Live data from Hacker News

1Password for Linux beta

blog.1password.com

231–240 of 254 posts

Re: 1Password for Linux beta

#231
post #212
post #209

Let me just mention Gopass ( https://gopass.pw ) which is a brilliant terminal-based `pass`-compatible password manager ( https://www.passwordstore.org/ ). Gopass is open-source, free, and based on open standards. Meaning, you can use your keystore practically anywhere. For instance on Android with the Password Store app ( https://play.google.com/store/apps/details?id=dev.msfjarvis.... )

Can I use Yubikeys on iOS and Android? The GPG keys are externally held.

> Can I use Yubikeys on iOS and Android?

Yes you can. Some YubiKeys support NFC (not sure if that works on iOS though), but also you can use USB-A USB-C converter, USB-A microUSB converter, or just a USB-C or lightning YubiKey, or convert to lightning I guess.

Re: 1Password for Linux beta

#232
post #33

Earlier quoted context omitted.

> exfiltration of all your passwords is only one of those being compromised away at any given point No, that's absolutely not true. Those dependencies will not automatically update in your local app. The 1password developers should be auditing all updates to those dependencies too, and if you trust the 1Password developers to be competent, then you don't have to trust 25 random developers. Furthermore, this isn't uni…

Trust is non-binary. It is a perfectly legitimate concern that npm dependencies are a threat vector. Obviously, at build time - but we've all heard stories how less security conscious developers let malicious code slip through with just `npm update`. And compared to, e.g., C++ tooling (npm) makes it somewhat easier to slip a malicious update through. So it's not like that's strictly incorrect. The concern is that is…

> Trust is non-binary.

What do you mean by that? You either trust, or you don't trust. How can you half-trust?

Re: 1Password for Linux beta

#233
post #194

Earlier quoted context omitted.

I already have a browser installed and WebWidgets support on Gtk and KDE, no need for having a bundled browser with each application. Want to do a native Linux app with Web stack? Easy, do it like in the old days, start a daemon and use the local browser. Naturally this makes it harder, because now they would need to worry about Web standards instead of ChromeOS APIs.

Electron has nothing to do with ChromeOS. In fact ChromeOS could not run Electron apps until the very recent "Linux app support" that's still not available on all devices AFAIK. (Or developer mode hacks + awkward ways of exposing GUI to Chrome that don't support GPU acceleration.)

Another one that didn't get the message that shipping Chrome as application runtime, with Chrome specific APIs, not available as Web standards, is hardly any different than turning the Web into ChromeOS.

Re: 1Password for Linux beta

#234

I would like to throw out Bitwarden out there. Cross platforms, works on everything and can be self hosted if you so desire.

then you set the Bitwarden app as iOS's password manager and your general mobile UX is greatly improved.

Re: 1Password for Linux beta

#235
post #112

Earlier quoted context omitted.

I definitely have some password manager anxiety. I'm not too concerned about hacks or losing my password database. For me, it's more about the sense of independence, and being able to log in to my accounts using just my noggin. I might be able to remember one or two strong passwords, but not dozens, which is kind of the selling point of a password manager. I use KeePassXC with a password and key file. I sync the data…

The most important password is your e-mail. If you lose that then you can lose everything. It's the only password I don't save in a password manager.

Uhm, that's why you should have 2FA/MFA.

Not having your password stored in a password manager doesn't make it bulletproof.

Re: 1Password for Linux beta

#236
post #231
post #212

Earlier quoted context omitted.

Can I use Yubikeys on iOS and Android? The GPG keys are externally held.

> Can I use Yubikeys on iOS and Android? Yes you can. Some YubiKeys support NFC (not sure if that works on iOS though), but also you can use USB-A USB-C converter, USB-A microUSB converter, or just a USB-C or lightning YubiKey, or convert to lightning I guess.

I know my Yubikey supports NFC, and I use it with other iOS password managers. But Pass on iOS doesn’t seem to support Yubikeys.

Re: 1Password for Linux beta

#237
This isn't ready for beta: no ability to delete logins, no ability to generate a new password or create a new login, no context menu, and not even a Cancel button for the user who starts to edit an entry and then realizes that they can't regenerate a password.

Re: 1Password for Linux beta

#238

Earlier quoted context omitted.

Listening to music costs $10 per month. Netflix is $15. Surely securing the keys to your digital life is worth at least $5.

I think it’s worth $70, maybe $100. But I want to own my software, not rent it.

You wouldn't own it anyhow, you're licensed to use it either way.

Re: 1Password for Linux beta

#240

Earlier quoted context omitted.

Where do you have such a delay? I just tested in my vault (via Chrome web extension and desktop app) with 377 items and search is instant. I am on macOS Catalina although that shouldn't matter. I suggest you contact support https://bitwarden.com/contact/

It happens in the Android App. Desktop apps and extensions are OK.

Interesting. I just tested on a Pixel 2 XL running the latest public Android 11 OTA version and search doesn't lag at all. Same speed as on a iPhone 11 Pro Max.

Could it be a device issue? I highly recommend you report it to Bitwarden as Android can be a real pain in the ass to test with so many different devices out there with all kinds of strange OEM "optimisations" to the OS.

Post reply on HN