Hacker News new | ask | show | jobs
by anfilt 462 days ago
I agree although sites still might concerned about password re-use they could just have an option to generate what is basically a key. Instead of a password and some sort 2fa "token" which is basicallly a key. Accept for that 2fa token only a low amount the entropy is capable of generating is used.

I also agree sms 2fa is just broken/garbage.