4 Comments
User's avatar
Julio Merino's avatar

I'm probably in the 10% weirdos camp because I find this brilliant 🙃.

But one thing that isn't clear to me from reading the post (OK, OK, I stopped half-way through because it's *long*): when do you actually send the notifications? In my mind, you'd send them like 5 minutes before the interesting codes become valid so that the receiver can manually open the app and *type* the neat code! Not sure if that's what you are doing.

Expand full comment
Jacob Bartlett's avatar

That’s a great idea! I just sent them when the 2FA codes appeared actually - tbh it’s probably mildly insecure to do it another way. But makes it all the more fun when you catch it in the wild!

Expand full comment
Rasmus's avatar

This is great! 😄 A case of doing it because it's interesting - love it! On another note, I've been mildly stunned by how often the same numbers come up when using Microsoft Authenticator. They're only using two digits for their 2FA so maybe it isn't that weird that I see the same numbers from time to time. Could it have to do with their chosen time interval, how that is divisible by the day and when I usually need to log in 🤷🏼 Or perhaps it's just a perceived pattern that actually doesn't exist (most likely)..

Expand full comment
Chris Ondo's avatar

this was a delightful read. i enjoyed how often you shared implementation details! there's a lot, especially on ios, in the mobile space i need to catch up on, especially considering this article inspires me to put together a fun project sometime soon

Expand full comment