59 ms·
Apple unveils 'Passwords' manager app at WWDC 2024
- Canada 2y agoI won't even look at it until I see many years of track record of excellent support on non-Apple systems.
- Angostura 2y agoSo they are reinventing the KeyChain Access app on MacOS?
- offsky 2y agoIf I lose access to my Apple account (via hacking, being banned or otherwise), do I also lose access to all my saved password? Thats what I want to know.
- musictubes 2y agoNo. Passwords are saved on your device.
- sam_goody 2y agoMaybe I don't want "whoever" to be able to get into every one of my accounts by coercing Apple to give access to all my passwords. There are groups that can do that coercion (eg. US and CPC governments), and there may be support staff et all in Apple that can get the same access. For the same reason, I was unhappy that Keychain.app is auto synced to iCloud (and as per a past thread, even if you disabled it it may be reset). So, of course, I don't have to use their app. Except that I suspect it will be built into the OS in a way that makes it hard to avoid, such as Keychain. I would love it if there was a way I could setup my self-hosted BitWarden instance to be as integrated as Keychain is, and not use Apple or Google for passwords.
- commandersaki 2y agoiCloud Keychain and Passwords are end to end encrypted; how will coercion help?
- jljljl 2y agoI want to use this, but this post gave me pause: https://x.com/blader/status/1800263787746066646 https://x.com/blader/status/1800263787746066646 "apple sherlocked 1Password today, so i'd like to remind you that your Apple ID is only as secure as your carrier. if you have 2FA on and get SIM swapped, attackers can lock you out of it PERMANENTLY. last month it happened to me. make sure it doesn't happen to you: " Getting locked out of all my passwords would be pretty disastrous. Did Apple announce a change to the account lockout procedure as well?
- DuckConference 2y agoYou can add security keys as a 2FA method and it will disable use of the trusted phone number for authentication
- Obscurity4340 2y agoWhat happens if you have the RecoveryKey set, like the actual generated Recovery code? If that's set, can you always reestablish access?
- prismic 2y agoThis. I don't think most people realize how much eggs they put into one basket. Every service that can be used for MFA (email, token, password manager) should have its own separate barriers of entry to make total compromise as difficult as possible.
- adam_arthur 2y agoPeople should just use a sufficiently complex, memorized, password for their money/identity, and then a (mental) algorithm that allows deriving unique passwords for other services that are less important. Only have to memorize 2-3 strings and more secure than a password manager since there's no third party in the loop. Password Managers are a huge man-in-the-middle and liability in other regards (e.g. you don't have it present on a given device or on hand). SSO from a single set of credentials is a much better solution. Multi-factor biometrics even better (outside of PII sensitivities)
- chuckadams 2y agoNormal people don’t usually run password generation algorithms in their heads. When they do, the algorithm sucks. This is why we have password managers in the first place.
- adam_arthur 2y agoThe formula can be very simple and is applied to less important services. Unless you are directly, personally, targeted no hacker will waste the time trying to reverse engineer your algorithm... they'll just go on to brute forcing the next hash in the list. And most people only have a few services that need to be truly secure anyway, which would use non-derived passwords (if they hack your netflix or spotify, who cares? Call support and get it back) Password managers have had many exploits/failures over the years. You introduce so many points of failures bringing in a third party. Your gibberish password with random symbols/characters isn't any more secure than a more memorable one of a similar length.
- diebeforei485 2y ago1Password has gotten progressively worse. It's now an Electron app (so it's slower to load), and some features have stopped working well. They took VC funding to pivot to enterprise, anticipating that OS vendors would integrate basic password management features (what most of their usage at the time) into the OS. So the consumer experience has been de-prioritized. I will not be renewing my 1Password subscription.
- crubier 2y agoOh the classic irrational HN hate on JS/Electron... 1Password 8 takes <1s to load from scratch on my machine, and is instant most of the time since it runs in background.
- mrtesthah 2y agowhen every app loads an entire duplicate browser stack then your RAM is wasted out of cheapness and negligence. Moreover, I shouldn’t need a cutting edge microprocessor just to look at my saved passwords. Multiplied across 15 million 1Password users, even 1 second amounts to about six months of collective time wasted for each app launch. I would never hire any developer who disregarded their users’ time, UI experience, and computing resources so blatantly.
- crubier 2y ago50% of people on HN seems unable to understand that developing UIs using web technologies is 2-3x faster than using Native frameworks. If anything, just from the benefit of not having to develop 5 versions of the UI (MacOS, Windows, Linux, iOS, Android) but just 1 responsive web app. In my perspective clearly the blatant disregard for UI experience is wanting to develop native apps just for hypothetical RAM savings or similar ideological preconceptions on performance that are not real or relevant in practice. Electron apps are now everywhere because THEY WIN. Figma, Slack, VSCode all succeed in large part thanks to being Electron apps. HN denial of this simple fact is copium
- 2y ago
- thway15269037 2y agoAre they going to remove competitor password manager apps as they did with other things they have incorporated into the iOS?
- pudwallabee 2y ago[dead]
- danielecook 2y agoI’m concerned about how secure this will be. What happens, for example, if you experience a sim swap attack? How will apple protect all of your password data in this case? Will the setup allow for an additional password to prevent hackers from gaining access?
- bluSCALE4 2y agoI was happy using Bitwarden until recent updates that basically block out the entire form input. It's a dark pattern to me, built off fear and that's not the perception I want to see in someone in charge of my passwords.
- xxkylexx 2y agoYou can turn this feature off under settings.
- hankman86 2y agoCompanies like 1Password must be having a bad day. They have previously been held back by Apple, resulting in a poor user experience on iOS. And now Cupertino is entering into direct competition. Let’s see if Apple reaches feature parity and in particular, actually offers decent cross-platform support.
- Syzygies 2y agoFor years, Keychain Access would copy disk image passwords from custom keychains into keychains that opened at login, defeating my attempts at extra security. I don't trust 'Passwords'.
- arijun 2y agoIs this just a standalone app for the existing password manager in settings, or is there more to it?
- jkkorn 2y agoI just hope the next feature is FaceID on the Mac.
- deleted 2y ago[deleted]
- alistairSH 2y agoThe article is light on details… what does this do that the current Passwords “app” (setting?) does not?
- gradientsrneat 2y agohttps://news.ycombinator.com/item?id=40646137 https://news.ycombinator.com/item?id=40646137
- godzillabrennus 2y agoI’ve had my iCloud account corrupted twice since they switched from dot Mac. Zero chance I’ll ever trust Apple with anything serious. I don’t even trust them to keep my contacts safe from corruption. Never going to trust them with my passwords.
