Hacker News new | ask | show | jobs
by mkesper 321 days ago
Always use an open source OTP app for something like that.
1 comments

Nowhere near paranoid enough.

Always take the "manual" OTP option, take a backup copy of the code you copy and pasted. I use my password manager

Then, always export the contents of you entire password manager database, encrypt it with the same password you use for you password manager with the pdkf2 rounds set to an absurdly high number and place it in a public place on the internet. Lots of places will host it for free.