MFA - Push Notification for Auth
MFA - Push Notification for Auth
Feature request - MFA: push authentication
When i login on another device just ask my proton auth or proton pass logged in device (mobile phone preferred)
Are you trying to log in?
Yes/no? Press the number you see on screen:
1 , 13, 67
with a number on the device im trying to login matching one of those
-
Mikael B. Neimann
commented
Push notification auth is a great convenience when using the authenticator on another device and to help new users to switch to using Proton.
-
Sturla Hansen
commented
Proton auth not having this kind of basic phishing resistance is kind of shocking.
-
timon1235 commented
How it would work:
- Users receive a push notification on trusted devices (phone, smartwatch) when a login attempt is made.
- One-tap approval ("Allow"/"Deny")—no code entry needed.
- Optional: Include context (e.g., location, device, time of login attempt) in the notification.Benefits:
Faster: No manual code copying.
User-friendly: Approve logins from your lock screen or Apple Watch.
Secure: Push 2FA is more phishing-resistant than SMS and more convenient than TOTP.
Modern: Aligns with industry standards (1Password, Bitwarden, LastPass).