mirror of
https://github.com/floccusaddon/floccus.git
synced 2026-04-25 22:26:06 +03:00
[GH-ISSUE #658] Does floccus bypass my nextcloud 2FA setup? #432
Labels
No labels
browser-specific
bug
correctness issues
enhancement
feature: Google Drive
feature: Linkwarden
feature: git
feature: nextcloud-bookmarks
feature: tabs
feature: webdav
help wanted
native-app
priority: high
priority: low
priority: medium
pull-request
question
question
stale
upstream
waiting for more information
wontfix
🙁 Not following issue template
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
starred/floccus#432
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @ghost on GitHub (Sep 14, 2020).
Original GitHub issue: https://github.com/floccusaddon/floccus/issues/658
hello i have seen that floccus have successfully logged himself to my Nexcloud, my question is how does it do that
since there is passwordless and 2fa enabled on my servers.
Does that mean the bookmarks app (so the API for floccus) bypass totally my security in two step ? (i understand technical language i just want to understand the security mechanism for this connection))
@marcelklehr commented on GitHub (Sep 15, 2020):
Hello @aelisya
By signing in once to setup floccus (possibly with 2fa) , a token ("app password" in nextcloud speak) is created for floccus, which it uses to connect to your nextcloud. You can review and revoke all your app passwords in your personal settings in nextcloud.
I hope this clears things up.
@github-actions[bot] commented on GitHub (Mar 21, 2023):
This issue has been automatically locked since there has not been any recent activity after it was closed. Please open a new issue for related bugs.