back

by dijksterhuis·5y ago·view on hn ↗
Services like GitHub, Gmail, Apple etc allow you to use recovery keys in place of 2FA for this exact circumstance.

The keys are generated by the service and you must make a note of them ahead of time. And keep them secure obviously. You get about 10 possible keys from GitHub iirc.

Also, some services (Google, apple) allow you to perform 2FA over multiple options like one of TOTP, phone call, SMS or other device interaction (in apple's case).

So if the device gets bricked, find a cheap replacement and Bob's your auntie.