You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
At the moment, I'm syncing the backup to OneDrive (a very nice feature that saves me a little automation) however the backup file is not particularly secure. The JSON file gives away a lot of information. I don't know what the TOTP secrets look like normally but it's possible these are encrypted. Other information in the file is not. Anyone who accesses the json file can see a list of services I use and my account names.
Why do you want this feature in Authenticator?
It would be better if the JSON file was fully encrypted using a key. I use a key to unlock the addon, can the same key be used to encrypt the entire json file during the backup process? Obviously you'd need to also ask for the key during backup import.
The text was updated successfully, but these errors were encountered:
Describe the feature you want:
At the moment, I'm syncing the backup to OneDrive (a very nice feature that saves me a little automation) however the backup file is not particularly secure. The JSON file gives away a lot of information. I don't know what the TOTP secrets look like normally but it's possible these are encrypted. Other information in the file is not. Anyone who accesses the json file can see a list of services I use and my account names.
Why do you want this feature in Authenticator?
It would be better if the JSON file was fully encrypted using a key. I use a key to unlock the addon, can the same key be used to encrypt the entire json file during the backup process? Obviously you'd need to also ask for the key during backup import.
The text was updated successfully, but these errors were encountered: