Forum Discussion

Former Member's avatar
Former Member
3 years ago

Password strength ratings

Hi,
Look at the 2 attachments. I used a password which was rated as "excellent". I used the same password elsewhere and it was only rated "fair". How can this be? How does 1Password check the password strength?

Now I am concerned that other passwords it has rated as excellent, or very good, or good, are actually not.

Any ideas?

Thank you.


1Password Version: Not Provided
Extension Version: Not Provided
OS Version: Not Provided
Browser:_ Not Provided

12 Replies

  • Former Member's avatar
    Former Member

    Hi Dave,

    It does help but let me explain more.

    I am debating leaving LastPass so I imported over almost 600 items. Using Watchtower, I am concentrating on the passwords used going from worst to best and changing them. No easy feat. 1Password rates them in 7 categories on import so somehow it is analyzing these. Here is where I noticed that passwords that were similar, but not the same, were given much different ratings. So I experimented with one that was given an "excellent" rating, I retyped it in a "new" login to see what would happen. Now it gave it a "fair" rating.

    Do you think this is a serious flaw? Can I trust the Watchtower system and how it is categorizing them? My plan was to change just the Terrible, Weak, and Fair passwords for now because of time constraints. Can I have any faith that the ones rated Fantastic, Excellent, Very Good and Good are decent?

    I guess I just don't understand how the algorithm can look at the same exact same password at two different times and rate it differently. Doesn't make any sense to me. And it isn't just a "one time" event.

    Thank you,

    Alex

  • Hello @aldrozd! 👋

    1Password will rate passwords that it generates as stronger than passwords that you create yourself since it knows exactly how that password was "made" and can guarantee that it's truly random. If you copy a password from one item into a different item 1Password no longer knows that the password used in that second item was generated by 1Password since it came from your device's clipboard.

    I don't recommend reusing the same password for two different websites/accounts. Each website/account should use a unique password generated by 1Password: Use the password generator to change and strengthen your passwords

    I hope that helps. 🙂

    -Dave