- herpdyderp 2y agoIsn't it all saved locally as well? Were your local files corrupted at the same time?
- m_a_g 2y agoWasn't .Mac discontinued in 2008? I think it's time to let go
- hot_gril 2y agoThis hasn't happened to me, but enabling iCloud notes deleted all my notes. Kinda ridiculous for an app that had one simple job.
- wpm 2y agoiTunes Match/Apple Music completely corrupted my music library. Files are all still there with the wrong names and album art.
- Hippocrates 2y agoThank god. I think 1pw has been mostly good, but it has frustrating quirks... Like requiring me to input the master password on the iOS app/OSX/Browser extension (on the same device) as if each of these apps have no way of communicating. I constantly have issues with it not engaging on a form where I have to manually switch to 1pw, though it has gotten a bit better over the years. I hate to see a company/product get sherlocked but I don't feel like password security was something we should need to have a subscription for.
- jimnotgym 2y agoI feel like an old man saying it, but does anyone else remember competition law existing?
- pasc1878 2y agoHere there is no problem. You have a completely free choice to use 1password, BitWarden, KeePass etc ..... Apple is not stopping you. Forcing all browsers on iOS to use Safari is a different matter.
- megamix 2y agoI never used 1Pass, I'd suggest ppl to make their own mental template for passwords that can be applied to different sites instead.
- Turfie 2y agoMy brother convinced me to try a 1Password family account, since it would be cheaper. Ever since, the Chrome plugin takes forever to login. Sometimes up to 5-6 seconds. And it really annoys me that they have so many resources and money, and it's still this expensive for a very very basic application, and slow to boot. I tried out passwords, and combined with Safari, it's an absolute godsend compared to 1Password. That does mean that I switched from Brave to Safari, and thus have YouTube ads, and so I'm now paying for YouTube haha
- HenryBemis 2y agoJust to rub it in your face :) (teasingly and with respect) I got Android/LastPass/Firefox and only pay for the LastPass annually (I got it on all my devices), so there you have it ;)
- genericuser256 2y agoJust so you're aware, LastPass has had some pretty bad security issues, eg. on the latest https://arstechnica.com/information-technology/2022/12/lastpass-says-hackers-have-obtained-vault-data-and-a-wealth-of-customer-info/ https://arstechnica.com/information-technology/2022/12/lastp...
- genericuser256 2y agoJust so you're aware, LastPass has had some pretty bad security issues, eg. on the latest https://arstechnica.com/information-technology/2022/12/lastpass-says-hackers-have-obtained-vault-data-and-a-wealth-of-customer-info/ https://arstechnica.com/information-technology/2022/12/lastp...
- Hawxy 2y ago> Ever since, the Chrome plugin takes forever to login. This isn't my experience since the recent update that shows up a mini-login panel when trying to sign in. The old experience that opened the desktop app first was fairly slow.
- samcat116 2y agoI have never had such issues with the Chrome plugin.
- everdrive 2y agoI don't think Apple has built this maliciously for this purpose, but for normal users this will be a strong motivator vendor lock-in.
- quitit 2y agoThat's an interesting take because I can see how this reduces lock-in: 1. It's now easier to access passwords on the mac because you no longer are forced to use Safari to view passwords, nor have to sort through the technical entries/certificates in Keychain Access. 2. The app surfaces a prominently positioned button for one-click sharing and exporting of passkeys/passwords, whereas existing methods significantly lack in comparison. 3. It's the opposite of lock in to consolidate all types of passwords into a single consumer-level interface, when the alternative was hunting for them across the various apps and system panels. 4. It works with iCloud for Windows for cross platform support. Which also means you don't need a mac to participate in shared password groups.
- randomdata 2y ago> you no longer are forced to use Safari to view passwords Your passwords haven't been bound to Safari for quite a while. You already had to use the Passwords app found in Settings. Both Safari and Keychain Access have controls to allow you to open the Passwords app (the Settings one) from within them, but it stands independently. The new Passwords app seems to be the old Passwords app with some refinements, new features, and moving it out into a more familiar location rather than it being hidden away in Settings. You might say this is Passwords v2.
- quitit 2y agoThat's my poor word choice as I also mention Keychain access in the same sentence. I meant this in the sense of addressing people that stated that putting a password manager in Safari is vendor lock in, and accessing passwords via other methods such as the password pane in Settings as a bridge too far, along with describing that panel as "hidden" and using "dark patterns". On the balance of information it seems clear that moving passwords to a separate app that is easy to access, navigate and share passwords (including across platforms) is the opposite of lock-in.
- rootusrootus 2y agoI wonder if the biggest side benefit to a player like Apple getting into this game is the pressure it puts on web site developers to follow some kind of convention with their login forms. The vast majority of the time I have trouble filling a password, it's because the web developer did some wacky shit with the fields that make them unrecognizable, or in the worst case actively prevent pasting a password. It's one thing to blow off someone like 1Password, but Apple has a huge reach, they are not so easy to ignore.
- freedomben 2y agoThere is a convention already, and it's quite simple. There's an "autocomplete" property on an input tag, and you can tell the browser what it's for[1]. Use "username", "email", and "current-password" for example when building a login page. ("new-password" is useful for creating an account or changing password, and the password manager can suggest a new password here instead of trying to autofill with your old password). The autocomplete attribute supports nearly everything you can imagine. Check this for a full list[2]. [1] https://developer.mozilla.org/en-US/docs/Web/HTML/Element/Input#autocomplete https://developer.mozilla.org/en-US/docs/Web/HTML/Element/In... [2] https://developer.mozilla.org/en-US/docs/Web/HTML/Attributes/autocomplete https://developer.mozilla.org/en-US/docs/Web/HTML/Attributes...
- minton 2y agoIs there a way to turn this off entirely? Something like <html autocomplete=“off”>? It’s rather annoying to have 1Password trying to fill my contact info into any form with a Name input. For example, Forum Name, Todo Name, etc.
- digging 2y agoI think the GP commenter is aware of that but saying "now that Apple is directly invested in managing and entering your password, it's harder to make excuses for dogshit product specs that, for example, block pasting passwords."
- NoPicklez 2y agoThey're saying that Apple bringing this tech in will force developers to follow this convention, ss from their experience they're not. Not that there isn't a convention but people aren't following the conventions that exist.
- FalconSensei 2y agoMy main reason to use this would be to maybe have an easier time adding a login when I'm on mobile - hopefully Apple would make it as easy as with bitwarden's desktop browser extension where you can just click 'save' or 'update' after logging in My main reason not to use it is because I guess not going to work as well with firefox desktop?
