Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Remark: As far I know 1Password does not encrypt everything. Lets say you store a password in 1Password for twitter.com then the password is being encrypted but the information that the password is used for twitter.com is not. So someone could find out that you are using twitter simply by going through your 1Password file. This may be a problem with sites that are not as harmless like twitter.


Interesting observation.

I checked a couple of my 1Password files and you're right: usernames & passwords are encrypted, but not the website/URL they're associated with.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: