logoalt Hacker News

burnt-resistortoday at 2:50 AM0 repliesview on HN

TOTP might not be perfect, but they don't need networking. There's absolutely no reason a third-party or the server needs to maintain a source of secrets on demand needing to be sent over a network when the user can maintain an offline-capable 2FA generator themselves.

I'm not sold yet on non-portable, proprietary passkeys.