- tonymet 2y agoDoes webauthn have a protocol for username / password retrieval ? It would be nice to have a usb security token that is backward compatible with username + password login.
- bradmcnally 2y agoThis is very welcome! I had previously used a Siri shortcut on my desktop that would launch the password setting. (which worked very well, but a dedicated app is better)
- dcchambers 2y agoI was pleasantly surprised to see they said they would have a Windows app, but it's DOA for me unless they also offer a solution for Android :( I love my mac and I love my pixel phone but sometimes being a Mac + Android user just sucks.
- m3kw9 2y agoGood riddence for 1Password, terrible interface
- hwc 2y agoI've been using Bitwarden for a few years. It seems to do everything I need, and is cross-platform. I have a soft spot in my heart for `pass` (http://www.passwordstore.org/ http://www.passwordstore.org/), but it's a pain to access it from my phone.
- j_hall_in 2y agoYes I love love love BitWarden.
- bryanbuckley 2y agoI guess it's not every Firefox user, but Bitwarden hasn't been working for many FF users for the last month: - https://github.com/bitwarden/clients/issues/8873 https://github.com/bitwarden/clients/issues/8873 - https://github.com/bitwarden/clients/issues/9253 https://github.com/bitwarden/clients/issues/9253
- Alifatisk 2y agoI am on FF with Bitwarden and haven't noticed any issues at all.
- moistoreos 2y ago`pass` is an excellent case for storing passwords locally that you don't need to carry with you. I use a lot of login credentials for work on `pass` and it works great. If/when I need to upgrade laptops I can just back it up in git. I use BW for all my personal stuff because my wife and I use it.
- m4lvin 2y agopass is the best. If your phone is android, I'd recommend https://passwordstore.app/ https://passwordstore.app/ plus syncthing :-)
- sircastor 2y agoWe're BitWarden users in our house. We switched from LastPass after they double the price for the 2nd year in a row. We each have our own accounts, and then a shared organization. If it were just me, I'd be tempted to just switch everything over. My wife is smart, and technically competent, but isn't interested in switching to new things until the pain points are too much. If I want to move to a new app or a new service, it can't be on a whim of mine, and it can't just be because I want to see what the new features are like.
- allenbina 2y agoI moved from lastpass to bitwarden also, but I don't see the reason to move to apple passwords. I'm mostly linux at home, and I use the bitwarden browser plugins for chrome and firefox. I wonder how they plan to integrate browsers, since I imagine they won't have a linux app. Historically, they haven't written great windows apps, so I wonder how this will fair.
- afavour 2y agoNormally I’m conflicted when a big tech company comes to stomp on a market of smaller app makers but the password manager industry has left me with little sympathy. Years ago I bought 1Password via a one off payment and set it up to sync via my iCloud Drive. It all worked great. Then they took VC investment and quickly every new feature was locked behind a subscription gate. I switched to Bitwarden. Then they took VC investment and I’m sure will end up down the same path (and you could never use a third party storage service with BW AFAIK). A password manager’s remote storage doesn’t need to be anything other than a safely encrypted SQLite file, you ought to be able to save it anywhere. I think everyone should have a good password manager in 2024 and non tech inclined folks shouldn’t have to battle with upsells and spammy notifications as a price for being secure. If that means they’re using Apple’s offering, so be it.
- dvngnt_ 2y agokeepassxc works for me on android, windows, and mac
- zer0zzz 2y agokeepassxc is incredible, truly slept on. I use safari keychain as well, as a copy. But my master store is keepass. It boggles my mind that people pay for 1password. Btw, is keepassxc on Android now or are you referring to one of the many Android keepass apps? I use keepassium on iOS. I pay for protonmail and also store a copy in protonpass. Proton pass has a nice web interface and doesn’t require me to copy a keepass file or logon to iCloud on my work computer so I use that sometimes too.
- scrollaway 2y agoKeepassxc has zero collaborative features and no online sync. I’m a big fan of keepassxc but these reasons are why I pay for 1P. I can add colleagues, guests, family members and have it run on all my devices.
- mbs159 2y ago
- rqtwteye 2y agoI used to use keychain for my passwords. It worked really well until I tried to export data so I could use it on Linux. No dice. The way it looked there used to be an export function but then Apple decided to take it away. I think I'll stick to Bitwarden. Works reasonably well and I can back up my passwords with a simple export.
- kgilpin 2y agoI have already been using iPhone Passwords for all my passwords. Anyone else doing this? It autofills passwords on the phone and I can copy a password from the phone Passwords and paste it on my MacBook. Whenever I do a password change, I have to do it on my phone, so that the new one will be stored. But that is fine with me. I’m happy to do that in exchange for being freed from “password managers”.
- rgbrgb 2y agoyep, incredibly convenient. big reason i use safari as the default on my MacBook too. honestly safari is great these days for everything except web3.
- lovethevoid 2y agoThis and the android equivalent (chrome/google) are very common methods. It’s only in enterprise spaces that they’ve adopted the likes of 1Password, Bitwarden, etc. Really no big difference, you’re still technically using a password manager. Also you can access those passwords on Mac as well, it’s in settings just as you would find it in your phone. No need to copy from your phone and paste it, Mac can autofill. It can also autofill on other browsers through the dedicated right click menu, but it’s a bit more clunky than on Safari. Fun fact, those same passwords can be accessed on windows now, install iCloud for windows and enable passwords. It uses a dedicated app on Windows.
- pshc 2y agoYup, it's been super convenient to have iCloud sync all the keychain entries including wifi passwords, and quite secure and private. I also enable keychain sync on my Mac so I can create passwords there too.
- virgildotcodes 2y agoI have to be missing something. Isn’t this just a new coat of paint over keychain? What’s so revolutionary about this? A lot of people seem to be acting like this is a really big deal. Is it cause it’s available on windows now?
- ASalazarMX 2y agoIf Apple restricts db syncing only to iCloud, it will be a pretty keychain for all practical means.
- hot_gril 2y agoKeychain has been around for decades, but the feature isn't as visible as third-party apps that also advertise themselves. On the Mac, you even had to go into the complicated Keychain Access utility to retrieve them. I guess Apple just wants it to be more obvious that hey, you have a password manager already.
- aledalgrande 2y agoCan you store things other than passwords, e.g. credit cards? I doesn't seem so, but I only gave it a quick look. Would love to switch but that is a hard requirement for me. Also, does it only work well with Safari?
- theshrike79 2y agoApple Wallet is for debit/credit cards, it already exists and works.
- aledalgrande 2y agoWhat if I wanna have a shared card?
- theshrike79 2y agoShared with someone else? Isn't that like against every rule of every bank ever everywhere?
