So the amount of hackings and compromised accounts have been growing a lot lately. So what I was thinking is implementing a secondary level of protection for the their self.
Back when I was into runescape (a long time ago) they had a feature for this. Your bank account in-game had it own PIN number. So even if someone managed to hack into your account they still couldn't access your items without that PIN number. It would be nice if you could activate a PIN on your account that would be required for all item and TC transfers on your account. This would be a selectable feature in your account settings of course, so no one would be forced to use it.
Its a simple idea thats very effective. I don't see any reasons not to have it.
Brute forcing your way into a PIN (4 digits especially) isn't hard for someone who can compromise your account. See: people brute forcing into iOS lockscreens
Brute forcing aint hard, just run your programm and done, wouldnt say that's advanced.
Edit:
Would rather have some kinda e-mail thingy that alerts me when I log in on a different network that I havent logged into yet. And that I have to vertify its me,
Just make your OWN log in history available for you and staff, with ip's and all,