• 0 Posts
  • 4 Comments
Joined 1 year ago
cake
Cake day: June 15th, 2023

help-circle
  • It’s good to be cautious about nonprofit organizations, but in the case of DSI, they’ve been around a while, have a good reputation, and score well on third-party sites like Charity Navigator.

    I’d also like to make clear that their Dark Sky Sanctuary certification isn’t a scientific one based solely on light pollution, but also that the local/state/etc governments have implemented certain policies to help ensure the area remains a dark sky area. It’s best to think of it akin to something like a designated “wilderness” or “wildlife sanctuary” area, but for starry skies. Because DSI works with governments to certify these areas, you’re right that certain regions are likely to be more represented, and some not represented at all due to geographic and political barriers.

    P.S. I’m not affiliated with DSI, but have used their accreditations in the past to pick wilderness areas to visit for hiking/camping/photography.




  • Arguably, if you use 2FA to access your passwords in 1password, there’s little difference between storing all your other OTPs in 1password or a separate OTP app. In both cases, since both your secret passwords and OTPs are on the same device (your phone), you lack a true second factor. The most likely way someone would gain access to 1password secured with 2FA is if they control your device and it’s been compromised, and having your OTPs separated wouldn’t provide additional protection there. Thankfully, the larger benefit of OTPs for most people is that they are one-time-use, not that they originate from a second factor.

    There is one theoretical situation I can think of where having your OTPs and passwords separate could be an advantage, and that’s if someone gained all your 1password login details, including the 2FA secret key. But for someone able to gather that much sensitive intel, I’m not sure how much more of a challenge an authenticator app would be.

    If you truly feel you need a second factor though, you’ll probably want to look at something like a Yubikey or Titan. I’ve considered getting one to secure my 1password vault to reduce the risk of a lost phone compromising my vault.