The Security page in your Shiga account allows you to manage your account’s security settings, including password management, two-factor authentication, device monitoring, and account deletion. This guide will walk you through each feature.
1. Change Password
How to Change Your Password
- Access the Security Page: Navigate to the Security section from your Shiga app sidebar.
- Locate Password Section: Find the “Password” section at the top showing when it was last changed.
- Click “Change Password”: Press the button on the right side of the password section.
Password Change Process
Step 1: Enter Your Passwords
- Current Password: Enter your existing password.
- New Password: Create a new strong password.
- Confirm New Password: Re-enter your new password to confirm.
Password Requirements:
- At least one uppercase letter.
- At least one number.
- At least one special character.
- 8 characters minimum.
- Passwords must match.
Step 2: Click “Change Password” to save your new password.
2. Two-Factor Authentication (2FA)
Two-factor authentication adds an extra layer of security to your account. You can choose from two different methods:
A. Email Authentication
- Status: Enabled by default.
- How it works: Receive verification codes via your registered email address.
- Use case: Best for quick access when you have email readily available.
B. Authenticator App
- Status: Can be enabled as default.
- Options: Google Authenticator or other TOTP apps.
- How to set as default:
- Click the three-dot menu (⋮) next to “Authenticator App”.
- Select “Set as default”.
- Authorize the action by entering your authenticator code.
C. Security Questions
-
Status: compulsory.
-
How it works: Answer preset security questions to verify your identity.
D. Passkey
- Status: Modern biometric authentication.
- How it works: Use fingerprint, face scan, or screen lock like a PIN.
- How to create:
-
Click “Create Passkey” button.
-
Follow your device’s prompts to set up biometric authentication.
3. Your Devices
This section shows all devices that have logged into your Shiga account.
Each device entry shows:
- Device Type: Windows/Mobile with browser information.
- Location: City and state.
- Last Access: Date and time of last login.
- Session Status: “Current session” or timestamp.
Example Device Entries
- Windows • Avast Secure Browser 142.0.0.0
- Location: Ikeja, Lagos, NG.
- Status: Current session.
- Mobile Device
- Location: Ojota, Lagos, NG.
- Last accessed: October 30, 2025 9:27 PM.
Managing Devices
- Remove a Device: Click the “Remove” button next to any device you don’t recognize or no longer use.
- Current Device: Your active session is clearly marked as “This device”.
Security Tip: Regularly review your device list and remove any unfamiliar devices immediately.
4. Your Shiga Private Key
What is a Private Key?
Your Shiga Private Key is a critical security credential for blockchain transactions. Never share this with anyone - even Shiga support. Anyone with access to your private key can control your funds.
Viewing Your Private Key
Available Formats:
- EVM: For Ethereum-compatible networks.
- Solana: For Solana blockchain transactions.
How to View:
- Locate the “Your Shiga Private Key” section.
- Notice the key is hidden (shown as dots: • • • • • • • • • • • • • • • •).
- Click “Show Private Key” button.
- The key remains masked for security.
Security Warning: Do not share this with anyone, even Shiga. Anyone with your private key can steal your funds.
5. Delete Account
Permanent Account Deletion
Important Information:
-
This action will deactivate your account immediately.
-
All associated data will be permanently deleted after 90 days.
-
You won’t be able to recover information or remaining funds that aren’t transferred before deletion.
-
Please ensure you’ve withdrawn all assets before proceeding.
How to Delete Your Account
Step 1: Initiate Deletion
- Scroll to the bottom of the Security page.
- Click the red “Delete Account” button.
Step 2: Authorization
- You’ll be prompted to authenticate using your default 2FA method.
- This could be via authenticator app, security question, or email.
Step 3: Confirm Deletion
- A final confirmation dialog appears.
- Provide a reason for deletion (optional but helpful).
- Click “Yes, Delete Account” to proceed.
- Or click “No, Cancel” if you change your mind.
Warning: You will be logged out immediately after deleting your account.
Security Best Practices
✓ Recommendations
- Enable 2FA: Always keep at least one two-factor authentication method active
- Regular Password Updates: Change your password every 3-6 months
- Monitor Devices: Review your device list monthly and remove unfamiliar ones
- Secure Your Private Key: Store it offline in a secure location
- Use Strong Passwords: Combine uppercase, lowercase, numbers, and special characters
- Set Default 2FA: Choose your most reliable 2FA method as default
Never Do These
- Share your password or private key with anyone
- Use the same password across multiple platforms
- Ignore unfamiliar devices in your device list
- Screenshot or email your private key
- Delete your account without withdrawing funds