Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You are right. I made me similar tool. It just made MD5 out of mater password and service name.

You suddenly realize how many services have special rules you can't fit in. So for each service, I had to remember master password, which "url" i used (gmail.com or mail.google.com?) and which restrictions apply. Usually they did not allow me so long password. Sometimes I was limited to 16, sometimes 12 chars.

After big password leak (heartbleed), I had to setup second master password for all affected service.

So, no. No more sync-less state-less password managers for me.



Isn't that what the hosted profile is for?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: