Skip to content

2FA and security key support #24

@db-vol-1

Description

@db-vol-1

Its extremely important to have 2FA and other controls in the event a user account is compromised.

Ideally I would like to have:

  • Standard browser biometric/security key support
  • OTP app
  • Backup codes (required for the above)
  • A pin to unlock the admin panel for x amount of time. I've seen a few platforms use this and its an underrated security measure as it buys valuable time assuming that pin input triggers the proper alarms and rate limits.

Would likely require some level of editing to current database. I will consider moving account info to a separate database but that means another refactor of backed systems.

Metadata

Metadata

Assignees

No one assigned

    Labels

    SecurityVulnerabilities and other security issues.
    No fields configured for Feature.

    Projects

    Status

    Backlog

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions