About this tool
Plan where to keep 2FA backup codes across offline, encrypted and off-site copies, and see which resilience rules your plan fails.
Recovery Code Storage Planner grades a plan for storing 2FA backup codes against the 3-2-1 backup rule — three copies, on two kinds of media, with one copy off-site — and against two failures unique to authentication. The first is keeping the codes on the same phone that runs your authenticator app, which means one theft takes both the factor and its fallback. The second is a circular dependency: storing the codes only inside the password manager or email account they are meant to recover. You get a resilience score, a pass or fail on each rule, and the specific locations to add next.
Open Recovery Code Storage Planner on AltFTool — it loads instantly in your browser.
Paste your code or data sample into the workspace.
Pick the format, conversion, or analysis you need.
Copy the polished result straight back into your project.
3-2-1 is the same rule used for data backups, applied to the one secret you cannot ask support to resend.
Flags the case where every copy sits behind an account those codes exist to unlock.
Ranks the unchosen locations by how many failing rules each one would fix.
Across three copies on at least two kinds of media, with one copy away from your home — for example printed in a fire safe, in your password manager's notes field, and in a sealed envelope with a relative. At least one copy must be reachable without signing into anything, or you cannot use it during the lockout it was created for.
Yes as one of your copies — the vault is encrypted and syncs off-site. It must not be your only copy, because the codes for the password manager's own account would then be locked inside the thing they unlock. Keep an offline copy for that account specifically.
No, not as your only backup. The screenshot usually lands on the same phone as your authenticator app, syncs to a cloud photo library in plaintext, and is readable by every app you grant photo access to. If your phone is lost or stolen, you lose the second factor and the codes together.
Review them at least once a year and regenerate after any device loss, a shared-account change, or a suspected compromise. Most services invalidate the entire previous set the moment you generate new codes, so replace every stored copy at the same time — a forgotten printout becomes dead paper that gives you false confidence.