- aledalgrande 2y agoCompany cards and expenses exist. Also can’t believe you never once shared a card with someone in your family?
- deleted 2y ago[deleted]
- beastman82 2y agoWill they support Android unlike FaceTime, iMessage, etc?
- tmpfs 2y agoIt's good that Apple have decided to improve their offering for password management but a bit overdue and lacking in cross-platform support. Also, it's risky to allow large corporations control over our most sensitive information. I have been working on solving password management as a local-first, cross-platform, open-source application[1]. It's a bit rough around the edges still (no browser extension yet!) but is worth trying as an alternative. Any feedback would be much appreciated! The app is designed for zero vendor lock-in (after all this is our most sensitive data) and a self-hosted server is part of the design. We aim to make money offering a cloud platform for syncing and social recovery (digital inheritance) and eventually would like to also function as a Dropbox/Keybase alternative. We will be releasing the open-source SDK[2] soon. All comments or suggestions welcome. [1]: https://saveoursecrets.com https://saveoursecrets.com [2]: https://docs.rs/sos-sdk/latest/sos_sdk/ https://docs.rs/sos-sdk/latest/sos_sdk/
- imagetic 2y agoThe early v8 release was pretty stained with skepticism from the entire community. If anything 1password has proved to me that an Electron application can eventually be pretty seamless. I have been very impressed in MacOS and Firefox.
- lpln3452 2y agoYeah please continue your "only on ios" policy. I will have a PW manager server on LAN and use it everywhere via VPN. These are the reasons why I don't use Apple products despite the great hardware.
- faeriechangling 2y agoNot really interested if it’s not cross platform and standards compliant but this will work well for 99% of the market.
- Thorentis 2y agoKeepass XC has served me well for nearly 15 years, and will continue to do so.
- Friedduck 2y agoI used to use Apple keychain and lost access to it at one point when I switched phones and no longer had a known device associated with my account. Even when I had the correct credentials, I could no longer access the keychain. It may be my own ineptitude, but I won’t use it again.
- dbglog 2y agothe platform must rise - if there is functionality that everyone is using, it is natural for it to become included in the platform.
- FredPret 2y agoGood! I've typed ⌘-spacebar + "password" about a million times now
- n4r9 2y ago> Considering this service would be operated and owned by Apple, likely to have a deeper integration across its iOS, iPadOS, and MacOS platforms, and doesn't have the same track record of security breaches as competitors, it should make for a compelling alternative for many users. Is the reason for fewer security breaches perhaps that the data wasn't as valuable to attackers (until now) ?
- throwanem 2y agoIt looks to be a new surface on iCloud Keychain, which has existed and been deeply integrated into Apple OSes for a long time. It doesn't seem intuitively too likely this would make it a much more appealing target than it is already.
- phito 2y agoWhy single out lastpass in the title?
- astrodust 2y agoIt's good to see that 1Password is staying several steps ahead here to avoid being "Sherlocked" by Apple. The new SSH key manager feature is an example of something Apple's unlikely to address for years, if ever. https://developer.1password.com/docs/ssh/manage-keys/ https://developer.1password.com/docs/ssh/manage-keys/
- chuckadams 2y agoI feel like the people who throw out “Sherlocking” are the same ones who also whine whenever they have to install third-party software for whatever the OS doesn’t do out of the box.
- LeoPanthera 2y agoI really tried to like their new non-native app, and if it works well I could probably live with it, but it was so buggy and glitchy, even to the point where browser auto-fill often just... wouldn't. That's a basic feature. I switched to iCloud Passwords a few months ago and I'm very happy with the product. Looks like this Passwords app is a nice new GUI over the top of that same database.
- noprocrasted 2y agoI stick to 1Password 7 for that reason - thankfully it still works for the time being.
- kstrauser 2y agoSame here. I switched from 1P to Passwords a while back, then switched back when I got a free 1P account from my job. I'd already started thinking about returning to Passwords, though. Much as I wish I could love 1Password, the current app is a mess. I have a Mac Studio without Touch ID and the "unlock with Apple Watch" feature almost never works. They also refuse to allow unlocking with YubiKeys (see https://www.reddit.com/r/1Password/comments/ttt2m0/yubikey_instead_of_master_password/ https://www.reddit.com/r/1Password/comments/ttt2m0/yubikey_i...) for reasons I consider specious. 1P has some wonderful work-oriented features we use constantly. I don't like the direction it's going for personal stuff.
- MaxBarraclough 2y agoSurprised to see Forget LastPass, as if it's the current incumbent. It very much isn't, at least in my perception. LastPass disgraced itself into irrelevance back in 2022. https://en.wikipedia.org/wiki/LastPass#2022_customer_data_and_partially-encrypted_vault_theft https://en.wikipedia.org/wiki/LastPass#2022_customer_data_an...
- fanf2 2y ago2019: LastPass leaks credentials from previous site. https://bugs.chromium.org/p/project-zero/issues/detail?id=1930 https://bugs.chromium.org/p/project-zero/issues/detail?id=19... 2017: Design flaws in LastPass two factor authentication. http://www.martinvigo.com/design-flaws-lastpass-2fa-implementation/ http://www.martinvigo.com/design-flaws-lastpass-2fa-implemen... 2016: More LastPass security vulnerabilities. https://palant.de/2016/09/16/more-last-pass-security-vulnerabilities https://palant.de/2016/09/16/more-last-pass-security-vulnera... 2015: Even the LastPass will be stolen. http://www.martinvigo.com/even-the-lastpass-will-be-stolen-deal-with-it/ http://www.martinvigo.com/even-the-lastpass-will-be-stolen-d...
- santoshalper 2y agoMaybe that's what they were going for?
- willis936 2y agoYou wouldn't want to give free publicity to a serious competitor like btiwarden, 1password, or keepass.
- avree 2y ago1Password is still around? I used to love it, then they changed the app, pricing schema, UX, and generally made things worse overall.
- doublepg23 2y agoI use 1Password daily but missed anything before this version switch-up I guess. I've got nothing but positive things to say.
- crowcroft 2y agoI would guess the reality is companies like 1Password make almost all their revenue through B2B relationships. I doubt Apple will encroach too much in that space (lack of sales reps/support etc.) Curious to see how this ends up impacting competitor's businesses or not though! If Apple gives themselves access to a bunch of integrations and APIs no one else can that sounds like they would be abusing their monopoly power...
- ein0p 2y agoThis needs to be multiplatform for it to be a viable option for the more tech inclined. I run all three major desktop operating systems plus iOS, so I use Bitwarden
- hot_gril 2y agoI've found it easier to use Keychain as my "master database" and selectively copy passwords as needed into whatever browsers on non-Apple devices, granted it's not super often. Also, often I can directly use my phone to authenticate another device (passkeys, TOTP, or custom solutions).
