Hey fedi. Thoughts on Dashlane. Go!
Conversation
Notices
-
Sir Nedwood - Sydney 🇦🇺 (ned@noagendasocial.com)'s status on Monday, 06-Nov-2023 16:05:36 JST Sir Nedwood - Sydney 🇦🇺 -
Machismo (zerglingman@freespeechextremist.com)'s status on Monday, 06-Nov-2023 16:06:10 JST Machismo @ned That's a... Password manager?
Lmao imagine password managers.
If it's some hosting outside your control then only a fucking retard would use it. -
Sir Nedwood - Sydney 🇦🇺 (ned@noagendasocial.com)'s status on Monday, 06-Nov-2023 16:07:19 JST Sir Nedwood - Sydney 🇦🇺 @Zerglingman noted. That retard would be my inlaws.
Machismo likes this. -
leespringfield1903 (leespringfield1903@poa.st)'s status on Monday, 06-Nov-2023 16:07:38 JST leespringfield1903 @Zerglingman @ned Dashlane is like online online plug in for the most part.
Its simple and easy to use but you got to pay a fee for it.
However its just a plug in at this point with no web portal.
Those folks at Proton Mail have their own password manager though.Machismo likes this. -
Machismo (zerglingman@freespeechextremist.com)'s status on Monday, 06-Nov-2023 16:13:04 JST Machismo @leespringfield1903 @ned I don't really see any value in password managers at all; it's a cope for not having public key auth. Better to just use some deterministic baseword+servicename (salt) password scheme for all low-sec stuff and get more creative with high-sec stuff and hard-memorise the 3-5 passwords that entails.
And then beg for public key auth, because public key auth is the actual solution.
And to clarify, all of the above is in the situation where the passwords are stored either local to each device you're logging in from, or some central location under your control, ie. home server. Not even a VPS is viable, because the host has access to it too. That's already at the point of fucking retarded, if it's a server that you don't even have a pretense of control, that just ought to be illegal. -
Sir Nedwood - Sydney 🇦🇺 (ned@noagendasocial.com)'s status on Monday, 06-Nov-2023 16:13:20 JST Sir Nedwood - Sydney 🇦🇺 @leespringfield1903 @Zerglingman no web portal? seriously?! so you have to use the "app", no matter how janky. That's fucking lame. And untrustworthy IMO. That forces you to run local code with system privledges. What it your using a shared or temporary machine?
Machismo likes this. -
leespringfield1903 (leespringfield1903@poa.st)'s status on Monday, 06-Nov-2023 16:13:31 JST leespringfield1903 @ned @Zerglingman It used to have one, then they got rid of it.
Its just a browser plug in on PC and a mobile app, which is slightly better.
So basically, as you just said in your last bit, not to be recommended with temporary or shared computers.
Just like your own personal PC.Machismo likes this. -
leespringfield1903 (leespringfield1903@poa.st)'s status on Monday, 06-Nov-2023 16:16:23 JST leespringfield1903 @Zerglingman @ned Well I will admit that I am a lazy fuck for the most part.
I used to save my passwords to chrome then I switched to brave later on.
I did bought an actual password book from my local stapes, and boy its a lot of wrist pain from writing down every site that I had my stuff saved on.
Its like convenience versus actual security with the methods you suggested.Machismo likes this. -
Machismo (zerglingman@freespeechextremist.com)'s status on Monday, 06-Nov-2023 16:19:14 JST Machismo @leespringfield1903 @ned No that's the thing, the system I proposed is convenient. Minimal memory burden, protected against hash theft (though any good service salts already), resilient to hostile services (not 100%, but about 99%; it works until a human looks at it, and that's an automatic win-state for you anyway), -and- nothing critical can be compromised from that anyway.
Public key auth is still better, but as far as passwords go, it doesn't really get better than that, even with password managers. -
Sir Nedwood - Sydney 🇦🇺 (ned@noagendasocial.com)'s status on Monday, 06-Nov-2023 16:19:22 JST Sir Nedwood - Sydney 🇦🇺 @leespringfield1903 @Zerglingman Hmmmmm Proton Pass seems to be plugin only too. Must be a technical requirement because the Proton people have always seemed above board to me. No spamming, no bullshit.
Machismo likes this.
-