This document proposes a new authentication scheme that uses a personal device to generate a one-time username and password for each login session. The existing username and password system is vulnerable to various attacks. The proposed system would use a registered smart device to securely generate temporary credentials for each use, preventing theft of static credentials and providing stronger security. It aims to secure online activities from password attacks, replay attacks, shoulder surfing, and data breaches.