Hacker News new | ask | show | jobs
by Kalium 2279 days ago
The security gains of multi-factor authentication are significant. They are so large that choosing to forego them might at this point in time be deemed negligence. That said, you're absolutely correct that it's wildly unreasonable that so many of them require you to make use of your personal phone - which you are wisely and responsibly trying to ignore

Fortunately, there are a lot of good ways to do 2FA that don't rely on your personal phone! A second device, physical RSA tokens, and U2F keys are all viable options that let you both be responsible by ignoring your phone and be safer. Some password managers will also do your TOTP code generation.