• twice_hatch@midwest.social
    link
    fedilink
    English
    arrow-up
    1
    ·
    18 hours ago

    If by “passkey” they mean an HSM I’m okay with it

    I’d still rather have TOTP as my 2nd factor so I don’t have to plug shit in

    • philosloppy@lemmy.world
      link
      fedilink
      arrow-up
      1
      ·
      3 hours ago

      TOTP is the superior option, IMO, but I’m no expert on security so maybe they’re insecure? it sure seems like some folks would rather do anything but time-based onetimes.

      hardware keys are a pain in the neck, just one more thing to be lost.

    • JackbyDev@programming.dev
      link
      fedilink
      English
      arrow-up
      1
      ·
      17 hours ago

      I’ve plugged my phone in so many times and it doesn’t detect shit. I’d rather stick with totp/email.