Hardware Keys (2FA)

Phishing‑resistant second factor for critical accounts.

When to use

When not to use

What to look for

OPSEC tips

Common mistakes

Setup (generic)

  1. Enroll two keys per account (primary + backup).
  2. Record recovery codes into secure storage.
  3. Remove SMS/email fallback where possible.

Related: Password Manager, Encrypted Email