Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

MFA is a great option to provide, and I would even suggest it should be default on, but what's the harm in allowing the user to opt out of MFA?

If available, it seems to me it would be the best option for this demographic.



At least one reason: cyber-security insurance policies are starting to mandate MFA, because they are tired of paying out on insurance claims.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: