• Monomate@lemm.ee
    link
    fedilink
    English
    arrow-up
    24
    ·
    10 months ago

    That’s an awful decision by Twilo. I deliberately only install Authy on my Desktop computers because they’re always at home and cannot be easily stolen/lost like my phone.

  • dantheclamman@lemmy.world
    link
    fedilink
    English
    arrow-up
    17
    ·
    edit-2
    10 months ago

    Twilio is under a lot of pressure from shareholders eager for more profit (CEO was just pushed out), so I figure this is just the start of a long wave of enshittification. I switched to Authenticator Pro (Android), which is much better in every way. Can backup between devices, has WearOS support, and a proper dark mode. I’d use bitwarden, but I hesitate to keep my TOTP keys in same place as my passwords

  • mlaga97@lemmy.mlaga97.space
    link
    fedilink
    English
    arrow-up
    8
    ·
    edit-2
    10 months ago

    Plugging pass/Password Store/Android Password Store for anyone wanting a good wrapper around git+pgp for desktop/Android using a YubiKey or similar hardware security key. It has pretty good OTP support built-in.

  • NarrativeBear@lemmy.world
    link
    fedilink
    English
    arrow-up
    7
    ·
    10 months ago

    Aegis is a good alternative. Took a while to do the transfer as they don’t allow export of the tokens.

      • stealth_cookies@lemmy.ca
        link
        fedilink
        English
        arrow-up
        11
        ·
        10 months ago

        It is a bad idea to have your password manager and 2FA be the same app though. You want to spread it around so one attack can’t break your logins.

        • Norgur@kbin.social
          link
          fedilink
          arrow-up
          1
          ·
          10 months ago

          While that is true, the risk of someone brute forcing into an account of mine on the login side than on mine. That’s what I use 2FA against. If they managed to break into my vault, they’d have broken into my Mailserver and whatnot, so…

        • BearOfaTime@lemm.ee
          link
          fedilink
          English
          arrow-up
          1
          ·
          edit-2
          10 months ago

          Good point.

          Is it realistic (i.e. is it secure enough) to self-host 2 Bitwarden, one for passwords, one for authentication?

          Or would splitting that between 2 Bitwarden logins work?

          I just throwing stuff at the wall, I haven’t thought either of these through yet.

      • bdonvr@thelemmy.club
        link
        fedilink
        English
        arrow-up
        3
        ·
        10 months ago

        Yeah, I already run Vaultwarden. But like others I don’t really want to combine my tokens and passwords.

    • Justin@lemmy.jlh.name
      link
      fedilink
      English
      arrow-up
      4
      ·
      10 months ago

      I just use FreeOTP+ on my phone. It’s a fork of a Red Hat authenticator, and completely open source and available on F-Droid.

      No sync, but you can export the TOTP secrets if you want to back them up/move them.

    • StarDreamer@lemmy.blahaj.zone
      link
      fedilink
      English
      arrow-up
      1
      ·
      edit-2
      10 months ago

      Bitwarden has TOTP support with a pro license. Or you can just selfhost (using vaultwarden) and have all the features instead.

  • DLSantini@lemmy.ml
    link
    fedilink
    English
    arrow-up
    2
    ·
    edit-2
    10 months ago

    I didn’t even realize they had a desktop app. I’ve been using the mobile app for a few years. I was just thinking about installing the mobile app in my WSA install, since it just didn’t even occur to me that there was a desktop version. I guess now it doesn’t matter either way.

  • _edge@discuss.tchncs.de
    link
    fedilink
    English
    arrow-up
    1
    ·
    10 months ago

    OK. Can someone please help me how to export?

    I have Authy 2.4.2 on Linux desktop (too recent for the --remote-debugging-port option used here to work) and Authy 24.13.6 on Android.

    I use mostly the Android version, but sync to the Desktop / Chrome App was a nice backup. If they discontinue this I’m not sure what’s next and would prefer some Android app where I can access the backup. I have Bitwarden Pro if this helps, but my first concern is to get the tokens out of Authy.