<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.contario-totp-secure-enrollment" target="https://datatracker.ietf.org/doc/html/draft-contario-totp-secure-enrollment-02">
   <front>
      <title>TOTP Secure Enrollment</title>
      <author initials="B." surname="Contario" fullname="Brian Contario">
         <organization>Silent Sector</organization>
      </author>
      <date month="September" day="26" year="2025" />
      <abstract>
	 <t>   This document describes a secure key exchange scheme that extends the
   Time-Based One-Time Password (TOTP) [RFC6238] de facto enrollment
   method to prevent compromise of the non-expiring TOTP key by
   photographic capture of the QR code or by intentional or
   unintentional persistence of the key string in email, SMS, or other
   systems outside of the TOTP authenticator system itself.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-contario-totp-secure-enrollment-02" />
   
</reference>
