|
|
|
|
|
by whartung
296 days ago
|
|
This is actually an interesting idea. I have my e.g. GitHub recovery codes printed out. I have to assume that the recovery codes are more flexible, but rescanning the original QR code would be better UX in case of loss simply because GitHub is not involved, they're nevertheless wiser. But the recovery codes are process agnostic. I imagine they work whether you're using TOTP or any other 2FA mechanic. If GitHub deigns to discontinue support for TOTP, then the printer QR code won't be much help. In the end, however, I have a piece of paper (or other visual artifact) with security information to manage. I will keep the persistent QR code concept in my bonnet for potential consideration in the future. |
|