Enpass is a really nice password app that works on Linux, and allows you to sync with various cloud providers. I have since switched to Password Store though which is open source and uses GPG for encryption, so you can pick your own algorithms.
Enpass isn't open source and the only security audit skipped Linux.[1]
Wow, such convenient timing. I just gave up fiddling with the CLI interface on Linux in favour of 1Password X, which otherwise works great. Shoutout to @cohix, I'm sure you had something to do with it!
I’ve been using 1Password every day for over 11 years now. The oldest passwords I’ve got stored are for Twitter and Dropbox (yes, the passwords have been changed but the records were first created in 2009). It’s one of those apps which has been made with proper craftsmanship and care, so while I’m not a Linux user, I’d have no problem recommending based solely on Agilebit’s reputation.
> It’s one of those apps which has been made with proper craftsmanship and care Is it? I've been using it for sometime as well but it seems like there is a lot of room for improvement. E.g: - Support for unlocking via Watch ID on the Mac. - Currently on iOS when searching for a password within an app, if a site prefix is included that doesn't match what's in 1Password the list will just show no results, with no way t…
We use Dashlane at work, and every day I want to switch to 1Password, which I use in my home life. Dashlane has weird permissions glitches, a really buggy and very non-intuitive desktop app, really terrible web browser extensions that makes me tear out my hair in frustration, and even the mobile app doesn’t feel like it has the features I want, like the ability to add more than one password field (useful for accounts that have PIN codes and such). Even performance-wise, Dashlane’s mobile app feels really sluggish doing things like adding 2FA via QR code’s, which 1Password seems to do instantly.
The other versions are native. It's one of the things that sets 1Password apart. Is the Linux version Electron?
> The other versions are native. It's one of the things that sets 1Password apart. Is the Linux version Electron? Yes, it is very obvious from the screenshot that it’s built on top of Electron [1]. GTK nor Qt have that type of UI elements, they are obviously HTML elements stylized with CSS. Another hint is in the files contained inside the Debian package used during the Linux installation [2]: root@3cb1637b3070:/# ap…
The other versions are native. It's one of the things that sets 1Password apart. Is the Linux version Electron?
Yes. Not against Electron but maybe I'm underestimating the ui/ux complexity of a password manager since I have never use one.
More likely it is the overhead of multiplatform support that motivates them to use Electron. Their support matrix is pretty big now: iOS, Android, Web, Mac, Windows, browser extensions, Chrome OS, and Linux
KeepassXC is the perfect solution in my opinion. It is open source, has a huge number of features (that don't get in the way of basic usage), and has mobile apps and desktop apps that work well on all platforms. Right now I am using it on Windows, Mac, AND Linux, as well as my Android phone. I have it syncing over Dropbox, but you can sync it however you like. The Android app automatically fetches the latest version,…
I'm the same way. The most important parts of the KeePass ecosystem to me are: 1. It runs on every platform I currently use, as well as any platform I might care to use, whether or not that platform is sufficiently "popular" for a company to justify caring about it. 2. It isn't dependent on the continued healthy existence of a company to remain usable, as I could simply self-maintain in a worst case scenario. These a…
Yep, there is no way I am trusting a company with maintaining access to passwords on all my accounts and my clients accounts. Keep Pass uses a well documented XML file format that, if needed, I can manually decrypt and access if for some reason, every copy of KeePass is deleted.
Maybe. It has some defenses against keyloggers. The local data is encrypted so the attacker would need your master password, which hopefully you wouldn’t have stored in plaintext on the same machine. Regardless, the idea is still that a secure password manager would put you in a better situation more often than would a plain text file, cloud notes, physical notebook/sticky, etc.
But the reasonable comparison wouldn't be "a plain text file" it would something like Jason Donenfield's pass ( https://www.passwordstore.org/ ) Now, there are some potential usability improvements they can offer by giving the passwords to "some company" but there's a serious price (not only financial) to pay for that. Also, because it's designed as a standard Unix tool if you're comfortable in Unix (as we may suppos…
If talking to a typical person I wouldn’t assume they would stick with a method like pass, or a synced keepass file (methods I like just fine personally.) UI affordances and multi-device convenience aren’t just fun, they make good security easier for people who are tired or in a hurry.
I pulled the plug on 1password because I hate subscriptions. There is also no logical reason to pay agile bits for single-purpose back-end infrastructure when we already have dropbox, etc.. An encrypted password file is tiny. Subscription apps (and subscriptions in general) are simply not scalable in their current implementation.
I don’t even mind subscriptions but they’ve still lost me as a customer for bundling the subscription pricing along with an extremely hard push into storing all my most sensitive data “in the cloud”.
Still rocking my 1Password 4 license on Windows and OSX from years ago with no plans on upgrading. When I’m finally forced to, I’ll simply switch to another product.
I’ve been using 1Password every day for over 11 years now. The oldest passwords I’ve got stored are for Twitter and Dropbox (yes, the passwords have been changed but the records were first created in 2009). It’s one of those apps which has been made with proper craftsmanship and care, so while I’m not a Linux user, I’d have no problem recommending based solely on Agilebit’s reputation.
> It’s one of those apps which has been made with proper craftsmanship and care Is it? I've been using it for sometime as well but it seems like there is a lot of room for improvement. E.g: - Support for unlocking via Watch ID on the Mac. - Currently on iOS when searching for a password within an app, if a site prefix is included that doesn't match what's in 1Password the list will just show no results, with no way t…
Thanks for the feedback! We can unlock 1Password for Mac via Apple Watch on Macs that have Secure Enclaves now. :) - Ben, 1Password