Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Recovery codes saved my ass a few times though.

Advanced protection is a good pointer. Seems like losing the hardware token device can be a disaster?

On the other hand giving a service money is dangerous. They would be making money from you which means stricter checks. I'm still semi banned on Github because they had my card with Russian billing address (for sponsoring) when Putler attacked Ukraine. Good I didn't pay for anything Google.



> Seems like losing the hardware token device can be a disaster?

If you only have one, yes. But I'd recommend:

* Get three tokens

* Keep one on you, one at home, and one somewhere else

* Maintain a list of every site you've registered your tokens with.

* If you lose a token, or one breaks, unenroll it from all those sites, get a new token, and enroll the new token. Do this urgently.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: