Fixes poor passwords, accessibility and storage problems with highly secure way.
What does that even mean?
Fixes poor passwords, accessibility and storage problems with highly secure way.
What does that even mean?
Instead it regenerates the password each time.
i.e. password for HN may be: some trait of HN (domain?) + some salt + your identity (cert?) to always produce the same password.
I didn't understand it all from the site, the explanations and broken English didn't really elucidate. But... if my understanding was right, I wondered about how to handle cert changes or key rolling, etc. There seemed to be a mentioned mechanism for this, but again I didn't really understand that from the description.
Gist though: No generated and stored passwords, but a pattern to always generate the same password for a given site.
How long does the retrieval of a password take? Sub-second? 10 seconds?
How does it deal with stupid password format restrictions?
so, either password database + master password gets stolen, or salt database + master password gets stolen
Throwing passwords at a salt db gets you... what?
It is a password manager too but with an alternative approach.
>> "Fixes poor passwords, accessibility and storage problems with highly secure way." >> What does that even mean?
Generates strong passwords by default, you can access them anywhere with it and does not need to store anywhere.
But you have to carry the database with you anyway and have to store somewhere. So what's the point of having database with everything but passwords?
And you still need the database encrypted, because you don't want to give the attacker your usernames, emails, recovery answers and other stuff, do you?
But you probably want to keep the meta info of what sites you have access to secret to.
So I don't know why this is better than simply use the certificate to encrypt the database.
But maybe I did not understand how it works.