2FA login issues on Chrome mobile
- Dominant language
- TypeScript
- Stars
- 13.8k
- Forks
- 2k
- Avg merge
- 3d 9h
- Merged PRs (30d)
- 393
Description
### Steps To Reproduce
1. Open vault.bitwarden.com on your Android phone
2. Log in using username/pass
3. Be presented with the 2FA page
4. Open native phone dialog for 2FA automatically
5. Touch the phone back with your [Yubikey NFC Fido U2F key](https://www.amazon.com/Yubico-Security-USB-Factor-Authentication/dp/B07M8YBWQZ)
6. See error and go to step 2 again and start over
### Expected Result
To be logged in
### Actual Result
Can't log in
```
An error has occurred.
WebAuth Error: NotAllowedError: The operation either timed out or was not allowed. See:
https://www.w3.org/TR/webauthn-2/#sctn-privacy-considerations-client.
```
### Screenshots or Videos

https://user-images.githubusercontent.com/717076/138600303-2686173d-a6cd-4d64-84c5-86ecdbbc8f32.mp4
### Additional Context
Pixel 4a Android 12
Tried on Chrome and also on Firefox
### Operating System
Android
### Operating System Version
12
### Web Browser
Chrome, Firefox
### Browser Version
95.0.4638.50
### Build Version
Android 12; Pixel 4a Build/SP1A.210812.015
Contributor guide
Research direction
Reproduce the 2FA flow at vault.bitwarden.com on a Pixel 4a running Android 12 with Chrome or Firefox and a YubiKey NFC FIDO U2F key. Start by investigating the reported WebAuthn NotAllowedError; done means completing login successfully through the 2FA prompt without restarting.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- android, typescript
- Domain
- authentication, mobile-dev
- Issue type
- Bug
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 35/100