For example, something that is too complex for your comfort level, a security concern, or maybe your hardware can’t keep up with the service’s needs?
For example, something that is too complex for your comfort level, a security concern, or maybe your hardware can’t keep up with the service’s needs?
What’s the problem with it being local-only? Just backup the secrets, and you’re good? Or is backing it up the “online” element?
Like a password manager, I can’t trust myself for the seeds to get misplaced.
First, that’s what recovery codes are.
Second, that’s what backups are for.
Frankly, given what we’ve seen with LastPass this past year alone, there is absolutely no one I would trust to host any of my credentials.
My TOTP seeds go in a Keepass database that has a very long passphrase. That database is then sync’d across devices with syncthing and included in encrypted backups.