[{"data":1,"prerenderedAt":389},["ShallowReactive",2],{"blog-post-/blog/zh-cn/totp-authenticator-guide":3,"related-posts-/zh-CN/blog/totp-authenticator-guide":108},{"id":4,"title":5,"author":6,"body":7,"category":89,"date":90,"description":91,"extension":92,"featured":93,"image":94,"meta":95,"navigation":96,"path":97,"readingTime":98,"seo":99,"stem":100,"tags":101,"tools":106,"__hash__":107},"content/blog/zh-CN/totp-authenticator-guide.md","如何使用 TOTP 身份验证器：更安全的双重验证登录指南","Anything Tools Editorial",{"type":8,"value":9,"toc":80},"minimark",[10,14,18,23,26,29,48,62,65,68,71,74,77],[11,12,5],"h1",{"id":13},"如何使用-totp-身份验证器更安全的双重验证登录指南",[15,16,17],"p",{},"仅有密码很容易被重复使用、泄露或猜中。基于时间的一次性密码（TOTP）会定时生成短代码，在登录时增加第二道核验。本指南介绍设置方法和真正有用的安全习惯。",[19,20,22],"h2",{"id":21},"totp-代码的作用","TOTP 代码的作用",[15,24,25],{},"启用双重验证时，网站通常会显示二维码或设置密钥。身份验证器应用与网站使用同一密钥计算短时有效的代码；输入密码后，再输入当前代码即可。它不是密码，也不应通过消息或客服工单分享。",[19,27,28],{"id":28},"谨慎完成设置",[30,31,32,36,39,42,45],"ol",{},[33,34,35],"li",{},"登录服务，在安全或双重验证设置中开始。",[33,37,38],{},"若服务同时提供短信和验证器应用，优先选择验证器应用。",[33,40,41],{},"用可信应用扫描二维码；设置密钥只应输入该应用。",[33,43,44],{},"输入第一组代码以确认绑定。",[33,46,47],{},"将恢复代码保存在手机以外的位置。",[15,49,50,51,56,57,61],{},"测试集成时，可用 ",[52,53,55],"a",{"href":54},"/dev/totp-generator","TOTP Generator"," 了解六位代码的格式。密码本身也应使用 ",[52,58,60],{"href":59},"/dev/password-generator","Password Generator"," 创建唯一值；启用 TOTP 后也不能重复使用密码。",[19,63,64],{"id":64},"保护恢复途径",[15,66,67],{},"手机丢失或更换时，恢复代码是后备方案。可保存在密码管理器、加密文件或受保护的离线位置。不要把唯一副本和身份验证器放在同一个笔记应用中。若应用支持加密备份或第二台受信设备，应提前了解恢复流程。",[19,69,70],{"id":70},"避免常见错误",[15,72,73],{},"不要拍摄二维码、把设置密钥发给自己，也不要替他人确认代码。请让设备自动校时：明显的时钟误差会导致有效代码失败。怀疑账户受损后，移除旧设备并重新生成恢复代码。",[19,75,76],{"id":76},"总结",[15,78,79],{},"TOTP 只多一步，却能显著提升账户安全。使用唯一密码、添加身份验证器，并像保护重要凭据一样保护恢复代码。",{"title":81,"searchDepth":82,"depth":82,"links":83},"",2,[84,85,86,87,88],{"id":21,"depth":82,"text":22},{"id":28,"depth":82,"text":28},{"id":64,"depth":82,"text":64},{"id":70,"depth":82,"text":70},{"id":76,"depth":82,"text":76},"Security","2026-07-27T00:00:00.000Z","了解基于时间的一次性密码如何工作、怎样设置 TOTP 身份验证器，以及如何安全保管恢复代码。","md",false,"/blog/totp-authenticator-guide.png",{},true,"/blog/zh-cn/totp-authenticator-guide",4,{"title":5,"description":91},"blog/zh-CN/totp-authenticator-guide",[102,103,104,105],"two-factor authentication","TOTP","account security","online safety",[54,59],"OgwYgS0hs69DUo3xfS9AvmDDTGFgHE0BGTBbR5WX5HI",[109,193],{"id":110,"title":111,"author":6,"body":112,"category":89,"date":90,"description":185,"extension":92,"featured":93,"image":94,"meta":186,"navigation":96,"path":187,"readingTime":98,"seo":188,"stem":189,"tags":190,"tools":191,"__hash__":192},"content/blog/de-DE/totp-authenticator-guide.md","TOTP-Authenticator verwenden: Anleitung für sicherere Zwei-Faktor-Logins",{"type":8,"value":113,"toc":178},[114,117,120,124,127,131,148,157,161,164,168,171,175],[11,115,111],{"id":116},"totp-authenticator-verwenden-anleitung-für-sicherere-zwei-faktor-logins",[15,118,119],{},"Ein Passwort allein kann wiederverwendet, geleakt oder erraten werden. Zeitbasierte Einmalpasswörter (TOTP) ergänzen einen kurzen, regelmäßig wechselnden Code und damit eine zweite Prüfung beim Anmelden.",[19,121,123],{"id":122},"was-ein-totp-code-macht","Was ein TOTP-Code macht",[15,125,126],{},"Beim Aktivieren der Zwei-Faktor-Authentifizierung zeigt eine Website meist einen QR-Code oder Einrichtungsschlüssel. App und Website berechnen damit denselben kurz gültigen Code. Geben Sie ihn nach dem Passwort ein. Er ist kein Passwort und darf nie weitergegeben werden.",[19,128,130],{"id":129},"sorgfältig-einrichten","Sorgfältig einrichten",[30,132,133,136,139,142,145],{},[33,134,135],{},"Melden Sie sich an und öffnen Sie die Sicherheits- oder Zwei-Faktor-Einstellungen.",[33,137,138],{},"Wählen Sie eine Authenticator-App statt SMS, wenn beides angeboten wird.",[33,140,141],{},"Scannen Sie den QR-Code