antonioribeiro / google2fa

A One Time Password Authentication package, compatible with Google Authenticator.
MIT License
1.83k stars 199 forks source link

The default validation window is 1, not 4 #195

Open spaze opened 6 months ago

spaze commented 6 months ago

Also describe the $window parameter in a bit more details .

Note that the TOTP RFC also recommends extending the validation window so I think a bit more details may help the reader to understand what's that for.