- nullindividual 2y agoIt is available across the two major desktop operating systems, but you'd have to read the article to find that out. > The Passwords app is free to download, available across iOS 18, iPadOS 18, and MacOS 15, and will also work with the Vision Pro and Windows computers, says Apple.
- mrinterweb 2y agoUnless Apple treats every major OS as a first class citizen for this password management app, this becomes another form of ecosystem/vendor lock-in. Have all your passwords securely stored in our app? Thinking about buying an Android phone? Think again. Of the major tech companies, Apple probably has the worst track record of not playing nice with other platforms, walled gardens and all. Passwords are needed on all platforms. Apple would be the last company I would trust to ensure that I would be able to access my passwords anywhere I may need them.
- hot_gril 2y agoI actually read the article and didn't see this at first. It's mentioned at the very bottom, right above the "featured stuff" and unrelated article below it, and after a lot of text about what Passwords does that Keychain already did.
- smsm42 2y agoNo Linux or Android, which makes it useless for anybody having any devices running those. And since nobody wants to use two password managers, it remains a better solution to use a truly multi-platform one.
- deleted 2y ago[deleted]
- myaccountonhn 2y agoI always feel like these password solutions are there to lock you into their platform. I would never use Apples nor Mozillas password solutions personally.
- senpos 2y agoIt is very hard to move from iCloud Keychain to KeePassXC. Export functionality does not exist in the "Passwords" section of the settings on iPhone. It is also not available in the iCloud for Web. So, I had to go through all my passwords and reset them + create new entries in KeePassXC, one by one, which is very annoying. :-)
- kemayo 2y agoThere's a proper export on the Mac if you have access to one, at least.
- josephcsible 2y agoThat's a great reason to not use Apple's, but Mozilla's doesn't lock you in at all.
- pasc1878 2y agoYes Mozilla's does - to Firefox. There are cases I need to use Safari or a Chrome based browser. This is the main reason I got 1password in the first place. and where do you store your passwords for apps?
- josephcsible 2y agoThat's not lock-in, though, since Mozilla makes it very easy to export your saved passwords to a .csv file if you ever do want to switch ecosystems. I use KeePassXC to store passwords for apps.
- pasc1878 2y ago
- bee_rider 2y agoI don’t quite understand how this will be different from what built in iPhone password manager. Something I’d really like: let my iPhone act as a Bluetooth (obviously encryption will be necessary!) or USB keyboard, and have it hold my passwords/type them. That way I could keep my passwords all in one place, and manage them locally. Currently I use keepass when not on iOS, which is fine, but I don’t really want to have to expose my whole passwords file to a Windows machine, since they are traditionally infested with malware (and apparently MS is flirting with including their own first party malware).
- denimnerd42 2y agoThe offline device with a plugin usb keyboard that "types" in your username and password is exactly what i've wanted forever. There are some devices people have made and posted online. I made a POC with an old android phone once but never got past that stage. I investigated the bluetooth encryption and it didn't really seem up to the task. You could create a dongle that lived on wifi though that would do the same.
- jiveturkey 2y agocould you post a link or 2 of the DIY devices? very interesting since this kind of device obviously needs a lot of integration into the PWM software ecosystem.
- denimnerd42 2y agoseems like everyone has this idea now if you search google. https://www.google.com/search?q=password+manager+with+usb+keyboard+emulation&oq=password+manager+with+usb+keyboard+emulation https://www.google.com/search?q=password+manager+with+usb+ke... https://github.com/tejado/Authorizer https://github.com/tejado/Authorizer https://hackaday.com/2020/02/08/usb-password-keeper-runs-on-tiny-chip/ https://hackaday.com/2020/02/08/usb-password-keeper-runs-on-... https://www.amazon.com/OnlyKey-Stealth-Black-Case-Communication/dp/B06Y1CSRZX https://www.amazon.com/OnlyKey-Stealth-Black-Case-Communicat...
- 2y ago
- boringg 2y agoPassword manager apps have been put on notice.
- teolandon 2y agoNot while people can't use the Apple one on Linux or Android.
- cheeze 2y agoI mean, my parents will immediately move to this from BitWarden. There is still a place for password managers, but if I'm the LastPass CEO, writing is on the wall with this announcement... They will see a large exodus of customers that use Apple OS.
- criddell 2y agoI think for a lot of the password managers out there, the majority of their revenue comes from Apple users. The ones that don't rely on Apple users will be fine.
- recursive 2y agoPut on notice? What's better about this than 1password?
- nerdjon 2y agoYeah there is a pretty good chance that once this rolls out I won't be using 1Password anymore. I only use 1Password instead of native because I needed something that worked on Windows. Will need to see how well that works, but I just don't see a personal reason why I would not just use this when it works so much better on my iOS devices.
- sgerenser 2y agoI think this will finally get me to switch from 1Password 7. I was never going to go to the new, subscription-only, electron-based 1Password, so its either hold out on 1P7 for as long as possible or look for something new.
- mmanfrin 2y agoPointless if it doesnt have cross platform. Apple devices already basically have a password manager, the main reason more people don't use it it is because it doesnt also work on android or windows, not because it's not a standalone app called Passwords.
- trustno2 2y agoThe lock-in is the point. I mean, why else would Apple invest in something like this. They became the richest company in the world by increasing lock-in in every step.
- deleted 2y ago[deleted]
- wwalexander 2y agoIt works on Windows.
- toddmorey 2y agoIt does work on windows; the mentioned that. No word yet on Android.
- Hamuko 2y agoNo dedicated app on Windows though, it'll be part of their existing iCloud Windows application.
- deleted 2y ago[deleted]
- deleted 2y ago[deleted]
- norman784 2y agoThe password manager that we have today is terrible, that's why people are not using it.
- donohoe 2y ago
- pocketarc 2y agoIt works on Mac -and- Windows? Goodbye 1Password! The browser extension has been SO buggy for me on Safari ever since v8, I'm SO excited that I might finally be able to ditch it. I even mentioned it in a comment before[0]. Looks like the day has come! [0]: https://news.ycombinator.com/item?id=36427945 https://news.ycombinator.com/item?id=36427945
- spike021 2y agoI started using Keychain pretty much primarily this year (other than 1Password at work) and it works pretty seamlessly for me (granted Apple devices only). Even the Chrome extension works quickly as if it were a native part of Chrome. Glad they're splitting it out of System Settings into a dedicated app. I've also started migrating family members to it. It'll be way easier for the less technical people since it's already tightly integrated in the devices and OS they use everyday.
