You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Backup codes should be disabled when TOTP is disabled, per #75. The 2fa_available_providers field will include Backup Codes even when it should be disabled, though.
The potential problem was touched on briefly in #75 (comment), but I don't think we had a tangible problem until now. IIRC, switching to two_factor_enabled_providers_for_user should solve this issue while preserving the intent of #75
The text was updated successfully, but these errors were encountered:
Backup codes should be disabled when TOTP is disabled, per #75. The
2fa_available_providers
field will include Backup Codes even when it should be disabled, though.That problem is made a bit more obvious by #157 and #161 (comment). When TOTP/WebAuthn is disabled, our custom UI should show the
Please enable Two-Factor Authentication before enabling backup codes
message in the Backup Codes card, but it currently doesn't. TheYour account has elevated privileges...
message should also be shown when TOTP/WebAuthn are disabled, but it isn't.The potential problem was touched on briefly in #75 (comment), but I don't think we had a tangible problem until now. IIRC, switching to
two_factor_enabled_providers_for_user
should solve this issue while preserving the intent of #75The text was updated successfully, but these errors were encountered: