Live data from Hacker News

1Password for Linux

blog.1password.com

271–280 of 282 posts

Re: 1Password for Linux

#271
post #76

Earlier quoted context omitted.

Bitwarden is awesome. It's my current password manager after I left 1P. I spent hundreds into 1P before the subscription model, as their apps were expensive and got them on multiple OS and for family members. Then Dropbox decided (rightfully) that you shouldn't use your public folder to host websites, and 1P told their customers to either get a subscription or lose the online vault which is a critical feature of any…

> online vault which is a critical feature of any password manager I guess by "online" you mean access to your passwords using nothing but a web browser. I can see how that could be a requirement for certain users (e.g. employees permitted to make personal use of a work computer but not install any software) but disagree that that's a critical feature. I used Dropbox to sync my 1Password vaults (including a shared va…

> but disagree that that's a critical feature

I imagine you've probably never lost your phone while traveling.

Re: 1Password for Linux

#272

Earlier quoted context omitted.

I can certainly understand and appreciate your point of view. You are free to disagree with mine and I am sorry that it might come off the condescending, it is certainly not what any of us want to convey. However, we are also 1Password users and we build the product for ourselves. We are supporting millions of customers, several thousand support emails and tickets every day. And I am honest, the membership provides m…

My honest advice is to just make a clear statement that you're dropping standalone mode and do it. People with licenses can continue using their non-upgradeable versions as long as they want but they're not getting any more updates. That would be a lot less dishonest than pretending it's supported-ish and just hiding it deeper and deeper on every release.

We still support our customers using 1Password 3 (originally released in 2009).

You are probably right though. We should be more clear on where the future development of the product and service is going.

Re: 1Password for Linux

#273
post #225

Earlier quoted context omitted.

My threat model isn't super high profile, so no? Partly given 2FA, but more importantly the fact that I check my email pretty frequently (most of them will be like "hey, someone's trying to change your password, is it you?), I don't think that's a fair comparison.

Be aware that anyone who has access to your email can also delete the "we changed your password" emails. Properly engineered a cloud-based password storage system should be at least as secure as email, if not moreso (and I believe 1password has it engineered that way).

Sure -- except that the deeply centralized password storage system is a MUCH more attractive target; you've put all the goodies in one place, which is part of my entire point.

There is a WHOLE LOT of incentive to try to hack 1Password and far less to try to hack my dinky email, or even, e.g. gmail to try to find what you're looking for as the hacker.

Re: 1Password for Linux

#274
post #64

Earlier quoted context omitted.

6 years old and already having to navigate software, passwords, privacy. I am mildly shocked, and saddened. Or am I just behind the times?

Really? I was using the computer at 6, although basic stuff in DOS (I remember being proud I knew how to start games etc). At 6 you're in primary school in the UK and using a computer and internet safety is definitely a big thing. Not sure why you'd be saddened by this? Its not like its a black and white you either play outside or you use the computer thing. People can do both and learning about technology early is a…

This recent article appeared on YC, it expands on the sleepwalking folly of digital ids and passwords.

https://www.aclu.org/report/identity-crisis-what-digital-dri...

Re: 1Password for Linux

#275
post #271

Earlier quoted context omitted.

> online vault which is a critical feature of any password manager I guess by "online" you mean access to your passwords using nothing but a web browser. I can see how that could be a requirement for certain users (e.g. employees permitted to make personal use of a work computer but not install any software) but disagree that that's a critical feature. I used Dropbox to sync my 1Password vaults (including a shared va…

> but disagree that that's a critical feature I imagine you've probably never lost your phone while traveling.

> you've probably never lost your phone while traveling.

Yes, like most people, I have not. If I did, on most trips I’ve had a laptop and anything critical would also be in the shared vault on my spouse’s phone.

If I didn’t have any of that, I could install the client on another device to access my vault, if someone would let me; a risk but possibly worthwhile in some critical hypothetical and not really different than using a browser on it (I don’t even know what such a scenario would be, if I was robbed of everything?). Or I could buy a device (even if I was robbed, I could call my parents to pay).

Re: 1Password for Linux

#276

Earlier quoted context omitted.

For what it's worth, not a single one of those entries in the "no more" list appeals to me in any way. I've never complained that I lost my master password, or that the license didn't work on multiple platforms, or that I accidentally deleted my files. I don't feel the need for 2FA because -- and this is a big deal to me -- my password database isn't online. I know how to do backups. It's simple and self-contained. I…

> I don't feel the need for 2FA because The problem here is how many services have been moving to forced 2FA lately (presumably because their users keep getting their re-used passwords leaked). I'd move to 1Password (from KeePass) just to deal with these obnoxious 2FA requirements - except many of them, adding insult to injury, are SMS-only. (Feature idea for 1Password? Assign me a phone number that will automaticall…

Oh, I regularly use 2FA on individual sites. I just don't see the point of using 2FA to access passwords for sites which, if important, have 2FA enabled themselves. 4FA?

Re: 1Password for Linux

#277
post #83

Earlier quoted context omitted.

Yup! In many ways Linux is leading the charge. Not just with these features but also for development as a whole. Here's the background story on how 1Password for Linux started and how it was built: https://dteare.medium.com/behind-the-scenes-of-1password-for... ++dave; 1Password Founder

Thanks for the product, have been using it for years. This is a very cool development! Have you looked into using Sciter instead of Electron? It seems to be considerably more lightweight.

You're welcome! And thank you for supporting us all these years. We looked around a bit but Electron worked so well for us when we started development in 2019 that we didn't have a need to continue searching. Electron also has such a strong community and momentum behind it that I'm happy to continue using it.

Sciter looks interesting and so does Tauri. Perhaps one of those will win out next time we do a deep dive here. :) Until then I've been really impressed with how well Electron is working when paired with Rust.

Cheers!

++dave;

Re: 1Password for Linux

#278
post #210

I'm a big fan of 1Password. I've been paying for it for years. A few years ago I got my partner setup in a few minutes and now they have strong passwords everywhere. Its got great features for sharing vaults with other people so I've got password managers setup for the kids too. My partner and I both have personal vaults, we have a shared vault for financial stuff, and a shared vault for our media accounts (that we s…

What does 1Password do better than LastPass? I pay nothing and I don't feel like any features are missing.

Nothing off the top of my head, I think people jumped ship off LastPass when they were bought out by LogMeIn. I know they chopped and changed what you could get between the free and premium versions a while ago.

Re: 1Password for Linux

#279

Earlier quoted context omitted.

Sidenote: 1password has no way of knowing if I am materially affected by a site breach, and its notifications about a site being breached annoy me

The functional uselessness of ALL site breach notifications from EVERYONE who will send them to you is something that pisses me off to no end. "Your Email was found in the data dump from the FooBarBaz.NET hack!" Okay, which site was this? Is there a password I'm supposed to change? Was it actually a password I stopped using 5 years ago, but is still floating out there somewhere? None of these questions are ever answe…

1Password does give you some useful info by flagging websites which have been known to have database breaches, and it keeps the flag in place until you update the entry with a new password. I think the info is obtained via integration with haveibeenpwned.com.

Re: 1Password for Linux

#280
post #278
post #210

Earlier quoted context omitted.

What does 1Password do better than LastPass? I pay nothing and I don't feel like any features are missing.

Nothing off the top of my head, I think people jumped ship off LastPass when they were bought out by LogMeIn. I know they chopped and changed what you could get between the free and premium versions a while ago.

I didn't know they were acquired. I'm looking to migrate, but nothing jumps out as better.
Post reply on HN