Losing access to Authy leads to another reckoning with Google’s security model.

  • 𝕸𝖔𝖘𝖘
    link
    fedilink
    English
    124 months ago

    Aegis all the way. Looked at authy and hardpassed after reading the permissions it requires. Your job is to calculate the OTP. You don’t need wifi access if you’re an offline OTP calculator.

    • Chozo
      link
      fedilink
      44 months ago

      Authy is not an offline OTP. It syncs your tokens across devices.

      • 𝕸𝖔𝖘𝖘
        link
        fedilink
        English
        5
        edit-2
        4 months ago

        It can, but it doesn’t have to (or at least it didn’t used to). But if you ever choose to leave, you can’t export anything (or, at least you couldn’t). My statement is using old information, at least a year old, since that’s about when I hardpassed on them.

        Edit: correct autocorrect

      • Carighan Maconar
        link
        English
        34 months ago

        Just another reason not to use them. Non-synced tokens cannot be leaked.