mit einer vertrauenswürdigen App; den Schlüssel geben Sie nur dort ein.",[33,143,144],{},"Bestätigen Sie die Verbindung mit dem ersten Code.",[33,146,147],{},"Bewahren Sie Wiederherstellungscodes getrennt vom Telefon auf.",[15,149,150,151,153,154,156],{},"Beim Testen einer Integration erklärt ",[52,152,55],{"href":54}," das sechsstellige Format. Erstellen Sie außerdem mit ",[52,155,60],{"href":59}," ein einzigartiges Passwort.",[19,158,160],{"id":159},"den-wiederherstellungsweg-schützen","Den Wiederherstellungsweg schützen",[15,162,163],{},"Wiederherstellungscodes helfen bei Verlust oder Austausch des Telefons. Speichern Sie sie in einem Passwortmanager, einer verschlüsselten Datei oder an einem geschützten Offline-Ort.",[19,165,167],{"id":166},"häufige-fehler-vermeiden","Häufige Fehler vermeiden",[15,169,170],{},"Fotografieren Sie keinen QR-Code, schicken Sie den Schlüssel nicht an sich selbst und bestätigen Sie keinen Code für andere. Automatische Uhrzeit verhindert Fehler durch eine stark falsch eingestellte Uhr.",[19,172,174],{"id":173},"fazit","Fazit",[15,176,177],{},"TOTP ist ein kleiner Zusatzschritt mit großem Sicherheitsgewinn. Kombinieren Sie ein einzigartiges Passwort, eine Authenticator-App und geschützte Wiederherstellungscodes.",{"title":81,"searchDepth":82,"depth":82,"links":179},[180,181,182,183,184],{"id":122,"depth":82,"text":123},{"id":129,"depth":82,"text":130},{"id":159,"depth":82,"text":160},{"id":166,"depth":82,"text":167},{"id":173,"depth":82,"text":174},"Erfahren Sie, wie zeitbasierte Einmalpasswörter funktionieren, wie Sie einen TOTP-Authenticator einrichten und Wiederherstellungscodes schützen.",{},"/blog/de-de/totp-authenticator-guide",{"title":111,"description":185},"blog/de-DE/totp-authenticator-guide",[102,103,104,105],[54,59],"hCKm2L4Jv4RH9EV2CAV9JFyTdWJ-EJizPuvkQuGqEqw",{"id":194,"title":195,"author":6,"body":196,"category":89,"date":377,"description":378,"extension":92,"featured":93,"image":379,"meta":380,"navigation":96,"path":381,"readingTime":382,"seo":383,"stem":384,"tags":385,"tools":387,"__hash__":388},"content/blog/en/how-to-generate-secure-passwords-in-your-browser.md","How to Generate Secure Passwords in Your Browser",{"type":8,"value":197,"toc":367},[198,201,204,211,215,218,221,236,239,243,246,260,263,267,270,273,287,290,294,311,314,318,321,324,328,336,340,357,361],[11,199,195],{"id":200},"how-to-generate-secure-passwords-in-your-browser",[15,202,203],{},"Weak passwords are still one of the easiest ways for attackers to get in. Reused credentials, short patterns, and predictable substitutions make accounts far easier to compromise than most people realize.",[15,205,206,207,210],{},"A browser-based password generator can help you create stronger credentials quickly. The ",[52,208,209],{"href":59},"Anything Tools Password Generator"," is useful when you want to generate random passwords, adjust the character mix, and copy the result immediately.",[19,212,214],{"id":213},"what-makes-a-password-strong","What makes a password strong",[15,216,217],{},"A strong password is not just “complicated-looking.” It should have enough length and enough unpredictability.",[15,219,220],{},"In practical terms, that usually means:",[222,223,224,227,230,233],"ul",{},[33,225,226],{},"a longer length",[33,228,229],{},"a varied character set",[33,231,232],{},"no dictionary words or obvious names",[33,234,235],{},"no reuse across important accounts",[15,237,238],{},"Length often matters more than decorative complexity. A long random password is better than a short password with one number and one symbol added at the end.",[19,240,242],{"id":241},"common-mistakes-people-still-make","Common mistakes people still make",[15,244,245],{},"These patterns are everywhere:",[222,247,248,251,254,257],{},[33,249,250],{},"reusing one password across many