Since the XSS incident a couple of weeks back, I hadn’t been able to log in, or even sign up for a new account. All attempts at either ended with the spinning bear. Now, presumably because of the upgrade, I have been able to create a second account to post this, but I can’t log in to my original account, AppelTrad, because it prompts for 2-factor authentication.

This is (partially) my own fault, I suppose, for clicking the checkbox and not mentioning that it didn’t actually give me any of the promised results, while I was still logged in; since I was also able to untick the box without being prompted for anything, I just assumed it was a bit of not-yet-implemented UI and that I had reset the option for if it ever became effective, and carried on without any problems until the forced logout.

Since “2FA being broken is a known issue”, I’m wondering: is it possible for an admin to reset that field in my database record (or whatever needs to be done to cancel 2FA) without any of the security shenanigans that should accompany working two-factor authentication, so I can successfully log in again? (I have my passwords saved, so it’s not just a mistyped password issue.)