Live data from Hacker News

LogMeIn Acquired by Private Equity

techcrunch.com

91–100 of 319 posts

Re: LogMeIn Acquired by Private Equity

#91
I don't understand how HN can complain about Google sucking up data and rarely if ever mention LassPass's terms of service which basically flat out state they share your info to marketers. Effectively they appear to be making money by looking at all the sites you log into via LassPass. If you're using their browser plugin I can only guess, given their Terms of Service, that they're spying on all pages, not just pages you're getting a password via their service for. Though even selling the info of which services you're using is bad enough.

Sure, they have a free plan and so you are not the customer. Why do they get a pass?

Note: I have no proof they are spying. I only have the fact that their TOS points to their privacy policy and their privacy policy says they can collect pretty much anything you'd expect software to be able to collect and that they can share that info with whoever they decide to partner with.

Contrast to some other password managers that stay flat out, they don't collect your data and don't want to know it.

From their Privacy Policy

> 1. Information We Collect and Receive

> Service Data (including Session and Usage data):

> When you use our Services, we receive information generated through the use of the Service, either entered by you or others who use the Services with you (for example, schedules, attendee info, etc.), or from the Service infrastructure itself, (for example, duration of session, use of webcams, connection information, etc.) We may also collect usage and log data about how the services are accessed and used, including information about the device you are using the Services on, IP addresses, location information, language settings, what operating system you are using, unique device identifiers and other diagnostic data ...

> Third Party Data: We may receive information about you from other sources, including publicly available databases or third parties from whom we have purchased data, and combine this data with information we already have about you. We may also receive information from other affiliated companies that are a part of our corporate group. This helps us to update, expand and analyze our records, identify new prospects for marketing, and provide products and services that may be of interest to you.

> Location Information: We collect your location-based information for the purpose of providing and supporting the service and for fraud prevention and security monitoring. If you wish to opt-out of the collection and use of your collection information, you may do so by turning it off on your device settings.

> Device Information: When you use our Services, we automatically collect information on the type of device you use, operating system version, and the device identifier (or "UDID").

That's pretty much everything given they put an extension in your browser and can collect all of that info for every page you visit

> 4. Information Sharing

> ... We may share your personal information with (a) third party service providers; (b) business partners; (c) affiliated companies within our corporate structure

Why would anyone want a password manager with this privacy policy?

Re: LogMeIn Acquired by Private Equity

#92
post #8

Earlier quoted context omitted.

Does it work to sync between Linux dev machine and iOS phone?

Only with some manual intervention, which isn't really all that bad. You basically keep your keepass file on a cloud share. What sucks is when you forget to sync and you go on vacation or something. :)

I’ve got keepass set up so that any change to the kdbx file automatically triggers a second save to my Dropbox sync folder. That way any changes on my PC auto-push out, and I can always get them from my phone.

The downside is that my phone doesn’t easily sync back to my PC, but it’s vanishingly rare that I create a new account (and so kdbx update) on my phone these days.

Re: LogMeIn Acquired by Private Equity

#93
post #82
post #78

Earlier quoted context omitted.

Heads up: I work for 1Password Any reason why you'd say unfortunately there? I see it as a pretty big perk rather than an unfortunately. But I would also like to understand a bit more so I can pass along any necessary feedback to our team. Thanks! Kyle 1Password Security Team

Safe to say it's: 1) It's generally preferable that open-source solutions be as capable & usable as closed-source ones, and 2) having the best option be a subscription service is very, very "ugh", as has been constantly complained about here and elsewhere.

Re: 1. Got it.

Re: 2. It's not just subscription. Download the app (Mac or Windows) and in the options choose to create a new local vault. You'll be presented with a dialog to buy a license if you don't already have one.

I get the complaints about subscriptions, but there are certainly pieces of software I am willing to pay a subscription for. One that is actively improved, secured, and is used throughout my day is one of them. Your opinion on this may be different of course.

I really appreciate the input though. Thank you!

Kyle

1Password Security Team

Re: LogMeIn Acquired by Private Equity

#94
post #78
post #69

Earlier quoted context omitted.

Unfortunately 1password is the only one that doesn't give me headaches while using it cross-platform. I wish I could use an open alternative with an equal UX.

