Skip to content

Arena

Authenticator Apps arenaAuthenticator Apps

TOTP and passkey apps — the software second factor on a billion phones: code generation, passkey storage and sync, encrypted backup, and the export/import openness that decides whether your 2FA seeds are portable or hostage. The market splits cleanly: platform giants ship free but closed (Google Authenticator's QR-transfer-only export, Authy's no-export lock-in and 2024 desktop shutdown), password managers absorb 2FA into the vault (1Password, Bitwarden, Proton Pass), and open-source challengers compete on portability and self-hosting (Ente Auth, 2FAS, Bitwarden's self-hostable server). Judged on TOTP fundamentals, passkey support, sync/backup, portability, surfaces (watch, desktop, browser autofill), self-hosting, security posture (E2EE design, audits, breach alerting), and the agent angle: which vaults an agent can actually query for a code via CLI or local API.

55 user stories · 440 judged cells · updated 2026-09-15 · Evidence as of 2026-09-15

Buyer checklist →Procurement report →

Leaderboard — every product ranked by evidenceLeaderboard

Rank by
1Bitwarden logoBitwarden
free-tier
vs 1Password
63/100
21Password logo1Password
subscription-per-seat
vs Bitwarden
70/100
3Ente Auth logoEnte Auth
free
vs Bitwarden
19/100
4Proton Pass logoProton Pass
free-tier
vs Bitwarden
17/100
52FAS logo2FAS
free
vs Bitwarden
10/100
6Authy logoAuthy
free
vs Bitwarden
2/100
7Google Authenticator logoGoogle Authenticator
free
vs Bitwarden
untested
8Microsoft Authenticator logoMicrosoft Authenticator
free
vs Bitwarden
0/100

Best by user type — persona-weighted winnersBest by user type

Per persona, the product with the highest persona-weighted coverage over just that persona's stories — not the same ranking as the overall PA Score leaderboard above.

Best for everyday-user

Ente Auth logo

Ente Auth

52/100

Runner-up: Authy logo Authy (43/100)

8 everyday-user stories scored

Best for power-user

Ente Auth logo

Ente Auth

37/100

Runner-up: Bitwarden logo Bitwarden (28/100)

8 power-user stories scored

Best for security-engineer

Ente Auth logo

Ente Auth

35/100

Runner-up: 2FAS logo 2FAS (33/100)

3 security-engineer stories scored

Best for it-admin

Bitwarden logo

Bitwarden

36/100

Runner-up: Ente Auth logo Ente Auth (17/100)

4 it-admin stories scored

Best for ai-native

Bitwarden logo

Bitwarden

39/100

Runner-up: 1Password logo 1Password (29/100)

32 ai-native stories scored

Story matrix — every product × every judged storyStory matrix

55/55 stories shown · legend

Agenticness — how well agents can access and operate the productAgenticness

Agent access

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Agenticness — how well agents can access and operate the productPoint an agent at llms.txt or agent-oriented docsai-native
none
0/10
none
0/10
none
0/10
fullT
9/10
fullT
9/10
none
0/10
fullT
7/10
fullT
9/10
Agenticness — how well agents can access and operate the productRun the product headlessly / in CI for automationai-native
none
0/10
none
0/10
none
0/10
fullT
8/10
fullT
8/10
partialT
6/10
partialT
3/10
none
0/10
Agenticness — how well agents can access and operate the productPlug MCP servers into this product so it can use their toolsai-native
n/a
n/a
n/a
n/a
n/a
n/a
n/a
n/a
Agenticness — how well agents can access and operate the productConnect an agent via an official MCP serverai-native
none
0/10
none
0/10
none
0/10
fullT
8/10
fullT
9/10
none
0/10
none
0/10
none
0/10
Agenticness — how well agents can access and operate the productUse an official CLIai-native
none
0/10
none
0/10
none
0/10
fullT
9/10
fullT
9/10
fullT
7/10
partialT
6/10
none
0/10
Agenticness — how well agents can access and operate the productDrive the product through a documented public APIai-native
none
0/10
none
0/10
disputedD
2/10
fullT
9/10
fullT
8/10
partialT
5/10
partialT
3/10
none
0/10
Agenticness — how well agents can access and operate the productIssue scoped/least-privilege API credentials for an agentai-native
none
0/10
none
0/10
none
0/10
partialT
6/10
partialT
4/10
none
0/10
none
0/10
none
0/10
Agenticness — how well agents can access and operate the productBuild against official SDKsai-native
none
0/10
none
0/10
disputedD
3/10
fullT
8/10
partialT
4/10
none
0/10
none
0/10
none
0/10
Agenticness — how well agents can access and operate the productSubscribe to events via webhooksai-native
n/a
n/a
none
0/10
none
0/10
none
0/10
none
0/10
n/a
none
0/10

