Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The author was pretty clear about the risks:

> This solution is fine for most people, but this section is about being a bit more paranoid, so I would recommend not using the 1Password integration for your one-time password codes.

> The more extreme option is to manually keep track of the QR code or setup key provided when setting up 2FA for a TOTP authenticator on each account. Backing up these setup codes is a bit controversial and not recommended by the more hardcore security folks as it introduces another avenue by which you could be compromised if not securely stored. If you opt to backup your QR codes, you may want to store them outside of your password manager and in an encrypted manner.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: