Install Steam
login
|
language
简体中文 (Simplified Chinese)
繁體中文 (Traditional Chinese)
日本語 (Japanese)
한국어 (Korean)
ไทย (Thai)
Български (Bulgarian)
Čeština (Czech)
Dansk (Danish)
Deutsch (German)
Español - España (Spanish - Spain)
Español - Latinoamérica (Spanish - Latin America)
Ελληνικά (Greek)
Français (French)
Italiano (Italian)
Bahasa Indonesia (Indonesian)
Magyar (Hungarian)
Nederlands (Dutch)
Norsk (Norwegian)
Polski (Polish)
Português (Portuguese - Portugal)
Português - Brasil (Portuguese - Brazil)
Română (Romanian)
Русский (Russian)
Suomi (Finnish)
Svenska (Swedish)
Türkçe (Turkish)
Tiếng Việt (Vietnamese)
Українська (Ukrainian)
Report a translation problem
Agreed. This is a HUGE security risk. Anyone who has your phone can INSTANTLY access your Steam account.
At least with the previous code method they still need your password, so losing your phone isn’t a huge risk.
edit: I thought y'all were talking about how you can login to the app itself without providing any 2fa
Codes are no longer needed, since whoever stole the phone can just scan the QR to login, since the app can no longer logout.
Meaning the phone thief doesn’t even need the login details or password.
And since they now have access to your account on the PC, they can change the password, registered email, registered phone number, security questions & answers, refresh & invalidate the Recovery Codes, literally everything needed in order to recover our account is invalidated.
This is a simple fix. All they need to do is make it so that they need to enter the Family Share code to enter the QR Code Scanner/Authenticator.
And if they forget their Family Share Code, steam support can be more than happy to help them out.
Or! Just allow us to log out, which disables the QR scanner, but retain the code generator, just like in the old app.
This way, 2-Factor is preserved, since it requires both the password and the code to login.
Valid point.
I think they are trying to add in QR scanning for some reason, maybe to keep up with standards of the modern way?
People have asked for it for years.
And if the 2FA code generator only works while logged in, what even is the point when the QR scanner is right there?
Yes I know its hard to please everyone all the time. But the default tab was just a bad default. Change it.