Forum Discussion

onlyanegg's avatar
onlyanegg
New Member
1 day ago

Secret Key storage in iCloud keychain -- toggle?

Hi there,

I have read through some explanations of why the Secret Key is safe to be stored in the iCloud keychain by default, but I'd really rather it just weren't.  Is there any way to turn this behavior off?

If not, can you give me a good explanation of why you think the iCloud keychain is so secure that it warrants this kind of privilege?  It has 2fa, requires my password, I'm aware of all that -- I'm pretty happy with iCloud keychain security -- but I choose 1password to store my passwords in because I've been happier with yours, but not needing my secret key on a new device doesn't make me happy.

It seems utterly bizarre to me that a company so focused on security would not have it be an option, but it looks to me like it's not -- I'm hoping it's just not obvious where it is.

 

Please let me know how to turn it off :) :) :)

 

 

 

1 Reply

  • Hello onlyanegg​! đź‘‹

    Welcome to the community! When you add your 1Password account to the 1Password app on one of your Apple devices (such as a Mac, iPhone, or iPad), 1Password stores an encrypted version of your Secret Key in the iCloud Keychain which is securely synced to all of your Apple devices. The next time that you need to add your 1Password account to another device you'll only be asked for your account password since the 1Password app will retrieve your Secret Key from iCloud Keychain.

    The Secret Key is stored encrypted and can only be accessed by you. This process safely and securely backs up your Secret Key and saves you from having to type it into all of your devices. You'll always need to enter your account password, which isn't stored, in order to decrypt your data and access your passwords and other items.

    The only way to stop the encrypted version of your Secret Key from syncing to iCloud Keychain would be to turn off iCloud Keychain on all of your Apple devices. Then, the Secret Key would still be saved to the local keychain but it wouldn't be synced to your Apple account.

    -Dave