[Security] 2-Factor Authentication

Spotify should, as a matter of good practice and safety, implement 2-step authentication.


Previously, Spotify enabled the option to log out other sessions other than the current session.


This would prevent hackers from stealing accounts, which would additionaly lead to less account hacks and less work for Spotify employees to assist in these cases.


More info: https://twofactorauth.org

Updated on 2018-10-18

Hi everyone, thanks for bringing us your feedback in the Spotify Idea Exchange. We’re ready to mark this idea as ‘Under Consideration’. 


We are currently investigating various solutions for account security for our users, e.g. 2-factor authentication. Any news regarding user-facing security updates will be posted to this thread as a status change.


If you'd like further information about protecting your account please visit our Support Site here.

Get two step verification approved ASAP. I’m tired of having to create new passwords anytime somebody hacks into my account.


It's 2022, almost 7 years to the day that this was originally posted.  Over seven THOUSAND people went out of their way to come here and voted to agree this was a good idea.
Why does Spotify still not have Multi-Factor Authentication?  Securing my account by only letting me change my password and sign out of current sessions does nothing to prevent future security breaches..

Actually there are so many turnkey solutions for 2fa from companies like Google, that it's literally a plug and play solution. Far easier to implement than all the stupid features they keep adding that I see nobody asking for.

I was tired of waiting the multiple verification, so i moved to apple music and i am pretty happy with the service, is quite similar to spotify except it has better security.

It is quite ridiculous that Spotify doesn't have 2FA yet. It is now considered "the standard" for any major website or service. Spotify representatives love to claim that "security of your accounts remains Spotify's top priority". This is simply false without AT LEAST having 2-Factor Authentication. Simply sending an email when someone logs in to our accounts from across the world is not enough. Most of us are not "Globetrotters," signing on in multiple countries all over the place. 
Please do better Spotify...