Skip to content

Enhancement: automatically generate (and activate) backup codes #292

@axelsimon

Description

@axelsimon

It's been pointed out to me that it would be a nice default for regular users to have backup codes be automatically generated and showed when activating any other method of 2FA.

It can be dangerous to only activate one 2FA method (decent risk of locking yourselsf out), so we should automatically create the backup codes and show them to the user and prompt them to copy them and keep them safe.

It is possible that not having backup codes or having only one 2FA method is what you really want, (hence my mention of regular users), but in this case you can either remove the backup codes method after or simply not make note of the backup codes.

Metadata

Metadata

Assignees

No one assigned
    No fields configured for Enhancement.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions