Live data from Hacker News

Show HN: Forgiva – Never saves your passwords but regenerates them

forgiva.com

1–10 of 98 posts

Re: Show HN: Forgiva – Never saves your passwords but regenerates them

#4
post #3

How does this compare to the KeePass family of pw-managers? (Besides that Forgiva is closed source and KeePass is open source.) Fixes poor passwords, accessibility and storage problems with highly secure way. What does that even mean?

>> How does this compare, for example, to the KeePass family of pw-managers?

It is a password manager too but with an alternative approach.

>> "Fixes poor passwords, accessibility and storage problems with highly secure way." >> What does that even mean?

Generates strong passwords by default, you can access them anywhere with it and does not need to store anywhere.

Re: Show HN: Forgiva – Never saves your passwords but regenerates them

#6
post #3

How does this compare to the KeePass family of pw-managers? (Besides that Forgiva is closed source and KeePass is open source.) Fixes poor passwords, accessibility and storage problems with highly secure way. What does that even mean?

>> How does this compare, for example, to the KeePass family of pw-managers? It is a password manager too but with an alternative approach. >> "Fixes poor passwords, accessibility and storage problems with highly secure way." >> What does that even mean? Generates strong passwords by default, you can access them anywhere with it and does not need to store anywhere.

Ok, cool that you can access it anywhere.

Re: Show HN: Forgiva – Never saves your passwords but regenerates them

#8
post #3

How does this compare to the KeePass family of pw-managers? (Besides that Forgiva is closed source and KeePass is open source.) Fixes poor passwords, accessibility and storage problems with highly secure way. What does that even mean?

The way I read it... it's a password manager that doesn't store passwords (centrally or locally).

Instead it regenerates the password each time.

i.e. password for HN may be: some trait of HN (domain?) + some salt + your identity (cert?) to always produce the same password.

I didn't understand it all from the site, the explanations and broken English didn't really elucidate. But... if my understanding was right, I wondered about how to handle cert changes or key rolling, etc. There seemed to be a mentioned mechanism for this, but again I didn't really understand that from the description.

Gist though: No generated and stored passwords, but a pattern to always generate the same password for a given site.

Post reply on HN