Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

We have reduced MFA again and use very strong passwords and good password managers protected by yubikeys instead. Many APIs are still accessible without MFA that could lead to data exfiltration anyway. The workaround for that to register privileged applications is not really too convincing and just not flexible enough.


Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: