What did you find changed in lastpass after the logmein acquisition? We've been using lastpass since before the acquisition, and i can't say i've noticed any substantial changes (either positive or negative)
Evaluation of five password managers
61–70 of 216 posts
Re: Evaluation of five password managers
#62I've been using masterpassword [1] which is stateless and requires no sync. I wonder what the HN crowd thinks of its features. Another option with the same paradigm is lesspass [2]. 1. https://masterpassword.app/ 2. https://lesspass.com/#/
There's a few issues with the master password derived password system, including: What if you need to change your password for a site to a different one? What if the site changes its URL?
They also have settings depending on password requirements (no special characters, etc.).
I'm unsure what the URL really has to do with it, you could just generate a new password for the new URL and change it.
Re: Evaluation of five password managers
#63> Mac OS, Windows, Linux, Android, and iOS ... full functionality can’t be dependent on an app which is only available on Mac OS and/or Windows. In other words, lack of full Linux support is a show-stopper for us. This ruled out 1Password... ...Huh? 1Password supports all of those platforms (including Linux) https://1password.com/downloads/linux/
Unfortunately, 1Password may find its engineers compromised by their government, by virtue of being Australian.
Re: Evaluation of five password managers
#64I'm surprised there was no mention of recent security audits. BitWarden just famously had one.
I don't understand how this information is actionable. It would be worth knowing whether something has _ever_ been audited (again: most of the major password managers have been), but just knowing an audit has been done isn't sufficient to know whether it's secure.
Re: Evaluation of five password managers
#65In the end I've just been using the Unix pass password manager [1]. It's just cobbling together of GPG and git with shell scripts but it works like a normal git repository so you get all your synchronization, from that, your security from GPG which are all things I know and trust without introducing other components that I don't know / understand. [1] https://www.passwordstore.org/
Re: Evaluation of five password managers
#66Earlier quoted context omitted.
I switched from LastPass to 1Password. It was a quick and simple export -> import process.
As a current LastPass user, what prompted you to switch?
Re: Evaluation of five password managers
#67What did you find changed in lastpass after the logmein acquisition? We've been using lastpass since before the acquisition, and i can't say i've noticed any substantial changes (either positive or negative)
Re: Evaluation of five password managers
#68I'm surprised there was no mention of recent security audits. BitWarden just famously had one.
Re: Evaluation of five password managers
#69In the end I've just been using the Unix pass password manager [1]. It's just cobbling together of GPG and git with shell scripts but it works like a normal git repository so you get all your synchronization, from that, your security from GPG which are all things I know and trust without introducing other components that I don't know / understand. [1] https://www.passwordstore.org/
I love this as well. It supports OTP and there is an awesome Android app for it called Password Store, and a browser extension called Browserpass.
Edit: it turns out OTP is one time password, that's neat!
I'm only familiar with that through Erlang and consider it an architectural pattern for supervision trees, would you be willing to expound a teeny bit more on what you mean?
Re: Evaluation of five password managers
#70I rarely see it mentioned, but when 1Password changed to a subscription model I switched to Enpass ( https://www.enpass.io ) and I've been very happy with it.
they don't make it very obvious, but note that 1password doesn't require a subscription. i use it with vaults shared and kept in sync via dropbox for example.
https://discussions.agilebits.com/discussion/80105/cant-disa...