Live data from Hacker News

Getting 1Password 7 ready for the Mac App Store

blog.agilebits.com

441–450 of 484 posts

Re: Getting 1Password 7 ready for the Mac App Store

#441
post #413

Earlier quoted context omitted.

Sorry for the confusion. This is simply incorrect and I need to hunt down who is saying otherwise and get this fixed on our end. If you have a subscription you can create standalone vaults outside of your subscription and sync those using iCloud, Dropbox or WLAN sync if you wish. This behaves the same in version 7 as it did in version 6. Kyle AgileBits

The first reply on the top comment of the official blog post says "1Password 7 from the Mac App Store will only support our hosted service" so you should probably start by correcting that...

Thanks, looking into addressing that now.

Kyle

AgileBits

Re: Getting 1Password 7 ready for the Mac App Store

#442
post #382

Earlier quoted context omitted.

To be honest, if a password manager needs to be regularly updated in order to remain safe, I'm not sure I trust it with my passwords.

Everything on your computer, including the OS itself needs to be regularly updated in order to remain safe... It's not just security, it needs to be updated to continue to run on your devices. New versions of iOS, Android, Windows and Mac OS change things that need to be taken into account. The browser extensions must be kept up to date. There is a lot of work to do just to keep things running without adding any new…

The point was requiring regular updates to stay safe, so yes, security updates. The attack surface of a password manager would be infinitesimally smaller than that of an OS.

As far as general updates go, I agree with you, but these shouldn't need to be that frequent. I still have software from the XP era running on my computer.

Re: Getting 1Password 7 ready for the Mac App Store

#443
post #261

Earlier quoted context omitted.

As a counterexample: I've been using dropbox sync for years, 1000+ passwords, only ever had one problem due to a conflict ("lost" password I made on mobile, resolved by picking the right conflict-file in dropbox). That said, I refuse to use cloud-stored browser-accessed password managers, and it's looking more and more like they're pushing for that to be the only option. Not there yet, but oh boy are they pushing it…

> I've been using dropbox sync for years > That said, I refuse to use cloud-stored browser-accessed password managers There seems to be a disconnect here? Ben Woodruff AgileBits

Not even slightly. Encrypted at rest -> who cares where it is stored or how it's synced.

Desktop app: I can stop updating, firewall the app, use offline, airgap a computer, I have many options for reducing my attack surface.

Website: I have literally no way of locking down a version, possible-but-I-haven't-seen-it to be notified of changes (but likely not block them), and it would be rather trivial for the site to ship new JS that simply uploads your password once entered.

Not that I think you are. I assume you'll approach that with the same level of care as you've given your apps (which has been fantastic). But I do think that you're a gigantic payout if someone successfully breaks in. Why should I throw my eggs into such a large, internet-connected basket?

---

For comparison, injecting a malicious update into the apps to do the equivalent of a trivial, invisible JS change means: 1) getting a change into the binary (maybe they brought their own tho), 2) breaking into your app-signing system which is hopefully among your most-secure locations[1], 3) distributing the app to both customers and employees with a visible update notification, and 4) not getting caught before I download it. For each app. Websites are far, far easier to take control of.

[1]: I'm not aware of any server-side security-oriented frontend-web stack which would mitigate this in the slightest. I hope there is though! I'd love to read up on it if anyone knows of one.

Re: Getting 1Password 7 ready for the Mac App Store

#444
post #419
post #367

Earlier quoted context omitted.

Yeah, if it is (and stays) like "memberships get all apps + cloud sync + can still use dropbox sync" I'll happily switch. But I've asked them this question like 4 or 5 times now, and each time I've gotten a slightly different answer . It's completely ridiculous. And it's burning trust, in a fairly inherently distrustful crowd like you get when you're in the security / crypto field.

I'll clarify for you then :) I'm a developer on our Apple team (Mac and iOS). If you purchase a subscription you can create standalone vaults and sync them to Dropbox, iCloud, WLAN or Folder just as if you had purchased a license. You'll have both an account (which has vaults in it) and standalone local vaults that can be synced as above. This is how it behaves in version 6 and nothing has changed with this in versio…

Android is important to me, so I'm still curious there, but yes! Perfectly clear.

At least on Android it's fairly easy to make a new IME and just use my background dropbox syncer, so I have a backup plan if needed.

Re: Getting 1Password 7 ready for the Mac App Store

#446
post #297

There is a non-subscription, licence-purchase model. They basically obfuscate it, (ok: kinder is "don't market it strongly") But there IS a licence model. So mainly, the issue is how "hard" they make it to find. That, and the 'dont be evil, but hey, we changed our minds a bit' aspect to what was said in the past and now emerges. The APP store doesn't help, but I think its ass-backwards to use that to "sell" the subsc…

Making it easier to find is a double edged sword and the reason why it's harder to find now.

If we make it easy to find it will cause confusion for users about which to get. When we did this in the past we had a lot of users who thought they had to have both and as such would purchase both. This led to a lot of refunds on our part and explanation for which they should get.

Turns out most users are perfectly happy and will benefit greatly from the subscription side. This site and a couple of other places being the exception to this as many of you seem to prefer licenses which means this aggravates you all, but for the average person the benefit greatly from the subscription side and it's the one they often choose when we explain the benefits of each.

So making it easier to find puts that problem back on the table and quite frankly, it's something I'd really personally rather not deal with like before. It's easy to say differently until you have hundreds of users at any given time looking for help with what to buy or you accidentally find out they purchased both while helping them with some other unrelated thing.

The Mac App Store makes sense for subscriptions though. They will always have access to the latest version so long as the subscription is active, so we don't have to deal with upgrade pricing there.

