Forum Discussion

1P_Blake's avatar
1P_Blake
Icon for Community Manager rankCommunity Manager
29 days ago

Help shape our next Random but Memorable episode for World Password Day! 🎙️

Hey everyone đź‘‹

We’re putting together a special episode of Random But Memorable for World Password Day, and we want to hear from you!

Got questions about passwords, passkeys, or two-factor authentication? Wondering how to stay safer online or what makes a strong password? Big or small, simple or complex — we want to hear it all!

Drop your questions here in this thread, and you might hear yours featured on the next episode.

Get your questions in by April 29th so we can bring them to the recording session. Thanks for being part of the 1Password community — we can’t wait to see what you’re curious about!

2 Replies

  • thecatfix's avatar
    thecatfix
    Frequent Contributor

    Looking forward to it 1P_Blake​ and 1P_SimonH​ 
    I have a running list but the most important is the following:
    GO THRU IN DETAIL THE AUTOFILL SETTINGS ON THE BROWSER EXTENSION!!!!!
    How is this triggered? Why does it only work on some pages? What browsers does it work on?


    Then it is a general list


    1) MacOs Autofill is very finicky. How do I ensure that the autofill feature on MacOS uses 1password of the supplier.
    2) Does anyone use 1password for contact management? I would love to have profile feature for my contacts and wondering if anyone uses it in this way.
    3) Why does 1password offer beta and nightly versions? If you're using multiple devices with multiple versions will it still work?
    4) Suggestions for installing 1password - Homebrew or App Store
    5) Why don't you let users turn off notifications from 1password in browser extension? Can you explain the browser extension notifications.
    SSH overview and how to utilize it for everything....please!!!! Does anyone do this??? Drowning in ouath hell. Passkeys do not have a global regulatory body and FIDOS is a joke.

  • AJCxZ0's avatar
    AJCxZ0
    Super Contributor

    Bill Burr's advice on choosing passwords in 2003's NIST Special Publication 800-63 Appendix A (which he subsequently regretted and which was recently revised) resulted in decades of suffering.

    1. Why should we trust current advice?
    2. Why is the current best advice so inconsistently and poorly implemented?
    3. Given how all our credentials are being constantly pwned , data purloined, cookies raided, links clicked, malware deployed, privacy violated, and time and attention wasted on hoop-jumping while brute-forcing logins is almost an anachronism, why not just use pɑssword1 everywhere? It has never been pwned.

     

    Bonus controversial question:

          Passkeys remain more a platform capture tool than authentication method, so for how many more decades will we suffer in this password purgatory?