I have this. About once a month, in the early morning hours, I hear a hard to describe, "internal" sound, as if a hard object hit my cranium. Extremely loud, but painless. 20 years ago it was distressing but now it barely wakes me up.
Why oh why haven't they pushed an update that made it easy to identify and change passwords that were leaked. They have the feature to identify weak or compromised passwords ALREADY.
Instead a user still has to create a folder for compromised secrets, change them and move them out of the folder one by one. Best of all, users would hit a bug where moving entries to/from shared folders would destroy the entry.
Edit: at least let the user (or entreprise admin) mark a vault as compromised. Must have been an absolute nightmare to get corp users to rotate their passwords.
Creator gets 55% of ad revenue, and 70% of direct contributions like superchats. Premium revenue is shared as well. Ad-blocked views count for analytics but not in ad impressions.
2 - You need to add a phone number and receive a SMS challenge, before setting up any other 2FA method
3 - With the Authy app installed on your phone, the token is instead instantly added to your account upon reception of the SMS. This cannot be disabled. Use a very particular combination of steps in the account settings to convince it to let you use a simple offline TOTP app instead.
4 - Use your recovery code every month and repeat the whole thing because somehow all other 2FA methods break simultaneously for all Twilio accounts set up with that phone number.
The experience was so awful I had to delete the App and the account.
My personal trick: as long as I'm confident that I will be able to refactor in the abstraction, I don't bother. I may or may not ever revisit that code.
https://www.youtube.com/watch?v=-zRN7XLCRhc&t=2308s
Start at 33:02 for full rant.