I find that's the biggest hurdle that average users can't grasp, it's not about one website getting hacked.. it's that if your ubisoft password is the same as your email address password then they can now log into your email address, which means they can probably take over every online account you have.
hexdump -n 16 -v -e '/1 "%02X"' /dev/urandom
...as a password generator openssl rand 48 -base64 cat /dev/urandom |base64 |head -c20 && echo pwgen 20https://github.com/kzahel/passwordmaker https://github.com/kzahel/passwordmaker_android
I simply don't trust 1password, lastpass, etc.
The one problem I have is that many websites place artificial restrictions on password length, types of non-alphanumeric characters, requirements on number of numeric digits, etc. It would be nice if there were an updated collaborative list of these artificial restrictions somewhere.
Currently I simply update the password generator to conform to these restrictions whenever I need to create a password for a dumb website.
That said, the interface is definitely terrible. It could use a refresh at this point.
I'd rather by in control of my data.