[1] https://github.com/andOTP/andOTP
I'm not impressed with Authy's privacy policy, especially this part which mirrors the Google issues:[3]
> We use the information we gather from you to monitor for unusual or suspicious activity in your account, to communicate with you about your account, and as additional information that can be used to validate who you are if you need to recover your account or your account has been or may be compromised.
Authy also collects and shares more of your private information than most OTP apps:[3]
> When you use our app we collect: Your phone number, device information, and email address.
> We also share your information with our third party service providers as necessary for them to provide their services to us. We may also have to share your information with third parties if required to do so by law.
> Your information will be transferred to the U.S.
my fall-back is Microsoft Authenticator.
2. If you get a new device, you need to un-enrol and re-enrol in all 2fa providers with g authenticator - it's a nightmare. Very hard if the old device got fatally dropped in a pool! I know at least with Authy you can carry the tokens to a new device.
This is relatively new - a few years ago Authenticator did not support this.
Oh, and make sure before you use the emergency device, time is synced - codes won't work otherwise.
Thanks, this was around when my device went for a swim.
I use Authy these days.
https://android.stackexchange.com/questions/20899/why-does-t...