Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Have you seen 1Passwords security design? I am not an expert, but wanted to hear from someone is.


It is not opensource, therefore you cannot self-host it, therefore you depend on a thirdparty.


Can one depend on a third party if it's end-to-end encrypted?


If it's not opensource, you cannot know if the claim of it being end2end encrypted is actually true or not. The thirdparty can disable the encryption with the click of a button.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: