One more step to unhitching from Google…
Right now the only option I see in F-Droid is Aegis.
I’m not sure what to actually look for side from checking for unexpected permissions and reasonably frequent updates.
Hopefully something I can sync with a GNOME app…
Aegis
Ente
Ente
Ente
Ente
Ente
Ente
Gans
I use Aegis, automatically backed up every time a new key is added. Was using Authy for a while, but they’re going down the enshittification hole, so I dumped them.
Bitwarden as Vaultwarden enables TOTP.
Aegis for time codes, Nitrokey for physical 2FA tokens.
Yubikey. It supports TOTP as well as passkeys. Plus is a physical device separate from my phone. Recommend getting 2 to have 1 as backup
Yubikeys. I think everyone should get a couple (need 2 in case 1 lost)
FreeOTP+
If i remember correctly sone tokens it can’t read? Cant backup? Clunky interface? I looked at it, but decided against it.
I use Proton Authenticator on an iPhone without an account and I am satisfied
Ente Auth
I primarily use GNOME Authenticator, but after an inopportune crash, I now also run 2FAuth on my home server as a backup, and now just hope that I remember to do the export/import dance going forward.
I use
pass
for my passwords, and it has anotp
extension that I’ve been using more and more. I used to use aegis but I have needed to switch phones one too many times without having access to the previous phone to be comfortable with phones for 2fa.Of course, this isn’t as secure as a truly separate OTP solution, but it’s still better than no OTP/2FA. And I can easily enough back up and restore my 2fa access over the internet, even on a new computer (albeit I need to also backup a PGP key that can decrypt the password store to truly be portable).
This is what I do. If someone can figure out pass with my password protected gpg, plus my passwords are partials (I salt them), and otp then they can have my access
plus my passwords are partials (I salt them)
I’m curious how you make that work - do you just remember the salts, store them separately, or what? I have like 50-70 passwords in my store currently, there’s no way I’m remembering a (true random) salt for each one.
My salt is just a memorized password I put in addition to the one stored in pass
A combination of Yubikey and Enpass (I got Enpass back when it was $15 for perpetual).
Woahhh defo not enough love for Ente Auth in tgese comments. Highly recommend! Its got a beautiful and intuitive UI, completely open-source and is back by super active devs and community 💚
I use Aegis, it works well