Agentic features

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Agenticness — how well agents can access and operate the productGet AI-generated insights and suggestions from my data inside the productai-native
n/a
n/a
n/a
none
0/10
none
0/10
none
0/10
n/a
n/a
Agenticness — how well agents can access and operate the productSet up automations that run autonomously in the backgroundai-native
none
0/10
none
0/10
none
0/10
partialT
5/10
none
0/10
none
0/10
none
0/10
none
0/10
Agenticness — how well agents can access and operate the productDelegate tasks to a built-in AI assistant inside the productai-native
n/a
n/a
n/a
none
0/10
none
0/10
n/a
n/a
n/a
Agenticness — how well agents can access and operate the productOperate the product with natural-language commandsai-native
none
0/10
none
0/10
none
0/10
partialT
6/10
fullT
8/10
none
0/10
none
0/10
none
0/10

Api quality

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Agenticness — how well agents can access and operate the productExplore an interactive API reference with runnable examplesai-native
n/a
n/a
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10
Agenticness — how well agents can access and operate the productDownload a machine-readable API spec (OpenAPI or equivalent)ai-native
n/a
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10
Agenticness — how well agents can access and operate the productTest against a sandbox environment without touching production dataai-native
n/a
n/a
n/a
none
0/10
none
0/10
n/a
n/a
n/a
Agenticness — how well agents can access and operate the productRely on versioned APIs with a documented deprecation policyai-native
none
0/10
none
0/10
partialT
4/10
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10

Automation depth — how much of the product can run unattendedAutomation depth

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Automation depth — how much of the product can run unattendedPerform bulk operations across many items at onceai-native
none
0/10
none
0/10
none
0/10
partialT
6/10
partialX
6/10
partialC
5/10
partialT
4/10
none
0/10
Automation depth — how much of the product can run unattendedDefine rules that trigger actions automatically on eventsai-native
n/a
n/a
n/a
none
0/10
none
0/10
n/a
n/a
n/a
Automation depth — how much of the product can run unattendedSchedule recurring jobs or workflowsai-native
n/a
n/a
n/a
n/a
n/a
n/a
n/a
n/a
Automation depth — how much of the product can run unattendedVersion, review, and roll back my automationsai-native
n/a
n/a
n/a
none
0/10
n/a
n/a
n/a
n/a

Openness — open source, data portability, and self-hosting storiesOpenness

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Openness — open source, data portability, and self-hosting storiesDo everything through the API that I can do in the UIai-native
none
0/10
none
0/10
none
0/10
partialC
5/10
partialT
6/10
partialT
5/10
none
0/10
none
0/10
Openness — open source, data portability, and self-hosting storiesExport all of my data in open formats and leaveai-native
disputedD
3/10
partialX
3/10
disputedD
2/10
partialC
5/10
fullC
9/10
fullC
7/10
disputedD
5/10
partialX
6/10
Openness — open source, data portability, and self-hosting storiesRead the product's source under an open licenseai-native
partialC
4/10
none
0/10
none
0/10
none
0/10
partialT
6/10
partialX
5/10
fullT
7/10
fullT
8/10
Openness — open source, data portability, and self-hosting storiesSelf-host the core productai-native
none
0/10
none
0/10
none
0/10
none
0/10
fullT
9/10
none
0/10
fullT
8/10
partialX
6/10

Passkey support — passkeys in the vault — storage, sign-in, cross-ecosystem syncPasskey support

Storage

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Passkey support — passkeys in the vault — storage, sign-in, cross-ecosystem syncThe app stores passkeys and signs me into websites and apps with them, not just TOTP codeseveryday-user
none
0/10
none
0/10
none
0/10
fullC
8/10
fullC
8/10
partialC
6/10
none
0/10
none
0/10

Sync

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Passkey support — passkeys in the vault — storage, sign-in, cross-ecosystem syncMy passkeys sync across ecosystems — iOS, Android, Windows, Linux, browsers — instead of being locked to one platform vendorpower-user
none
0/10
none
0/10
none
0/10
partialX
6/10
partialC
6/10
partialX
4/10
none
0/10
none
0/10

Portability — your secrets stay yours — open export, bulk import, device migrationPortability

Export

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Portability — your secrets stay yours — open export, bulk import, device migrationExport all my TOTP secrets in an open, readable format and leave for another app whenever I choose — no lock-inpower-user
disputedD
3/10
none
0/10
disputedD
2/10
partialC
4/10
partialC
4/10
partialC
5/10
disputedD
4/10
partialC
6/10

Import

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Portability — your secrets stay yours — open export, bulk import, device migrationImport tokens in bulk from other authenticator apps instead of re-enrolling every account by handpower-user
none
0/10
none
0/10
none
0/10
partialC
4/10
fullC
8/10
partialC
4/10
fullX
9/10
partialC
6/10