sites",[33,252,253],{},"changing only one character between accounts",[33,255,256],{},"using birthdays, names, or keyboard patterns",[33,258,259],{},"saving a “temporary” weak password and never replacing it",[15,261,262],{},"Attackers and automated tools are very good at guessing these patterns.",[19,264,266],{"id":265},"why-browser-generation-is-useful","Why browser generation is useful",[15,268,269],{},"For many people, the hardest part is not knowing passwords should be strong. The hardest part is generating them consistently.",[15,271,272],{},"A browser tool lowers friction. You can:",[222,274,275,278,281,284],{},[33,276,277],{},"generate a password on demand",[33,279,280],{},"change the length quickly",[33,282,283],{},"include or exclude symbols depending on the site",[33,285,286],{},"copy the final result into your password manager or signup form",[15,288,289],{},"That simple workflow makes secure behavior easier.",[19,291,293],{"id":292},"a-practical-setup","A practical setup",[30,295,296,299,302,305,308],{},[33,297,298],{},"Open a password generator.",[33,300,301],{},"Choose a long length appropriate for the account.",[33,303,304],{},"Include upper and lower case letters, numbers, and symbols when the site supports them.",[33,306,307],{},"Generate a fresh password.",[33,309,310],{},"Save it in a trusted password manager.",[15,312,313],{},"The generator creates the password. The password manager helps you avoid reuse.",[19,315,317],{"id":316},"when-to-avoid-overcomplication","When to avoid overcomplication",[15,319,320],{},"Some services still have odd password rules. They may reject certain symbols or limit length. In those cases, adapt the output, but do not fall back to something predictable.",[15,322,323],{},"A good generator gives you enough control to meet those rules without collapsing into weak patterns.",[19,325,327],{"id":326},"related-browser-tools","Related browser tools",[15,329,330,331,335],{},"If you also work with encoded tokens, copied credentials, or technical setup data, ",[52,332,334],{"href":333},"/dev/base64","Base64 Tool"," can be useful in adjacent workflows. It is not a password tool, but it often appears in developer-oriented account setup tasks.",[19,337,339],{"id":338},"best-practices-for-2026","Best practices for 2026",[222,341,342,345,348,351,354],{},[33,343,344],{},"use a unique password for every important account",[33,346,347],{},"prefer random generation over memorable patterns",[33,349,350],{},"store passwords in a manager instead of inventing your own system",[33,352,353],{},"upgrade old reused passwords over time",[33,355,356],{},"enable multi-factor authentication whenever possible",[19,358,360],{"id":359},"conclusion","Conclusion",[15,362,363,364,366],{},"Generating secure passwords in the browser is one of the easiest upgrades you can make to your security routine. The biggest win is consistency: every new account gets a fresh, strong credential. If you want a quick workflow, start with the ",[52,365,209],{"href":59},".",{"title":81,"searchDepth":82,"depth":82,"links":368},[369,370,371,372,373,374,375,376],{"id":213,"depth":82,"text":214},{"id":241,"depth":82,"text":242},{"id":265,"depth":82,"text":266},{"id":292,"depth":82,"text":293},{"id":316,"depth":82,"text":317},{"id":326,"depth":82,"text":327},{"id":338,"depth":82,"text":339},{"id":359,"depth":82,"text":360},"2026-03-24T00:00:00.000Z","Learn how to create strong random passwords in the browser, avoid weak patterns, and keep your password workflow more private.","/blog/how-to-generate-secure-passwords-in-your-browser.png",{},"/blog/en/how-to-generate-secure-passwords-in-your-browser",null,{"title":195,"description":378},"blog/en/how-to-generate-secure-passwords-in-your-browser",[60,89,386],"Privacy",[59],"qKVFuLyxRjYzIOYx81MkcQyG05bdwdfU02Tx65HYNMM",1785196265122]