I personally am fine with this.

  • NekuSoul@lemmy.nekusoul.de
    link
    fedilink
    arrow-up
    1
    arrow-down
    1
    ·
    11 months ago

    Yup. I’m actually a bit baffled by how much negativity/misinformation there’s around 2FA even in a place like this, which should naturally have a more technically inclined userbase.

    • daYMAN007@feddit.de
      link
      fedilink
      arrow-up
      3
      ·
      11 months ago

      Well negativity is there because every app wants it.

      I don’t care if account x is compronised, as it has absolutly no value

    • argv_minus_one@beehaw.org
      link
      fedilink
      arrow-up
      0
      ·
      edit-2
      11 months ago

      I dislike MFA because it creates a risk of losing access to my account. I can back up my passwords; I can’t back up a hardware device.

      • meteokr@community.adiquaints.moe
        link
        fedilink
        arrow-up
        0
        ·
        11 months ago

        A hardware device is a physical key. Its no different than backing up your home key. Get two keys and copy them. Keep one on you, and the other in a safe somewhere in case you lose the first.

      • NekuSoul@lemmy.nekusoul.de
        link
        fedilink
        arrow-up
        0
        ·
        11 months ago

        Normally you get a handful of recovery codes when you set up 2FA. If not, you can just create a backup of the QR-Code or secret when setting up 2FA and store it in a safe location. And even if all that fails there’s usually a way to recover an account by going through support.

        Although I wouldn’t recommend it, there’s also 2FA apps out there that have cloud-sync.

        • argv_minus_one@beehaw.org
          link
          fedilink
          arrow-up
          0
          ·
          edit-2
          11 months ago

          It’s pretty hard to hand-write a QR code, I don’t wish to pay the printer cartel $50 for the privilege of printing it, and it would of course be horribly insecure to print it with someone else’s printer.

          And how would I use the QR code? I can’t scan it with my phone’s camera because allowing my phone access to my GitHub account is a security risk, and I can’t scan it with my desktop because it doesn’t have a camera.

          So, how is this going to work? How do I recover my GitHub account without making it less secure than it is with just a password?

          • TheAnonymouseJoker@lemmy.ml
            link
            fedilink
            arrow-up
            1
            arrow-down
            3
            ·
            11 months ago

            There is no printer ink cartel if you pick an older HP LaserJet/Brother printer. Once you buy, printer is yours and laser cartridge is cheap.