Skip to content

Commit

Permalink
update
Browse files Browse the repository at this point in the history
  • Loading branch information
pilcrowonpaper committed Jul 14, 2024
1 parent b02b92f commit d5b30ba
Showing 1 changed file with 4 additions and 0 deletions.
4 changes: 4 additions & 0 deletions src/posts/how-i-would-do-auth.md
Original file line number Diff line number Diff line change
Expand Up @@ -85,3 +85,7 @@ Login throttling and rate limiting would be pretty similar to login and will be
I think both single-use OTPs and links work and their expiration will be similar to email verification. I would hash the code or token just to be safe, especially since it's not really hard.

2FA should be required even for password resets.

## Did I miss anything?

Let me know on Twitter or Discord if there's anything I should add to the post.

0 comments on commit d5b30ba

Please sign in to comment.