Store TOTP and passkeys: storage and access

Merca manages TOTP and passkeys by store. Team members can access store credentials only within their assigned permissions.

TOTP and passkeys configured in a store window belong to that store. They are not automatically made available to other stores or your everyday browser. See How store fingerprints work in Merca.

Setup steps are in How to set up Amazon two-step verification and How to set up an Amazon Passkey. Scan the QR and choose where to save the passkey in that store's window — not a phone app or the system browser.

This data is stored per store. Only people who have access to that store can see its authenticator, passkeys, and extra logins in the management window. Access is explained in How to assign stores to a member.