• driveway@lemmy.zip
    link
    fedilink
    arrow-up
    1
    ·
    11 months ago

    Yeah, FreeOTP exports are broken. Can’t import them back to FreeOTP, can’t import them to another application. I’ve spent 2 hours writing a script to decrypt the export manually, the resulting codes are not accepted anywhere probably because ciphers are not written to the file properly. I’ve been going around restoring accounts for the past month. Fuck FreeOTP.

    • Armored Pangolin@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      1
      arrow-down
      1
      ·
      11 months ago

      Yep. Just download the Yubico Authenticator app. Your OTPs wont show up unless you tap your physical Yubikey to your phone’s NFC chip.

      Only downside is, the Yubico Authenticator only allows 32 accounts. So i have my most important accounts on there.

    • Lodra@programming.dev
      link
      fedilink
      English
      arrow-up
      0
      ·
      11 months ago

      Bitwarden has been working well for me on iOS. It’s a paid feature though. $10 a year I think

      • Zekenator_von@lemmy.ml
        link
        fedilink
        arrow-up
        1
        ·
        11 months ago

        Bitwarden has a 2fa function?i didn’t know it. But I don’t fully trust online apps for storing passwords though. A server can always be exploited

        • Lodra@programming.dev
          link
          fedilink
          English
          arrow-up
          2
          ·
          11 months ago

          Bitwarden uses end to end encryption. This severely reduces the risk their infra is attacked. The encryption keys exist on your devices only so it’s impossible to read the server side data.

          The only real question is how much you trust Bitwarden as a company. Are they completely lying about E2EE to customers and auditors? If not, then Bitwarden is a good choice.

        • Lodra@programming.dev
          link
          fedilink
          English
          arrow-up
          1
          ·
          11 months ago

          Oh and ya, it’s has a one time passcode function. Works great! It will even autofill into OTP fields… sometimes 🙂