you are viewing a single comment's thread
view the rest of the comments
[โ€“] 20 points 11 months ago (2 children)

General rule: never give a company all trust and power. If a company has access to part A of your life and encrypts fully from begin and during til end, ok.

But if a company also has access to your agenda, your authentication, your hospital data, etc... that can be dangerous. Best to spread the risk, I feel, with the best options available.

  • source
  • hideshow 4 child comments
  • [โ€“] 7 points 11 months ago (2 children)

    Agreed. Having and your 2fa and your password vault in one breaks the entire purpose of 2fa. Your vault gets compromised then your 2nd factor is useless. Good security products need to be convenient for mass adoption but there needs to be a balance. And all eggs in one basket is not balanced.

  • source
  • parent
  • hideshow 4 child comments
  • [โ€“] 0 points 11 months ago

    Passkeys are going to replace passwords and TOTP. And that's just the same as having a vault with both passwords and TOTP. For mass adoption it's fine, people are much more likely to use a reputable password manager like this than they are to use one for just passwords and then something else for TOTP.

  • source
  • parent