Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I really, really wish there was some way to set it so it wouldn't access your cookies or something unless you put in the master password.

Always seemed like a bit of a flaw that while you can't log in to other sites or view the passwords, you could still access any sites you were already logged in to.



Well, websites control their cookies, so it's up to them to determine how secure they want to be. They can even encrypt them if they wanted to.


No, browsers control their cookies. MLR's point is the ability to password-protect cookies reading and sending, to prevent third-parties from being able to use your account on site you're already logged in




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: