Hello!
I wanted to share with you guys a platform I built allowing Apple to easily login to applications implementing SMS Multi-Factor Authentication! The platform is called GetMyMFA and can be accessed via get.mymfa.io
The objective of this platform is to allow organizations and individuals to simply create a user in your production application with a virtual phone number that can be enabled and disabled in real time for the App Store review process. That way Apple simply needs to log in to the platform (with a specific and private username/password) and the SMS MFA login code will be displayed in the website.
By using this platform we have been able to:
- Avoid spending time in a security "bypass" (and all the security issues that often come with it)
- Avoid building a "demonstration" mode exclusively for Apple
- Avoid using public websites with public phone numbers accessible to anyone.
Would love to hear your feedback!
All the best :)