yeah, when sites support it, that’s definitely the best option, but many sites only barely do totp lol so I have to have to put the totp codes somewhere, and the yubikey handles it in a pretty nifty way
yeah, when sites support it, that’s definitely the best option, but many sites only barely do totp lol so I have to have to put the totp codes somewhere, and the yubikey handles it in a pretty nifty way
Not on iOS but I like my yubikeys. Depending on your requirements (if you have less than 32 TOTP accounts per yubikey), they can handle your TOTP directly instead of just using them to unlock Bitwarden.
For security I don’t like to keep my TOTP keys in my password manager, even if it is strongly protected. With a yubikey I can ensure that both access to the key AND a physical touch is necessary to generate any codes. So even if I leave it plugged in on a remotely compromised PC I’m mostly protected, because a touch is required.
Yeah this. No association is implied just by using open source software. You don’t have to agree with Richard Stallman to use GNU utils, nor linus torvalds to use linux, it doesn’t make you suspect politically, it’s just software.
If you don’t wanna be associated with communists then don’t use a communist instance (hexbear, lemmygrad), that’s fine. even if they don’t make their own instance they can pick and choose their associations. Frankly, being associated with reddit is far worse than being associated with commies.
mostly recovery codes. I have multiple yubikeys but that’s mostly for work