3 ms·
Admittedly, I’m not very knowledgeable with this type of stuff, but would they have chosen to do this so that the browser extension can still show the user when
by procinct 4y ago
Admittedly, I’m not very knowledgeable with this type of stuff, but would they have chosen to do this so that the browser extension can still show the user when a login is available without the user having to authenticate (they then authenticate to get the login details)
- nicce 4y agoThis is likely the reason. Other providers like BitWarden caches the urls for certain time on client side. Even if you lock vault, extension can suggest that here is available login for certain period.
- lxgr 4y agoLocally caching this data seems like a much more reasonable way to implement this and would have completely prevented this data leak without any impact to usability.