Ask HN: Fastmail 2fa via Google Authenticator useless? Fastmail supports 2fa via Google Authenticator (and alike). However, according to their documentation: "Before you can enable two-step verification, you must add a recovery phone to your account. This is to prevent you from being locked out of your account should you ever lose access to your main verification device. You get a code sent to your phone instead to complete your second step when you log in." Doesn't this defeat the purpose of having Google Authenticator (or any other 2fa app)? If I understand this correctly, they seem to be switching back to SMS 2fa if the authenticator fails. |