Hacker News new | ask | show | jobs
by manquer 2757 days ago
Depends on your threat model, not everyone is going to pay for a hardware U2F . Not every application needs that high security. TOTP is an option definitely better than just plain password, which is what most services use today