- tgv 2y agoFireFox doesn't work with KeyChain, at least, not the last time I checked (which was a few years ago, admittedly). There's an extension that goes one way (read only), but that's of course relying on an unknown entity.
- mdeeks 2y agoDoes the Chrome extension still require you to enter a six digit code every day to even use it? When I tried it this was incredibly annoying and I switched back to 1password shortly after.
- spike021 2y agoNot sure that it's every day but I haven't been too bothered by it. It's not unlike the security policies where I work. So needing to type in a OTP isn't out of my normal routine.
- eastbound 2y agoIt’s important, otherwise that means any locally-running binary (maven, npm) can steal all of your passwords, since they are in clear on your computer.
- criddell 2y agoDoes macOS sandbox things like maven or npm? Do they need read access for everything the user can see?
- toddmorey 2y agoThis is welcome. Central password management really should be an OS feature. Drives me crazy that every browser I use has a different credentials store and sync service.
- wwalexander 2y agoOne of my biggest feature wishes finally come true. A few updates back they made the Passwords section in Settings one level less deep, and I was very frustrated they realized it should be easily accessible but didn’t bother making it a standalone app when Keychain existed on Mac.
- shallichange 2y agoWhy would I use it over Bitwarder?
- fckgw 2y agoBecause it's already built into the devices I use
- block_dagger 2y agoBitwarden integrates pretty well on Apple devices/apps already, although I guess you could save a tap by using a native app.
- senpos 2y agoThey also have TOTP support built-in for free, which is very convenient. With Bitwarden, you need to pay for that.
- HaZeust 2y agoI'll be trying this out, but moving me from Bitwarden will prove quite a feat - especially since it was the best option for me after trying over 10 password managers while I was still window shopping for one.
- nsbk 2y agoI’m in the same boat. I really enjoy Bitwarden but I’m willing to give this a try to see if it’s as good as it could be
- throwawayq3423 2y agoI will need a tool to transfer over all the pws, doing that manually is a non starter
- nsbk 2y ago
- boringg 2y agoYou think people will migrate from LastPass to 1password or do you think this just limits new inbound. Also if those two apps didn't have a product feature map way ahead of apple then they were doomed from the get go. They must have known something like this was a significant business threat if not existential risk...
- Sprotch 2y agoFor this to catch on it needs to have a Chrome app - that's the only way employers let you use a password manager
- fckgw 2y agoThere's been a Keychain/iCloud Passwords chrome extension for years already
- Bnjoroge 2y agoreally? what's the name?
- selykg 2y agohttps://chromewebstore.google.com/detail/icloud-passwords/pejdijmoenmkgeppbflobdenhhabjlaj https://chromewebstore.google.com/detail/icloud-passwords/pe...
- lxgr 2y agoIt's worth noting that this is Windows only, and needs you to install the iCloud native client there (which might not be an option on managed devices). It doesn't work as a standalone Chrome extension in the way that 1Password or Bitwarden do, for example.
- egypturnash 2y agoSo… this new app does most of what the depreciated “Keychain” app did, except now it’s got a iOS-looking UI. Huzzah, I guess, the “passwords” section in the iOS-restyled system prefs sure wasn’t substituting for Keychain for me. Passwords doesn’t appear to handle secure notes, though, and I still have a few of those, too. I still really hate the iOS-restyled system prefs. Tiny unresizable text, a long vertical scroll. I can’t find a damn thing in it and just use the search bar every time and feel faintly annoyed about it.
- kylemart 2y agoAt least now you’ll be able to prompt Siri to figure out where your settings are /s
- selykg 2y agoI noticed a "Notes" section in password items. So, I guess in theory you could utilize those. But my biggest one is wanting to store secure files. Think copies of a drivers license, signed documents or various certs and keys. That's not being covered here either for me sadly. It's not a super common situation for me so I can probably find an alternative app for that purpose. Edit: Also for notes, I'd just password protect something in the Notes app. But that's just me.
- lrhegeba 2y agofor this requirement i choose to use encrypted sparse files (can be created with the disk manager app) which i store on the icloud. is only of use if you happen to have a laptop with you as mounting them is not supported in iOS
- blkhp19 2y agoI paid for Disk Decipher for this use case - it was a great purchase! https://disk-decipher.app https://disk-decipher.app
- matt-attack 2y agoCan’t you just paste the DL image into a Note and then password protect it? I frankly just have photos of DL and insurance cards in my photos with tags to make finding them easy. Although note with the text searchable images that’s largely not even needed. I don’t get what the security concern in. My photo reel is way more secure than my actual wallet.
- deleted 2y ago[deleted]
- msie 2y ago[flagged]
- cloin 2y agoThey just announced this: Record and transcribe a live call directly from the Phone app.21 You can also search call history more easily, dial smarter, and switch SIM cards seamlessly.
- AnonC 2y agoWhere did you get that impression from? The WWDC keynote mentioned recording calls on iPhone (with transcription) and said that the other end would be notified when you start recording.
- msie 2y agoOh really? Unfortunately i didn’t see the keynote this time and i didn’t see this in any online summaries. Didn’t expect they’d do it this time! Ive been asking for it in prev years. But does it record audio? This is good if you get to keep audio!
- joking 2y agothey actually showed the option to do that with a full AI (apple intelligence of course) summary made on device.
- rodolphoarruda 2y agoAnd put all the eggs into the same basket? No, thanks. I prefer to spread critical responsibilities among a small group of "little tech" companies that offer clear and concise data portability among them.
- tarentel 2y agoIf this supports OTP, and ideally profiles, I'd likely cancel my 1Password subscription. I've been waiting for Apple to release something like this for a long time and surprised it took them this long.
- Lx1oG-AWb6h_ZG0 2y agoiOS already supports OTP, it’s just buried in Settings > Passwords > Set up verification code. Once you do that, it’s seamless - it autofills in all my site and works beautifully in chrome/edge/firefox even in my PCs
- alt227 2y agoKeychain has been built into all apple devices for ages, and all support OTP and seamless sharing across all your devices. Genuinely interested to know why you have been using 1Password when apple will already do it all for you? Did you not know?
- whitepoplar 2y agoI hope it includes credit cards, rewards programs, IDs/Passports, etc. so that I can cancel my 1Password subscription.
- quenix 2y agoCredit cards are saved separately already, I believe
- alberth 2y agoWhat's new besides management of passwords being move from Settings, now into it's own dedicated app?
- jwells89 2y agoTimely with how official support for the old 1Password 7 apps probably won’t be continued for too much longer, with 1Password pushing users over to the notably worse v8 apps. I’ll probably switch.
