I don't understand how having a separate account own the canary makes it any better. Couldn't someone take over that account just as easily as yours? I'm probably missing something obvious. :) Just wondering out loud. I find these things pretty interesting given all the talk about them lately.
Well the seperate account is an extra layer of security. I know its not best practice but this account I just used a standard password varient for. That account it would be something completely random that only 2 people would know.
That makes a lot of sense.
I suppose they could but it’s less likely that both accounts get taken over. As long as I keep a few admin accounts open it keeps my options open and keeping that function separate makes sense to me for now.
(post is archived)