4 ms·
https://www.passwordstore.org/ https://www.passwordstore.org/
by usrbinbash 3y ago
https://www.passwordstore.org/ https://www.passwordstore.org/
- 8organicbits 3y agoI think this works well if you're already invested in GPG for code signing or something and use terminals a lot. It's a little unusual as key management uses asymmetric crypto, so you can add a password without opening your keyring. The passwords are stored in directories and the directory names are the plaintext name of the password (i.e. the site and username). So it doesn't offer privacy. Tampering is possible, you can delete a password without unlocking the keychain by deleting the directory. So it only really protects read access to a password.
- ilyt 3y agoWe use similiar gpg-based one in our Configuration Management infrastructure, works really well. The data files are encrypted with keys of the CM main servers and other admins, GIt has history in case something that should not get removed got removed and if you want you can also force that the data will always be signed with certain keys on server side git hooks if you want to have more accountability than just git logs. With little config even git diff/git log work showing unencrypted (if you have right key) content.