GitHub urges its user base to toggle on two-factor authentication (2FA) after deprecating password-based authentication for Git operations. The company’s Chief Security Officer Mike Hanley recommends using one of several 2FA options available on GitHub, including physical security keys, virtual security keys built into devices such as phones and laptops, or Time-based One-Time Password (TOTP) authenticator apps. While SMS-based 2FA is also available, GitHub urges users to choose security keys or TOTPs wherever possible.”]

