Page MenuHomePhabricator

Improve user experience of Two-Factor process
Open, HighPublic

Related Objects

StatusSubtypeAssignedTask
OpenNone
StalledNone
OpenNone
ResolvedTgr
ResolvedDbrant
ResolvedMhurd
ResolvedNone
ResolvedMhurd
DuplicateNone
ResolvedMhurd
ResolvedMhurd
ResolvedMhurd
ResolvedMhurd
ResolvedMhurd
DeclinedNone
ResolvedNone
Resolved Mholloway
Resolved Niedzielski
Resolved Mholloway
OpenNone
OpenNone
ResolvedBUG REPORTNone
OpenNone
ResolvedLadsgroup
OpenNone
OpenNone
OpenTgr
OpenNone
OpenNone
OpenNone
OpenNone
Opentaavi
ResolvedReedy
Resolvedtaavi
ResolvedMarostegui
Opentaavi
OpenNone
ResolvedReedy
OpenNone
ResolvedReedy
OpenNone
OpenNone
ResolvedReedy
OpenNone
ResolvedReedy
ResolvedReedy

Event Timeline

Parent5446 raised the priority of this task from to Needs Triage.
Parent5446 updated the task description. (Show Details)
Parent5446 added subscribers: Parent5446, Aklapper.
dpatrick renamed this task from Improve UI of all forms in the OATH process to Improve user experience of Two-Factor process.May 27 2016, 2:41 AM
dpatrick set Security to None.
dpatrick added a project: Security-Team.
dpatrick moved this task from Incoming to Epics in progress on the Security-Team board.
Dereckson triaged this task as High priority.EditedMay 4 2017, 3:15 PM
Dereckson subscribed.

I'd like we invest time for that. Currently, we're asking users to setup 2FA, and they do stupid stuff like wipe their phone.

I've just tested the GitHub flow, I got three strong hints I need to backup the codes: 1. web / setup 2 factor 2. web / immediately after 3. mail. It also offers SMS alternative, but this part is perhaps less important than secure the scratch codes, and SMS can't be considered as highly trustable,