denise: Image: Me, facing away from camera, on top of the Castel Sant'Angelo in Rome (Default)
Denise ([staff profile] denise) wrote in [site community profile] dw_maintenance 2020-03-18 08:27 pm (UTC)

No, trust me, I do know! There are ways to do 2FA without a phone or second internet-enabled device (that's part of why we haven't figured out how we want to offer it yet, because there are a lot of bad 2FA implementations out there) but mandatory 2FA makes no sense unless you're storing high risk information like health records, prescribing details, or financial information. The reason for us to add optional 2FA would be for another layer of security for people like journalists, activists, or people with domestic abuse or an ex who keeps trying to get into their account: it offers more protection than a password alone, but in addition to the people who can't use it for whatever reason, it's an added layer of annoyance when logging in even if you knew for certain that you are a higher value target. There's absolutely no reason for us to make it mandatory.

Post a comment in response:

This account has disabled anonymous posting.
(will be screened if not validated)
If you don't have an account you can create one now.
HTML doesn't work in the subject.
More info about formatting

If you are unable to use this captcha for any reason, please contact us by email at support@dreamwidth.org