Heads up: I work for 1Password Any reason why you'd say unfortunately there? I see it as a pretty big perk rather than an unfortunately. But I would also like to understand a bit more so I can pass along any necessary feedback to our team. Thanks! Kyle 1Password Security Team

Not the OP, but I dropped 1Password when it became clear you're forcing folks to cloud storage. I was sort of hoping the carefully chosen weasel-words about that used at the time meant you'd reconsider if enough of us made noise, but later releases made it clear where you're headed.

It bummed me out - I really like 1pw. And I still don't have my password situation back to the same level of ease-of-use yet, but I switched to control the timing. Storing my password DB on other people's computers is simply not going to happen.

Re: LogMeIn Acquired by Private Equity

#95
post #93
post #82

Earlier quoted context omitted.

Safe to say it's: 1) It's generally preferable that open-source solutions be as capable & usable as closed-source ones, and 2) having the best option be a subscription service is very, very "ugh", as has been constantly complained about here and elsewhere.

Re: 1. Got it. Re: 2. It's not just subscription. Download the app (Mac or Windows) and in the options choose to create a new local vault. You'll be presented with a dialog to buy a license if you don't already have one. I get the complaints about subscriptions, but there are certainly pieces of software I am willing to pay a subscription for. One that is actively improved, secured, and is used throughout my day is o…

> but there are certainly pieces of software I am willing to pay a subscription for.

There shouldn't be.

> One that is actively improved, secured, and is used throughout my day is one of them.

Not when those problems are completely self-inflicted by injecting Cloud Bullshit into stuff that doesn't need it.

Re: LogMeIn Acquired by Private Equity

#96
post #3

LastPass... :-(

1Password is better and unlikely to be acquired. They are quite profitable on their own.

(Personal Opinion): I'm gonna vouch against 1Password.

Some months ago I tried migrating from LastPass to 1Password, had a lot of headaches with the >having to run an executable in the backgroundDuring testing, I was also constantly being prompted to pay for the thing, (trial was just started!). At least importing worked (kinda, some non-form fills [CC, SSN] didn't import or just would get dumped on random places all over their UI).

The key-management thing they have for the safe is really annoying, having to keep a big string around whenever you need to log in somewhere real quick just doesn't work. (One thing is having OTP codes on your phone, other is needing to type a big, random, safe unlock string).

With that said, due to this acquisition of LogMeIn, I'll be looking into alternatives (Mainly Bitwarden as it's been in the "market" for a while already and seems to be recommended). Probably not gonna move yet but better be prepared.

Re: LogMeIn Acquired by Private Equity

#97
post #72

LastPass... :-(

Use Pass ( https://www.passwordstore.org/ ) to generate and store passwords locally, GNU Privacy Guard ( https://gnupg.org/ ) to encrypt them, and then use git ( https://git-scm.com/ ) to backup and sync your encrypted passwords on all your devices in a distributed way. Pass is an open source project by the guy who made WireGuard ( https://www.wireguard.com/ ), and there are open source apps for iOS and Android too,…

[deleted]

Re: LogMeIn Acquired by Private Equity

#98
post #73

Earlier quoted context omitted.

Great product, hundreds of computers for professional purposes, and "several thousand dollars" is a sticking point? Why?

I think the 'overnight' part is key here. I can easily get approval for 20k-100k in necessary software but the approval process can take 1-3 months. If a free service suddenly goes paid without notice, it is much more disruptive than waiting 2mo to start with a new paid service.

Exactly. Big companies move slowly. A small, well-funded company may be able to approve an X-thousand-dollar payment in a matter of days, but a large company just can't react that fast. There are too many layers of process and approvals and vetting and negotiation to wade through.

Re: LogMeIn Acquired by Private Equity

#99
post #7

Bitwarden is a nice alternative. And you can self-host the server part if you want. edit: LastPass is owned by LogMeIn, that's why I mention this alternative.

Another alternative is Abine Blur, which is privacy-centric and has some other features.

Re: LogMeIn Acquired by Private Equity

#100
post #7

Bitwarden is a nice alternative. And you can self-host the server part if you want. edit: LastPass is owned by LogMeIn, that's why I mention this alternative.

Thank you for confirming this. I thought LastPass was a LogMeIn entity but it's not mentioned anywhere in the press release.

It's on the products page.

https://www.logmeininc.com/products

Post reply on HN