3 ms·
Been testing this - migrated from FreeOTP (redhad). I have a conflict on export of keys for backup. But then you kind of need it in the event you loose the pho
by anthony_barker 6y ago
Been testing this - migrated from FreeOTP (redhad).
I have a conflict on export of keys for backup. But then you kind of need it in the event you loose the phone (so you don't have to rely on sms or email to recover account access).
Personally I think the best security I have seen is in Keybase or Matrix with the trusted devices concept. I like how keybase allows for one of the devices to be a paper device.
- literallycancer 6y agoThere are scripts to help you export from FreeOTP (and transform to the FreeOTP+ format), even without a rooted phone. The opposition to export features by FreeOTP maintainers is idiotic, because there is no contract that TOTP seed never moves or lives only on one device. The only expectation is that it is not shared with 3rd parties and is carefully kept secret. At the same time, migrating to a new phone and having to change 30 different 2FA codes individually is untenable.