Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> Yes, technically this is a corruption of the principles of why you'd need 2FA in the first place

I understand what you’re saying here, but then having a password manager and a 2FA app on the same phone is the exact same corruption.

If your threat model involves “don’t have your 2FA codes on your desktop”, it must also include “don’t have your passwords on your phone”.



That's probably true. For what it's worth I don't save passwords on my phone either.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: