It was a delight to hear @gruber and @glennf talk about iCloud Keychain on the latest The Talk Show. Glenn mentioned a really cool trick I want to repeat: in Safari, if you right-click or tap-and-hold on a TOTP setup QR code, you’ll get an option to set up a code generator. :)
@rmondello @glennf @gruber I’ve been hearing a lot of votes of support for iCloud Keychain, but has it received a publicly-released security audit? I’m very much intrigued due to its ease of use and integrations, but I’m very cautious these days.
@gindi @rmondello @gruber A regular criticism I make of Apple is a failure to publish security audits. I expect they hire third parties to do this on the regular. But it's not best practices to rely on internal research and external flaw discovery.