John Dudmesh

Results 2 comments of John Dudmesh

I'd like to understand "_Removing the TOTP code requires a privileged session though_". At the moment I can link/unlink a TOTP app at AAL1 - this isn't a privileged session...

Ah, that fixed it, thanks. I wonder if it would be possible for Ory to throw an error if the user has linked a TOTP app but the AAL requirement...