Live data from Hacker News

Ask HN: Any suggestions for a secure password manager?

news.ycombinator.com

1–10 of 15 posts

Re: Ask HN: Any suggestions for a secure password manager?

#3
I'm still happy with KeePass. Currently using one of my cloud-drive folders to manage my password files (at this point I have some context-specific side files), but debating switching over to a Resilio Sync share (possibly an encrypted share with a "know nothing" backup node in the cloud somewhere).

Re: Ask HN: Any suggestions for a secure password manager?

#4
1Password. Can run 100% local(how I run it). It is Commercial, but on a Mac, especially with tools like https://github.com/ravenac95/sudolikeaboss , it's totally the best there is, integration wise, and speeds up productivity an amazing amount while staying pretty secure.

Re: Ask HN: Any suggestions for a secure password manager?

#7
post #4

1Password. Can run 100% local(how I run it). It is Commercial, but on a Mac, especially with tools like https://github.com/ravenac95/sudolikeaboss , it's totally the best there is, integration wise, and speeds up productivity an amazing amount while staying pretty secure.

They're not so great at fixes and adding features. I much prefer 1Password's interface to anyone else's, especially on Mac.

It took them a year to fix the metadata privacy issue with Android Dropbox sync, despite many asking in forum.

They recently added a TOTP generator. Years ago they talked of adding Yubikey, now they seem to dislike the idea of Yubikey or any 2FA. That seems odd.

Re: Ask HN: Any suggestions for a secure password manager?

#8
KeePass is great - no connection to the cloud, so can't get attacked. Though putting it on Dropbox or Onedrive sort of defeats the purpose.

LastPass is great but there was a breach last year, in which they claim nothing was compromised and they offer a free plan.

Re: Ask HN: Any suggestions for a secure password manager?

#10
post #4

1Password. Can run 100% local(how I run it). It is Commercial, but on a Mac, especially with tools like https://github.com/ravenac95/sudolikeaboss , it's totally the best there is, integration wise, and speeds up productivity an amazing amount while staying pretty secure.

They're not so great at fixes and adding features. I much prefer 1Password's interface to anyone else's, especially on Mac. It took them a year to fix the metadata privacy issue with Android Dropbox sync, despite many asking in forum. They recently added a TOTP generator. Years ago they talked of adding Yubikey, now they seem to dislike the idea of Yubikey or any 2FA. That seems odd.

1password can support typing in the master password with Yubikey, if you configure the yubikey to output a static password. They have a blog post and an answer here about it: https://www.quora.com/Will-1Password-ever-support-YubiKey that are worth reading.
Post reply on HN