Protect what matters – even after you're gone. Make a plan for your digital legacy today.
Forum Discussion
Former Member
4 years agoPIN Lock Option Removed in V8
I do not use FaceID to unlock my vault. I prefer to use a PIN to prevent anyone from just putting it in my face to unlock it. Please bring back the option of using a PIN or FaceID. Thanks.
Mycenius
3 years agoSuper Contributor
ag_mike_d and 1P_Dave - hope you both had a good Christmas? Further to this topic I wanted to add one last case for this with some additional information/revisit some key points on why PIN support should be re-enabled for iOS as a priority; that perhaps you can pass on to the dev team please, to try and escalate this/get some movement (since there have now been numerous updates to v8 but no sign of PINs being reinstated for mobile devices)...
- Android Users have the same issues (i.e. http://https://1password.community/discussion/132257/please-allow-pin-unlock-in-1p8-android thread in Android) - if you have not read this thread I strongly suggest you do as it is far longer than this one and has numerous examples of how removing PIN function has detrimentally affected users (possibly large numbers), like those with budget devices (no biometrics), disabilities, protective covers on devices, damaged devices, buggy Android biometric software, and more...
- PIN use is actively supported in Windows Hello by 1Password; yet denied/removed in iOS (& Android) - it seems bizarre that it's effectively been added to Windows at the same time it's been stripped from iOS? Given 1Password's "Mac & iOS" roots I'd have thought macOS and iOS would always have the maximum functionality and best UX? Regardless it's not consistent that it's supported in Windows and not supported in iOS (& Android) and in all cases its a basic standard O/S security function...
- PIN use is an active and valid security option on iPhones and iPads (and Android devices) and if 1Password integrates with the biometric part of that O/S why does it not with the PIN function (given it does do this on Windows Hello)? Alternately a basic variable option 4-12 or 16 character alphanumeric passcode shouldn't be very hard to make integral to 1PW on all platforms?
- Using 1Password on a mobile device without PIN support and biometrics is problematic and extremely clunky - it will foster poor security behaviour and bad Master Passwords! I shouldn't need to explain to you gents why. 😉
- Forcing use of biometrics on users is a privacy risk and arguably reduces the level of security on the device (assuming a user would normally have a longish PIN and/or with some entropy e.g. alpha-numeric). Biometric Fingerprints and Face ID can be used without the persons consent, and the former even if the user is unconscious or lifeless. It also means users may be forced to incriminate themselves by law enforcement (and in places like the US, where 1Password is based, this is actually directly against the intent of the constitution - for an example see this: https://www.wired.com/story/police-unlock-iphone-face-id-legal-rights/) or disclose information unwilling in other situations.
P.S. And yes I happily acknowledge the old PIN format was poor and weak - being restricted to just 4 numeric characters - however I never understood why that was so - if you have that there should be no reason you can't have a variable 4-12 character alphanumeric passcode .