Authy looks like a neat service, and their blog post about the security of backed-up TOTP keys is promising, but obviously no one can independently audit the code.
Could anyone else weigh in on the security of this product, if there's any public information? Have there been any serious breaches or exploits?