← Back to context

Comment by dckx

2 days ago

> However, it’s all via an Authenticator app on the phone.

Why not save the secret on your laptop and generate the OTP on your laptop?

I use MS Authenticator for work too. It doesn't do standard TOTP, at least not for Entra. The QR codes don't contain the secret. IDK that anyone has been able to exfiltrate a secret and generate codes with a third party app.

I personally use an Android emulator on my laptop, which achieves the same goal. It saves and restores state automatically for quick startup.