Migration

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Portability — your secrets stay yours — open export, bulk import, device migrationMoving to a new phone transfers all my tokens in one guided stepeveryday-user
disputedD
4/10
disputedD
5/10
fullX
7/10
none
0/10
partialX
6/10
partialC
3/10
fullT
7/10
fullC
7/10

Privacy posture — data-handling and privacy storiesPrivacy posture

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Privacy posture — data-handling and privacy storiesChoose where my data is stored (region/residency)ai-native
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10
partialT
5/10
partialX
7/10
Privacy posture — data-handling and privacy storiesPrevent my data from being used to train AI modelsai-native
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10
partialC
4/10
partialT
5/10
partialT
4/10
Privacy posture — data-handling and privacy storiesControl data retention and deletionai-native
partialX
4/10
partialX
3/10
none
0/10
none
0/10
partialX
3/10
partialC
5/10
partialT
7/10
partialT
6/10
Privacy posture — data-handling and privacy storiesOpt out of telemetry and usage trackingai-native
none
0/10
disputedD
4/10
none
0/10
none
0/10
none
0/10
partialX
4/10
none
0/10
fullT
8/10

Security posture — how it protects itself — app lock, E2EE design, audits, breach alertingSecurity posture

App lock

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Security posture — how it protects itself — app lock, E2EE design, audits, breach alertingThe app itself locks behind biometrics or a PIN, so a borrowed phone doesn't expose my codeseveryday-user
fullC
8/10
fullC
8/10
fullX
8/10
none
0/10
partialX
3/10
none
0/10
fullC
8/10
none
0/10

Audits

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Security posture — how it protects itself — app lock, E2EE design, audits, breach alertingThe vendor publishes independent security audits of the app and its sync protocolsecurity-engineer
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10

Monitoring

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Security posture — how it protects itself — app lock, E2EE design, audits, breach alertingThe app warns me when a service I use is breached or a stored credential is weak, reused, or exposedpower-user
none
0/10
none
0/10
none
0/10
fullC
8/10
partialC
5/10
fullC
8/10
none
0/10
none
0/10

Push

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Security posture — how it protects itself — app lock, E2EE design, audits, breach alertingPush-based sign-in includes phishing defenses — number matching, location context, and admin-enforced MFA policiesit-admin
none
0/10
partialX
5/10
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10

Self hosting — running it yourself — self-hosted servers, open-source clientsSelf hosting

Server

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Self hosting — running it yourself — self-hosted servers, open-source clientsSelf-host the sync server on my own infrastructure and keep every secret inside my perimeterit-admin
none
0/10
none
0/10
none
0/10
disputedD
4/10
fullC
8/10
none
0/10
partialT
6/10
partialX
4/10

Source

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Self hosting — running it yourself — self-hosted servers, open-source clientsThe client apps are open source, so the code handling my seeds can be inspected and community-reviewedsecurity-engineer
partialC
4/10
none
0/10
none
0/10
none
0/10
partialT
6/10
partialX
6/10
fullT
7/10
fullT
8/10

Surfaces — where it meets your workflow — IDE, CLI, web, PR comments, CI checksSurfaces

Automation

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Surfaces — where it meets your workflow — IDE, CLI, web, PR comments, CI checksAn agent can fetch a current TOTP code programmatically — via CLI or API — to complete a 2FA login inside an automated workflowai-native
none
0/10
none
0/10
none
0/10
partialT
4/10
fullT
8/10
partialT
4/10
none
0/10
none
0/10
Surfaces — where it meets your workflow — IDE, CLI, web, PR comments, CI checksExpose the vault through a local programmatic endpoint an agent can query for codes and secrets without screen-scraping the appai-native
none
0/10
none
0/10
none
0/10
fullT
8/10
fullT
8/10
partialT
6/10
none
0/10
none
0/10

Browser

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Surfaces — where it meets your workflow — IDE, CLI, web, PR comments, CI checksA browser extension autofills my TOTP codes and passkeys during login instead of making me retype themeveryday-user
none
0/10
none
0/10
none
0/10
fullX
8/10
fullX
8/10
fullX
8/10
none
0/10
fullX
7/10

Desktop

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Surfaces — where it meets your workflow — IDE, CLI, web, PR comments, CI checksA first-class desktop app gives me codes and vault access on my computer, not just on mobilepower-user
none
0/10
none
0/10
disputedD
4/10
partialX
5/10
partialT
5/10
disputedD
5/10
fullX
7/10
none
0/10

Watch

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Surfaces — where it meets your workflow — IDE, CLI, web, PR comments, CI checksRead my codes from my smartwatch without pulling out my phoneeveryday-user
none
0/10
partialC
4/10
partialT
5/10
fullC
8/10
none
0/10
none
0/10
none
0/10
partialC
5/10

