Hacker News new | ask | show | jobs
by marcrosoft 713 days ago
It is called 2 factor or multi-factor authentication. It should be something you know (password) and something you have (device). Storing totp with your password defeats the entire point of it.