Protect what matters – even after you're gone. Make a plan for your digital legacy today.
Forum Discussion
robert1p
3 years agoSuper Contributor
Passkey Demo - duplicate entries and lacking details.
I'm confused by the passkey demo (https://www.future.1password.com/passkeys/).
I enter a username, and it creates a Login Item in 1pw; no problem. I select Switch Account, enter a new userna...
robert1p
3 years agoSuper Contributor
I thought we were past the days of security through obscurity. Though, I do see how a user might be tricked into exposing their private key. But, other than the private key, is there any reason the rest of the details could not be exposed? e.g. negotiated algorithm, params, etc. Certainly the public key is meant to be exposed.
If the private key must be obscured, it could at least be exposed as a hash of the value? e.g. titled "Hash of Private Key"
And again, I expect that we will be able to Export/Import all the details in clear text. "Your data is yours." https://support.1password.com/1pux-format/ This would still be prone to phishing.
Maybe a pop-up that warns and educates the user would be useful (when the attempting certain functions).
Thanks for you patience. I look forward to seeing the final implementation.