- baryphonic 2y agoInteresting. I liked the 1Password 6 UI, was frustrated with 1Password 7 and have been loving 1Password 8 so far. Version 7 seemed really clunky when I needed to do certain workflows.
- jwells89 2y agoWhat I dislike about the 7 → 8 transition is that it went from feeling like a handcrafted Mac app to an indistinguishable generic SaaS thing, which is exacerbated by 8 being built with Electron (which brings dozens of little papercuts that are difficult to smooth out, even if the dev cares to try to).
- lowbloodsugar 2y agoRight. 1Password 7 is the last one to have private vaults. After that dies, I have no reason to use 1Password over anything else. SSH? Yeah, need that for work - which absolutely bans storing those on the cloud.
- mdaniel 2y agoI don't know where this falls on the "storing in the cloud" policy, but if you haven't seen it I really enjoyed KeePassXC's ssh agent to keep SSH keys off disk: https://keepassxc.org/docs/KeePassXC_UserGuide#_ssh_agent_integration https://keepassxc.org/docs/KeePassXC_UserGuide#_ssh_agent_in...
- selykg 2y agoThe biggest reason I'm moving away from 1Password is the abysmal support for Safari Profiles. It's so bad it's ridiculous. Right now for instance I have a Personal profile, and a few work specific ones around admin, development, and my day-to-day work to split things off easily. I have 1Password unlocked in one profile and it works in that, but if I switch to any other profile it needs to be unlocked, then it tells me it needs to reload the extension. Reloading it doesn't do anything but break it again. I have to fully quit Safari then it works again for some unknown amount of time then falls apart completely soon after (probably laptop sleep or something like that). Just a shitshow all around from 1Password anymore. How the mighty have fallen due to profits and investors.
- alt227 2y agoSo are they literally just launching an icon which opens keychain?
- drcongo 2y agoNo.
- GeekyBear 2y agoI'll be interested to see if there is improved support for handling and syncing passkeys to multiple personal devices. I'm a bit nervous after hearing about people having early adopter issues. Hopefully there is some sort of fallback if something extreme like a house fire manages to destroy all of your personal devices at once.
- jesseendahl 2y ago> Hopefully there is some sort of fallback if something extreme like a house fire manages to destroy all of your personal devices at once. This is already addressed and has been since Apple first launched support for passkeys. See the “Recovery security” section of the “About the security of passkeys” support document here: https://support.apple.com/en-us/102195 https://support.apple.com/en-us/102195
- pkamb 2y agoMy annoyance with Keychain has been that items kind of appear there as I type in a username and password on the web. Feels rather ephemeral, like old "saved passwords" in Internet Explorer or whatever. Feels like I'm one browser cookie reset away from losing everything. Whereas with 1Password I use a separate app to CREATE a new Login file for an app/website/anything. I can save that file with as much or a little information filled out as desired. Can create arbitrary info files for Passports, library membership cards, etc. I know the information for each is forever stored exactly as I created it, always syncing, never overwritten when I type in a different password and accidentally hit "save" in a webform. I hope the new Apple Passwords app is more like the later; if so I would switch.
- jaskaransainiz 2y agoNice
- ipqk 2y agoI've been an avid 1Password user for over 10 years, but since they gone full-throttle targeting the enterprise market, I'm getting more and more annoyed. It's increasingly buggy (right now, it thinks I haven't migrated from 1p7 which causes annoying interstitials that I can't close. Over a month and no fix yet.). They killed standalone vaults. Obvious feature requests (e.g archive an entire vault) sit there for years untouched. The value is increasingly not there anymore for me, and here's hoping I can finally jump ship this fall.
- iansinnott 2y agoI suspect you won't be satisfied with Apple's offering if you enjoy stable software, unfortunately. I agree regarding 1pass, but at least it's still firmly trying to solve the password management problem. Apple is trying to solve the vendor lock-in problem (i.e. how can they lock more users in to their platform).
- epistasis 2y agoI've been using Apple's password manager for more than a decade; and though the last OS update had a new UI, it still offered the old UI at the same time. Every other password manager I have tried has had continuous churn, nothing consistent after a couple years. I have passwords for accounts in my Apple keychain that have survived more than decade and about half a dozen different devices, to internal servers that have been dead for a decade. The only new thing here is opening it up to more platforms.
- twixfel 2y agoMy last password manager got sold to some guy in Morocco and my passwords put behind a pay wall, and then lost. Bring on the vendor lock in, I’m so done with all that other shit.
- ketralnis 2y agoWhat company was this?
- Beijinger 2y agoenpass.io is great. + Can't beat convenience. + Cross platform +/- free if you don't need mobile version - Closed source (no affiliation)
- heinrich5991 2y agoBitwarden + cross-platform + free as in beer + free and open-source software Can't really comment on convenience, I moved from LastPass, but it has worked well for me.
- Beijinger 2y agoI think I checked this. The self hosted wallet was tricky if I remember right.
- lxgr 2y agoThere's a Docker image that has worked out of the box for me.
- Beijinger 2y agoMy hoster does not support docker, this is the problem.
- heinrich5991 2y agoYou can use vaultwarden for self-hosting: https://github.com/dani-garcia/vaultwarden/ https://github.com/dani-garcia/vaultwarden/. It's easier than the official server.
- shironandon 2y agothis sounds great as long as law and federal enforcement agencies can also access that password manager app as-needed.
- favorited 2y agoEnd-to-end encrypted, so no. https://support.apple.com/guide/security/icloud-keychain-security-overview-sec1c89c6f3b/web https://support.apple.com/guide/security/icloud-keychain-sec...
- ChrisArchitect 2y agoSome earlier discussion ahead of the announcement: https://news.ycombinator.com/item?id=40613857 https://news.ycombinator.com/item?id=40613857
- sleepybrett 2y agoI hope there is a cli that will allow access to this like the `security` command, maybe this is just another facade on top of oldschool keychain?
- epaulson 2y agoAre there APIs to get the iCloud sync into my own app? I'm all for iCloud syncing to my devices I just want a way to also get a backup in a file so if Apple decides to delete my account on a whim, I don't lose everything.
- musictubes 2y agoWhat account are you worried about Apple deleting? If they nuke your iCloud account your info is still on the device.
- daft_pink 2y agoI think it needs multiple domains for an account. It appears this hasn’t changed from their current setup from the screenshots in the presentation. I don’t want to switch from 1pass if I can’t set 2 or 3 separate webdomains for an account as I find this to be the most annoying feature of apple passwords, when a website has a separate register page from it’s login pages. In 1pass you can just delete the subdomain and add domains. Apple doesn’t allow you to edit at all :(
- m_a_g 2y agoI wasn’t expecting this much hate towards 1Password in the comments. I was using Google Passwords, then migrated to Apple, finally to 1P7 and now 1P8. It’s one of the best software I’ve ever used and I don’t know what I’d do without it. Same goes for Fastmail as well.
