Spotify employees to assist in these cases.


Updated on 2018-10-18

Hi everyone, thanks for bringing us your feedback in the Spotify Idea Exchange. We’re ready to mark this idea as ‘Under Consideration’. 


We are currently investigating various solutions for account security for our users, e.g. 2-factor authentication. Any news regarding user-facing security updates will be posted to this thread as a status change.


If you'd like further information about protecting your account please visit our Support Site here.


Most places/ sites have 2 factor authentication why not Spotify?? Do you guys not want the best protection possible for user's accounts??


It's shocking that Spotify doesn't back 2FA.


Why would they decide not to implement 2FA? The only reason i can think of is the cost of development, which shouldn't be the reason why the implementation should be held back.


Hey, I am quite sad to read that Spotify decided not to move forward with this idea, for now. While I perfectly understand the hassle and the possible user confusion about them, there are relatively seamless 2FA methods to authentication users, such as U2F tokens and Duo Push. Also Spotify already deploys mobile apps, so there could also be a confirmation alert window popping when there is an authentication attempt on the web interface. While I appreciate the security advices to harden one's account, password-only is really obsolete, as of 2017, and several security agencies push toward more secure authentication schemes. This is particularly true considering Spotify password policy tolerates fairly weak passwords, at time of writing. Could you please reconsider? 🙂 ❤️ Thanks.


 As someone who just had their account compromised I would welcome this feature. It should defintely be necessary with pretty much any software we have today with all the data getting compromised.


Spotify has been stealing money for over a year and i just found out because i received a call for my bank account being overdrafted and this is not the first time.

My account is set to free and they have been charging me for over a year!!! I dont even recieve premium perks.



I just got hacked. Please get at least the SMS two factor going. 


 I don't understand why Spotify doesn't want to enable 2-factor authentication. It's not difficult to implement, it solves a lot of security issues and it's not making it more difficult to use Spotify for the end user.

The only reason I can see for Spotify not using it is that their programmers doesn't know how to do it. But that's preposterous, right?

Yeah i guess if enough people get there accpunts hacked then they might realize that it's needed/wanted. Or somebody should make a petition against Spotify for them too add it.

You should really go for two step. My account has just been compromised,and that wouldn't have been possible with two step authentication.


Please reconsider and implement 2FA. With friends who are normally quite carefull showing their accounts compromised, I just can't wait to protect mine with more efficient means than just a (generated) password.