For license users though it's not as clear cut. We can either issue a new app each time but we can't advertise the new version in the old version (rules) and this will end up with a lot of users not knowing there's a new version out. Subscription users will also have to upgrade manually each time and that's not convenient for them at all given they're entitled to that new version as part of their subscription.

We're trying to make it easy, though it's going to be difficult this time because we do have to get license users to switch entirely to our direct download version.

Once this is done though, subscription users can use either or, whichever they want.

License users will always use our direct download version.

When an upgrade comes out our subscription users will always be upgraded to the latest version without issues. Our license users will be prompted to upgrade or be informed of the upgrade in some way.

This is how it should work, unfortunately it was not possible to do this for the Mac App Store so we had to make changes there. Perhaps things change with the Mac App Store in the future and we can bring back both, but for now, this new method we're using provides the best user experience for both sides, once the switch is made.

I'll be the first to admit I hate removing choice from the equation here, and I hate that we have to get users to do work in the first place. But sometimes there are things outside of your ability to control and this is one of them for us.

Hope that gives some additional insight that wasn't present in the blog post though.

Kyle

AgileBits

Re: Getting 1Password 7 ready for the Mac App Store

#447
post #351

Earlier quoted context omitted.

As time goes on, I've gotten less and less comfortable using proprietary software for critical tasks. If 1Password were open source, I'd actually be pretty happy to subscribe. But as it stands, I have no faith that the product won't change out from under me in the future, whether due to a pivot, an acquisition, or some other reason. The incentives align in favor of the business, not the customer. IMHO, subscriptions…

At some point you have to value people. The 1Password folks have never let me down, and have been very honest, so I trust them. The product has done nothing but improve over the years for me, increasing in value and ease of use. And then with how often LastPass has had security breaches, it was a no brainer for me to leave LastPass years ago, and I don't regret it.

Shifty Jelly has never let me down either, but they got acquired by NPR. Neither has Q Branch, but they ran out of money and had to shut down. Business for indies isn't predictable. Is AgileBits going to be around in 10 years? I hope so, but I think it's far more likely that they'll be swallowed up by some other company, at best. After getting burned by this over and over again, I just think it's more sensible to stick to OSS options that will probably exist in some compilable state even in the distant future.

Re: Getting 1Password 7 ready for the Mac App Store

#448
post #323

Earlier quoted context omitted.

My point is that it doesn't need to sync . Ignore syncing. I'd even prefer to download and upload the backups by hand, rather than put it all in someone else's control in a browser environment. Cloud password systems are like running all your security-sensitive code in an Electron app - an impossibly large attack surface with many significant flaws in some of your most-sensitive use. It doesn't make sense if you care…

> Ignore syncing Try building a password manager that doesn’t sync and let me know how sales go. :) > Cloud password systems are like running all your security-sensitive code in an Electron app - an impossibly large attack surface with many significant flaws in some of your most-sensitive use. It doesn't make sense if you care about security at all. At least extensions are moderately well sandboxed compared to websit…

> Try building a password manager that doesn’t sync and let me know how sales go. :)

Well... 1Password arguably doesn't sync (until the cloud stuff). It stores files on disk, dropbox syncs it behind the scenes. Given my backup size vs how often I change it: I honestly wouldn't care if it were one blob that were uploaded / downloaded at once for every change, rather than all the small pieces it does now (I assume this is to speed up sync (by a ton)? It's also a major source of sync conflicts that lose data, since dropbox will store both copies on conflict (minus bugs), so it's a horse apiece).

So it works pretty well, apparently. See also KeePass* and many other local-only password managers which people sync via scripts / dropbox / etc. They're doing fine, though 1P is dramatically better than the competition and I'm plenty happy paying for it.

Re: Getting 1Password 7 ready for the Mac App Store

#449

Earlier quoted context omitted.

It's simple enough to do with some version of KeePass. I'm currently using https://keeweb.info/ and Keepass2Android.

What do you use to fill browser login/passwords? There seem to be so many plugins for keepass

I don't use any plugins. I just copy/paste, which if you're doing it from the app stores the copied parameter in memory for a ~15 seconds, after which it is flushed.

Re: Getting 1Password 7 ready for the Mac App Store

#450
post #97

Earlier quoted context omitted.

I've used 1Pw local sync for years, and it's very finicky. When I've contacted support, they only offered suggestions like "restart the app", or "upgrade to the latest version" (even though there's nothing in the changelog which seems possibly relevant). Some days I'll add two new passwords, sync to my other Mac (multiple times, even), and only one of them is transferred. The move to their own "cloud" as the primary…

Hi Ken. It is finicky! There are multiple components outside of 1Password control when you are using Dropbox, iCloud, or WiFi sync. We do our best to find, troubleshoot, workaround these issues. We have built an entire Troubleshooting and Diagnostics utility just for that: https://support.1password.com/diagnostics/ For the majority of users sync with third-party services works well. However, there cases when it gets…

Hi Roustem!

I don't use any third-party services. I use what 1Pw calls "Folder" sync, as it's the only non-cloud method available. 1Pw on Mac #1 saves a binary file to disk, and 1Pw on Mac #2 loads that file from disk. There's no components here out of 1Pw's control. Sometimes, 1Pw simply doesn't write the file on Mac #1, as I can tell by the modification timestamp.

I ran 1PasswordTroubleshooting.app, and sent in the 400KB report it generated. The response I got from tech support mentioned nothing about what might have been found in that file (or what they expected to find, which could prevent data from getting from the application to the filesystem). They simply gave the usual spiel about restarting/upgrading.

Post reply on HN