Sync backup — not losing your accounts — encrypted backup, multi-device sync, recoverySync backup

Backup

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Sync backup — not losing your accounts — encrypted backup, multi-device sync, recoveryBackups are end-to-end encrypted with a key the vendor never holds, and the encryption design is documentedsecurity-engineer
none
0/10
none
0/10
partialX
4/10
none
0/10
partialC
4/10
partialC
5/10
partialT
6/10
partialX
4/10

Multi device

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Sync backup — not losing your accounts — encrypted backup, multi-device sync, recoveryMy tokens are available on my phone, tablet, and computer at the same time, kept in sync automaticallyeveryday-user
partialX
5/10
disputedD
4/10
disputedD
4/10
fullX
6/10
disputedD
6/10
partialX
5/10
fullX
8/10
partialX
6/10

Recovery

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Sync backup — not losing your accounts — encrypted backup, multi-device sync, recoveryLosing my phone doesn't lose my accounts — a documented recovery path restores my tokens on a new deviceeveryday-user
disputedD
5/10
disputedD
5/10
fullX
7/10
none
0/10
partialX
6/10
partialC
4/10
fullT
8/10
fullX
8/10

Team admin — shared and managed use — shared vaults, org policies, programmatic provisioningTeam admin

Automation

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Team admin — shared and managed use — shared vaults, org policies, programmatic provisioningAn agent can create and update vault entries — seeding new TOTP secrets, storing credentials — through documented programmatic surfacesai-native
none
0/10
none
0/10
disputedD
2/10
fullT
7/10
fullT
7/10
partialT
6/10
none
0/10
none
0/10

Policy

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Team admin — shared and managed use — shared vaults, org policies, programmatic provisioningEnforce org-wide policies — require app lock, restrict export, mandate strong master credentials — across every member's appit-admin
none
0/10
none
0/10
none
0/10
none
0/10
partialC
3/10
none
0/10
none
0/10
none
0/10

Sharing

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Team admin — shared and managed use — shared vaults, org policies, programmatic provisioningMy team can share TOTP-protected logins through shared vaults or collections with per-member access controlit-admin
none
0/10
none
0/10
none
0/10
none
0/10
partialX
6/10
partialC
5/10
partialC
4/10
none
0/10

Totp core — the TOTP fundamentals — QR enrollment, organization, offline codes, non-standard tokensTotp core

Enrollment

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Totp core — the TOTP fundamentals — QR enrollment, organization, offline codes, non-standard tokensScan a QR code and immediately start generating TOTP codes for a new accounteveryday-user
fullC
8/10
disputedD
5/10
fullX
7/10
partialC
4/10
partialX
6/10
partialX
5/10
fullC
8/10
partialT
5/10

Offline

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Totp core — the TOTP fundamentals — QR enrollment, organization, offline codes, non-standard tokensCodes generate fully offline — no network, no vendor account required just to see my TOTP codespower-user
fullC
8/10
disputedD
4/10
disputedD
4/10
disputedD
3/10
none
0/10
none
0/10
fullC
8/10
fullT
8/10

Organization

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Totp core — the TOTP fundamentals — QR enrollment, organization, offline codes, non-standard tokensKeep dozens of tokens organized — search, folders or groups, and service icons — so the right code is always two taps awaypower-user
none
0/10
none
0/10
none
0/10
partialC
3/10
partialC
4/10
partialX
4/10
partialC
6/10
partialC
6/10

Variants

StoryPersona
Google Authenticator logoGoogle Authenticator
Microsoft Authenticator logoMicrosoft Authenticator
Authy logoAuthy
1Password logo1Password
Bitwarden logoBitwarden
Proton Pass logoProton Pass
Ente Auth logoEnte Auth
2FAS logo2FAS
Totp core — the TOTP fundamentals — QR enrollment, organization, offline codes, non-standard tokensNon-standard tokens work too — Steam Guard, HOTP counters, custom periods and digit lengthspower-user
partialC
3/10
none
0/10
none
0/10
none
0/10
none
0/10
none
0/10
partialC
4/10
none
0/10
Verdict✓ fullclear evidence~ partialwith caveats! disputedevidence conflicts— noneno evidence foundn/aquestion doesn't apply to this kind of product
ProofT probedtested by usX communityusers back itC claimedvendor claim onlyD contradictedevidence disagrees⚿ auth-gatedprobe hit a live sign-in wall — verified reachable, untestable keylessly
quality 0–10 · PA Score /100 · A–D = evidence confidence · full guide

Adjacent arenas — categories often shopped togetherAdjacent arenas

Shopping this category often means shopping these too.