I am shocked to see a tech literate audience recommending a single algorithm based password. This is pretty basic stuff. Minimize attack surface! With a password manager, your attack surface is your email, and the password to the manager. You can focus your efforts on securing those two things with 2fa, a hardware device, etc. Every other password can be extremely difficult, and only grant access to an individual ser…
What happens when you run into a site that won’t accept your algorithmic generated passwords?
Do you fall back to a traditional password manager?
If so, then you’ve just increased your attack surface area by an order of magnitude.
What happens when you need to change your master password because of a compromise, and now all of your passwords have to change at the same time?