the secret code plainly listed in the python files seems quite suspicious. how easy would it be for a hacker to accurately generate a 6-digit code that matches your authenticator if they knew your secret? what could you do to make this code more production worthy?