OTP-based sign-in
OTP-based sign-in is faster than password-based sign-in for routine use. The trade-off is that anyone with access to your mobile number can request an OTP, so SIM security matters.
OTP-based mobile sign-in flow for the leading fantasy cricket apps. Account recovery checklist and common issues.

Most leading fantasy cricket apps run on a mobile-number-based sign-in flow. There is no separate web login - sign in happens inside the app or in the mobile web view.
Open the fantasy app you have an account on. If you don't have the app installed, see the download page.
Enter the mobile number you used to sign up. Tap Continue. A one-time password (OTP) is sent to that number via SMS.
Enter the six-digit OTP from the SMS. Most apps also support auto-detection of the OTP from the SMS inbox on Android.
Once the OTP is verified, you land on the contest home screen. Your wallet, KYC status, and account preferences carry over.
Check your network. Wait 60 seconds, then tap Resend OTP. If the second OTP also fails, contact the app's customer support team.
You cannot change the mobile number on an existing fantasy app account. You will need to create a new account with your new number, and any wallet balance on the old account can be withdrawn to the original bank account before closure.
Accounts can be locked after too many failed OTP attempts, or if KYC verification is incomplete. Contact customer support to unlock.
A common mistake is entering a different mobile number than the one you signed up with.
OTP delivery requires working cellular signal. Try moving to a different location if signal is weak.
Older app versions occasionally have login bugs that are fixed in newer releases.
On Android, long-press the app icon, open App info, tap Storage, tap Clear cache. On iOS, delete and reinstall the app.
If all four steps fail, contact the app's customer support team with your registered mobile number and a description of the issue.

Most leading fantasy cricket apps are mobile-only - there is no separate web login. This is by design, and it has practical implications for how you manage your account.
OTP-based sign-in is faster than password-based sign-in for routine use. The trade-off is that anyone with access to your mobile number can request an OTP, so SIM security matters.
Mobile-only apps avoid the complexity of maintaining a separate web stack. The trade-off is that you need your phone to access your account - there is no fallback web login.
Because OTP is required every sign-in, fantasy apps have two-factor authentication built in by default. There is no separate 2FA setup required.
SIM swap attacks are the most common account-takeover method for fantasy apps. If your mobile number is the recovery method, securing your SIM is the most important step.
SIM swap attacks are when an attacker convinces your mobile carrier to transfer your number to a new SIM. Once they have your number, they can request OTPs and take over your account.
Most Indian carriers let you set a PIN on your account that must be provided before any SIM swap. This is the single most effective protection against SIM swap attacks.
Most carriers offer free fraud alerts via SMS or email when SIM swap requests are made. Enable these alerts in your carrier's app.
If your email account is compromised, an attacker can request OTPs by intercepting the email fallback. Use a strong, unique password and enable 2FA on your email.
If you accumulate a large wallet balance, withdraw promptly to your bank account rather than leaving it in the fantasy app wallet. This limits the impact of any account compromise.

Most leading fantasy cricket apps are mobile-only - there is no separate web login. This is by design, and it has practical implications for how you manage your account.
OTP-based sign-in is faster than password-based sign-in for routine use. The trade-off is that anyone with access to your mobile number can request an OTP, so SIM security matters.
Mobile-only apps avoid the complexity of maintaining a separate web stack. The trade-off is that you need your phone to access your account - there is no fallback web login.
Because OTP is required every sign-in, fantasy apps have two-factor authentication built in by default. There is no separate 2FA setup required.
SIM swap attacks are the most common account-takeover method for fantasy apps. If your mobile number is the recovery method, securing your SIM is the most important step.
SIM swap attacks are when an attacker convinces your mobile carrier to transfer your number to a new SIM. Once they have your number, they can request OTPs and take over your account.
Most Indian carriers let you set a PIN on your account that must be provided before any SIM swap. This is the single most effective protection against SIM swap attacks.
Most carriers offer free fraud alerts via SMS or email when SIM swap requests are made. Enable these alerts in your carrier's app.
If your email account is compromised, an attacker can request OTPs by intercepting the email fallback. Use a strong, unique password and enable 2FA on your email.
If you accumulate a large wallet balance, withdraw promptly to your bank account rather than leaving it in the fantasy app wallet. This limits the impact of any account compromise.
Most leading fantasy cricket apps are mobile-only - there is no separate web login. This is by design, and it has practical implications for how you manage your account.
OTP-based sign-in is faster than password-based sign-in for routine use. The trade-off is that anyone with access to your mobile number can request an OTP, so SIM security matters.
Mobile-only apps avoid the complexity of maintaining a separate web stack. The trade-off is that you need your phone to access your account - there is no fallback web login.
Because OTP is required every sign-in, fantasy apps have two-factor authentication built in by default. There is no separate 2FA setup required.
SIM swap attacks are the most common account-takeover method for fantasy apps. If your mobile number is the recovery method, securing your SIM is the most important step.
SIM swap attacks are when an attacker convinces your mobile carrier to transfer your number to a new SIM. Once they have your number, they can request OTPs and take over your account.
Most Indian carriers let you set a PIN on your account that must be provided before any SIM swap. This is the single most effective protection against SIM swap attacks.
Most carriers offer free fraud alerts via SMS or email when SIM swap requests are made. Enable these alerts in your carrier's app.
If your email account is compromised, an attacker can request OTPs by intercepting the email fallback. Use a strong, unique password and enable 2FA on your email.
If you accumulate a large wallet balance, withdraw promptly to your bank account rather than leaving it in the fantasy app wallet. This limits the impact of any account compromise.