- tootie 2y agoWe used 1pwd at my company and I have a paid family account. I love it. Think it's worth every penny.
- nstart 2y agoLikewise. I think they are making some weird and off putting choices around the enterprise but for consumer stuff (which is squarely where the apple passwords comparison sits I assume) it’s still a great piece of software honestly.
- chx 2y agoYou'd try Bitwarden...
- tristan957 2y agoI was a BW customer and switched to 1P. 1P is so much better. The clients are better and the syncing of sessions between the browser, desktop, and CLI is amazing. 1P has great integration with Linux and SSH too.
- davidee 2y agoLong, long, long-time 1P user (2007?) increasingly fed up with their anti-consumer practices (dishonestly hiding discussions on their community forum about App Store versions and dismissive “responses” were the final straw). So I put vaultwarden on the cluster at home, built a backup routine I was comfortable with and started using BitWarden to evaluate it before trying to help the whole family switch (we have 8 users, including a grandmother and grandfather from different sides of the family). All this to say, I have to agree. I could not, and will not, switch my family to BitWarden (for the foreseeable future). Search is AWFUL, there’s no way to sort my passwords (recently added, recently updated, etc.) and the clients are way way way slower than 1P (sure, probably in part to server on an underpowered compute instance). However, even the “offline behaviour” (when BitWarden clients can’t contact the server) is slow, and sometimes syncing just doesn’t work. I completely agree, the worst part is just how limited and clumsy the front-end is for secret storing. It’s limited, ugly, and often hard to parse visually. I can’t imagine trying to help my aging father use it on his desktop, much less his smartphone - where he’s had great success with 1P. While I continue to have great disdain for AgileBits, 1P is still the most user friendly password manager for a group that includes definitely-not-technically-inclined people. I wish it wasn’t, I wish I could stop giving them money, but compared to the competition, there’s just nothing else that comes close.
- jftuga 2y agoI've been using KeePassXC on Mac and Windows and sync them between each other with Unison[1]. I'd be curious to learn how others who are using KeePassXC are syncing there databases with iPhone. [1] https://gist.github.com/jftuga/0265e5403d56373662b9513d8816e392 https://gist.github.com/jftuga/0265e5403d56373662b9513d8816e...
- lmz 2y agoDropbox and KeePassium on the phone.
- senpos 2y agoKeePassium + db file on Google Drive through Files app
- talldayo 2y agoAs a sidebar, Keepass is so good that I don't understand why you wouldn't use it. 1password is bloated and annoying, Bitwarden is finnecky even when you do get it working, but Keepass Just Works. Keepass is the closest I've ever felt to just having a wallet for my passwords. It should be ratified as a standard, so we can make Google and Apple provide "Export to Keepass" buttons in their apps.
- anssip 2y agoI use the Passlane CLI for accessing and managing my passwords. Passlane stores the data in a keepass file that I have in Dropbox so that I can access it from multiple devices. On my phone I access it with Keepassium. Check Passlane here (I’m the author of it): https://github.com/anssip/passlane https://github.com/anssip/passlane
- theogravity 2y agoLack of Linux support and i'm not sure if it handles storing files (eg pdfs) is what would hold me from adopting this. I use 1pass across all platforms.
- cletus 2y agoHere's Apple's big problem: it's not a replacement for so many alternatives because it isn't supported on all platforms. Safari? Not on Windows. Apple Music? This actually has a Windows client. I'm not sure how good it is. But Spotify supports Windows and even Linux. Apple Password Manager? Will this be tied to iCloud? Will I be able to use it on Android? If I no longer have an iPhone will it be a pain to maintain and use? A dog cannot serve two masters. A company like Apple doesn't see any of these things as a product. They're a means to an end: to push the iPhone platform (and hardware sales). That priority will always trump the interests of a product like this. It's also why I refuse to buy more into Google products: it's too much of a risk to lose access to everything if Google wakes up one day and decides to suspend your account with no recourse other than making enough of a stink on social media such that an employee will actually look into it. People don't want everything tied to one identity, one service, one login.
- gumby 2y agoThey have a windows app for it.
- yreg 2y agoWindows app will certainly help adoption. An Android app would be nice as well, but I doubt that many people use both iOS and Android devices[1] (or concern themselves whether they will be able to switch platforms easily). [1] Android devices as in devices where password manager is desired, not as in 3 Billion Devices Run Java
- dhosek 2y agoI wonder what the number of people who use Macs and Android is. I would guess that it’s a tiny fraction of the marketplace (and likely entirely populated by people with Kindle Fires, not Android phones).
- yreg 2y agoActually now I'm thinking that there are probably quite a few developers with Macs + Android phones.
- rdm_blackhole 2y agoI for one will stay away. What if your Apple account get banned? Then you lose all your passwords? It's the same reason I don't trust Google with all my picture or documents. At any point in time their algos can flag your account for wrong reasons and that's the end of your digital life.
- mtillman 2y agoI really enjoy 1password, things, mind node, etc but I never seem to enjoy Apple apps other than Messages or I suppose Finder if you're being very specific. Maybe this one will be different.
- BiteCode_dev 2y agoA password manager that doesn't have an open-source client cannot be truely checked. Therefore it cannot be trusted to encrypt them before being sent nor to not contain a backdoor. Apple was part of the PRISM program, we know they gave access to our data for mass spying.
- vbezhenar 2y agoGood. I already switched to iCloud Passwords for all my needs, but it's not very convenient now. No way to store bank card info, no way to store ssh passwords (I'm using fake domain myserver.ssh.com, but that's weird), no way to store key files. Hopefully it'll get better.
- PlunderBunny 2y agoI've never understood why there are some passwords that exist in the macOS keychain app that don't appear in the Passwords section of the macOS System Settings (I think the password for my WiFi hotspot is one of them). Can anyone explain this? Will the new Password app have 'everything' in it? I always end up looking in the Keychain app to be sure to find what I'm looking for, but I dislike that app because it often takes several password entries to get to see a password.
- mh- 2y agoThere are multiple different types of 'password' entries that can be stored in the Keychain. If you open a terminal and run `security -h`, you can see what I mean. Keychain Access.app is accessing the same database as this CLI tool. I assume the Passwords section of System Settings is only pulling up a subset of these, but I haven't upgraded macOS on my personal laptop in a long time (I'm on 12.4), so can't verify easily.