Easily pass App Store review process with 2FA enabled in your production application

Hello!

I wanted to share with you guys a platform I built allowing Apple to easily login to applications implementing SMS Multi-Factor Authentication! The platform is called GetMyMFA and can be accessed via get.mymfa.io

The objective of this platform is to allow organizations and individuals to simply create a user in your production application with a virtual phone number that can be enabled and disabled in real time for the App Store review process. That way Apple simply needs to log in to the platform (with a specific and private username/password) and the SMS MFA login code will be displayed in the website.

By using this platform we have been able to:

  1. Avoid spending time in a security "bypass" (and all the security issues that often come with it)
  2. Avoid building a "demonstration" mode exclusively for Apple
  3. Avoid using public websites with public phone numbers accessible to anyone.

Would love to hear your feedback!

All the best :)

Hi, I just discovered this post. Can you confirm you tested this approach with Apple review team - are they fine with logging into your system to obtain the 2FA code? Thanks.

Easily pass App Store review process with 2FA enabled in your production application
 
 
Q