Soully2fa secures OPs by isolating them in sky-limbo until a Discord-sent 6-digit code is entered. Featuring real-time risk levels, Geo-IP tracking, and encrypted logs to block account hijacking and Force-Op exploits.
Stop account hijacking before it happens. Built for 1.21.x and the 26.x Tiny Takeover builds.
In the current Minecraft landscape, one leaked staff password can ruin a community. Between Op-Griefing and Force Op exploits, passwords are not enough. Soully2fa is a security layer that connects your server to Discord, ensuring that even if an attacker has a staff password, they cannot control the world.
Traditional 2FA plugins only freeze a player in place. This is a security risk because attackers can still view the world, use the F3 menu to scout coordinates, or interact with nearby entities. Soully2fa uses the Sky Limbo Protocol.
Upon joining, unverified staff are instantly teleported +150 blocks into the atmosphere and blinded.
The plugin analyzes every login and assigns a Risk Level (1-5) based on historical data:
The system sends a threat assessment directly to your Discord staff channel:
||spoiler|| tags to keep staff data private in logs.soully2fa.verify for specific ranks or handle all OPs automatically.2faSoully-1.0.jar into the /plugins directory.config.yml.Project Details