Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Investigate updating 2FA flow to enforce backup tokens #356

Open
faucomte97 opened this issue Nov 14, 2023 · 2 comments
Open

Investigate updating 2FA flow to enforce backup tokens #356

faucomte97 opened this issue Nov 14, 2023 · 2 comments

Comments

@faucomte97
Copy link

faucomte97 commented Nov 14, 2023

Screenshot from 2023-11-14 14-47-55

Cf how PyPI did it: I had to generate the recovery codes AND use one of them to verify I had saved / downloaded them before they allowed me to setup 2FA. The two buttons were greyed out until I generated the codes.

This could be a pretty cool update to help ensure that no one gets locked out if they lose their OTP (provided they haven't lost their recovery codes).

@lauracumming
Copy link

@faucomte97 can you re-paste image as it is attached to Zenhub?

@faucomte97
Copy link
Author

@lauracumming Done

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants