Multi-Factor Authentication (MFA) Setup Guide

Multi-Factor Authentication (MFA) is a mandatory security requirement for all users logging into the Digital Assets Custody (DAC). DAC is compatible with any Time-based One-Time Password (TOTP) authenticator application, such as Google Authenticator or Microsoft Authenticator. This guide walks you through configuring MFA on a new device, migrating authenticator credentials and resetting access if needed.


Part A: Initial MFA Setup Guide

Initial MFA Setup Guide

Follow these steps to activate MFA on your account:

  1. Install an Authenticator App: Download and install a preferred TOTP authenticator application on your mobile device via the App Store or Google Play Store.

  2. Access the Invitation Link: Open your DAC activation email, click the provided registration link, set your preferred password, and click Confirm.

  3. Initialize Setup: The system will automatically display the MFA configuration wizard upon your first successful password confirmation.

  4. Link Your Account: Open your mobile authenticator app and scan the QR code displayed on the DAC portal screen to bind your account.

  5. Verify and Complete: Enter the generated 6-digit verification code from your mobile app into the designated field on the DAC portal to complete the pairing.

💡 Sign-In Note: Each time you log into the DAC portal, you must provide a fresh 6-digit code from your authenticator app.

Alternative Option: If you cannot access your authenticator app, you can click the option on the login screen to request a One-Time Password (OTP) via your registered email instead.


Part B: Migrating MFA to a New Device

Migrating MFA to a New Device

If you are switching to a new smartphone or tablet, you should migrate your MFA credentials before you stop using or wipe your old device.

Step 1: Export from your Old Device

  1. Open your authenticator application on your old device.

  2. Locate the transfer or export feature.

    • Example (Google Authenticator): Tap the Menu Icon/Sidebar > Select Transfer accounts > Choose Export accounts.

  3. Select your DAC Account to generate an on-screen Export QR Code.

Step 2: Import to your New Device

  1. Download and install the same authenticator application on your new device via the App Store or Google Play Store.

  2. Open the app and select the option to Import or Scan an existing transfer QR Code.

  3. Use your new device's camera to scan the Export QR Code displayed on your old device.

Step 3: Verify the Migration

  1. Navigate to the DAC Portal login page on your computer or browser.

  2. Enter your credentials, and when prompted for your MFA code, enter the fresh 6-digit token generated by your new device.

  3. Once you successfully log in, the migration is complete, and you can safely delete the account from your old device.


Part C: MFA Reset

MFA Reset

If you have lost access to your authentication device or accidentally deleted your app profile before migrating your credentials, follow this recovery process to restore access:

Step 1: Contact Support

Reach out immediately to your designated servicing agent or a Gambit Operation Admin to formally request a manual Multi-Factor Authentication (MFA) reset for your user profile.

WhatsApp Number: +6019 342 1288

Step 2: Admin Clearance

The Operation Admin will verify your identity and reset the MFA from the back office.

Step 3: Re-configuration

  1. Navigate to the DAC Portal login page.

  2. Sign in using your standard username and password credentials.

  3. The system will automatically treat this as a first-time login event and display a fresh setup screen. Scan the new QR code to link your device following the Initial MFA Setup Guide above.


Was this article helpful?