Authenticator: Click to show code. Hide all by default.
Currently, android Proton Authencator can work in one of two modes:
1. Hide all codes and never display the code in the UI (even when clicked).
2. Show all codes at all times.
But this is not enough.
If you hide all your codes, you can only copy the code to the clipboard and use it on your phone/device. If you show all codes, you expose yourself to over-the-shoulder snooping.
A very common use case is that someone wants to keep all codes hidden by default but reveal a particular code when it's time to use it, when the user clicks on a particular code. This is how most competing OTP authenticators work, because it's simply a best security practice which allows the user to use the Authenticator with other devices (desktops, tablets, etc.).
Change suggestion:
1. Make all codes hidden by default.
2. When a user clicks on a particular code, reveal that code only.
-
Gary N.
commented
I think this is very important for more elderly users like me. I have declining eyesight, memory, and cognition. While looking back and forth between the Authenticator on my phone and the desktop monitor, it's easy to lose track of which code I need to enter. This simple enhancement can help a large percentage of your user base. User J's idea seems to be a very good implementation.
-
J
commented
Single Tap - Copy
Double Tap - View