this post was submitted on 29 Jun 2023
64 points (98.5% liked)

privacy

2887 readers
51 users here now

Big tech and governments are monitoring and recording your eating activities. c/Privacy provides tips and tricks to protect your privacy against global surveillance.

Partners:

founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[โ€“] [email protected] 7 points 1 year ago (1 children)

I've been testing Proton Pass and it's decent. It misses a few things I've learned to enjoy with other managers.

First, the manager I use has the ability to store identities. This is great for keeping things like medication lists, social security numbers, insurance numbers, etc, of family members. I could, of course, put all that into a "note" in proton pass. But it's very convenient to have ready built items for structured data like that.

Second, Credit Cards. I like to store my credit card information in easy to copy entries as well. Again, I could use a note for that, but the manager I use has ready made items for that structured data as well.

Lastly. This is kind of the no-go for me. I already don't like that I can't have separate passwords for my Proton Mail, Drive, Calendar, etc. Sure, I'm kind of used to that functionality in Google from years past, but I don't like it. Now I'd have to put all my passwords under the same single login? No thank you.

Currently, email recovery is impossible with my password vault. I simply have that option disabled. External 2FA is required. If you break into my email, that sucks, but you won't get my passwords for literally everything else. Basically, I have my password vault as secure as I can make it and keep cloud accessibility. Moving to Proton would weaken my security posture.

But if Proton gave me the ability to put the password manager under a separate login with full 2FA support and NO email recovery. I'd be relieved of that concern.

[โ€“] [email protected] 1 points 1 year ago

You could add a yubikey authorization. Doesn't solve the single sign on, but gives you more security that somebody would need your hardware key as well as the account password