HNHacker News
TopNewBestAskShowJobs

roustem

339 karma · joined May 19, 2009

Created my first program in 1990. Founded AgileBits in 2005. Started working on 1Password for Mac in 2006.

[ my public key: https://keybase.io/roustem; my proof: https://keybase.io/roustem/sigs/OiNyfnkOmHnljwGH3D3PKVzDiqies2d9l5HU-Od2ONo ]

submissionscomments
roustem··on Tell HN: 1Password shares passwords you don't want shared
Sure! In 1Password 8 we added system vaults that are only visible to the app. One of them is used to store the generated passwords. This vault is synced across all your devices and you always have access to the previously generated passwords.

The app no longer shows the generated passwords in the item list. Instead, they are available in the browser extension: https://cln.sh/YtKtAq

Systems vaults can also used to sync other data like certain user settings, search history, etc.

roustem··on Tell HN: 1Password shares passwords you don't want shared
If I understand the problem correctly, the generated passwords are being saved in the vault that is set as a default vault for new items. It is possible to change it to a different vault and 1Password 7 uses the private vault in the beginning. Still, this is certainly not ideal.

This feature is based on something that was in the app from version 1.0. It was important for the app to save all generated passwords so that you never lose them by accident.

We had a chance to rethink it in 1Password 8 and build it from scratch. The history of generated passwords is implemented version 8 in a better way.

— Roustem

1Password Founder

roustem··on 1Password for SSH and Git (Beta)
Just wanted to add that the nightly build 80600030 is now available. Would love if you could give it a try and see if the newly added textfields are working better for you?
roustem··on 1Password for SSH and Git (Beta)
Thank you for the feedback!

We spoke about it internally many times in the past but couldn't get the solution implemented because there was always something in the way. After reading your comments and I talked to the team and we just merged a change that should appear in the nightly build and make the handling of the multi-line fields better. Having a single core in 1Password 8 makes things so much easier when it comes to implementing changes across all platforms.

Also, there is a new SSH Key item type that might help in this particular case.

-- Roustem 1Password Founder

roustem··on 1Password for SSH and Git (Beta)
But it is not the same functionality at all. In terms of privacy and security, the older versions do not come close. And we reworked many pain points in 1Password 7 — better lock screen, improved sidebar, new watchtower, item editing, (in)security questions, fully encrypted item icons, item location bar, tag autocompletion, special handling of the scenario where 1Password becomes locked in the middle of the editing session — and I am not even listing 10% of all the improvements here.
roustem··on 1Password for SSH and Git (Beta)
We added spellcheck and text transformations options recently. Our team contributed a few patches to Electron to enable better macOS integration. For example: https://github.com/electron/electron/pull/32024

I believe the UX performance in 1Password 8 is better than any other app we built in the past: https://twitter.com/mitchchn/status/1491253916004147203?s=20

Would love to learn more about the standard shortcuts that are missing — good keyboard shortcuts is a huge priority to us!

-- Roustem 1Password Founder

roustem··on 1Password for SSH and Git (Beta)
Also, 1Password security audits: https://support.1password.com/security-assessments/
roustem··on 1Password for Linux
We still support our customers using 1Password 3 (originally released in 2009).

You are probably right though. We should be more clear on where the future development of the product and service is going.

roustem··on 1Password for Linux
I can certainly understand and appreciate your point of view. You are free to disagree with mine and I am sorry that it might come off the condescending, it is certainly not what any of us want to convey.

However, we are also 1Password users and we build the product for ourselves. We are supporting millions of customers, several thousand support emails and tickets every day. And I am honest, the membership provides much better experience compared to standalone disjoined apps, manual syncing and lack of account recovery. The list of differences and improvements is huge. It certainly makes me sad when people think that it is only about sync.

Roustem, Founder of 1Password

roustem··on 1Password for Linux
Thank you for following up, CamJN!
roustem··on 1Password for Linux
It is a protection from "shoulder-surfing". I agree with you, there has to be an option to reveal the password if needed.
roustem··on 1Password for Linux
:(
roustem··on 1Password for Linux
Yes, Duo 2FA is now supported!
roustem··on 1Password for Linux
> They do not say that they do not decrypt your entire vault into browser memory, because they do.

I am sorry but this is just wrong. I have close to 6,000 items in my 1Password across family and business accounts. Loading everything into memory all the time would be ridiculous.

roustem··on 1Password for Linux
Why are you making stuff up, CamJN?

The extension is using IndexedDB to store the passwords and other items. A lot of work went into making sure the extension uses as little memory as possible.

Roustem Founder of 1Password

roustem··on 1Password Secrets Automation
Thank you for your comment, @CodeIsTheEnd!

We always built 1Password for ourselves. It is so much easier to develop a product that you use yourself every day.

I haven't used the standalone version of 1Password for over 5 years now. The same is true for pretty much everyone working at 1Password.

Why? Because the service is much much better and more than just simple syncing of data:

- Account recovery for family and business team members

- Easy sharing of passwords and documents

- Vault permissions

- Item history/automatic backups

- Free family accounts for businesses

- Travel mode

None of these features are possible without a server doing its part.

Roustem Founder of 1Password

roustem··on In Its First Funding in 14 Years, 1Password Raises $200M Series A
Thank you for asking! 1Password Teams is the best option for smaller teams: https://1password.com/teams/

You can always change it to 1Password Business later if you need more permission controls, user groups, etc.

If you need help with anything, please get in touch with our business team: business@1password.com

roustem··on Getting 1Password 7 ready for the Mac App Store
No. If you are on a Family plan then all apps and updates are included in the subscription price.
roustem··on Getting 1Password 7 ready for the Mac App Store
1Password service has completed SOC 2 type 1 and 2 certification as well. It is more about internal company processes and how they are followed than encryption.

"Hey your data is safe just because we have SOC 2 certification" -- that's not want you want to hear.

About vault being encrypted locally: https://hackernoon.com/psa-lastpass-does-not-encrypt-everyth...

roustem··on Getting 1Password 7 ready for the Mac App Store
1Password X is an extension that is sandboxed. However, default sandbox is not enough. We also spent a huge amount of effort on its security model. Here is more information about it:

https://support.1password.com/1password-x-security/

roustem··on Getting 1Password 7 ready for the Mac App Store
Yes. In advanced mode you can create vaults outside 1Password service.
roustem··on Getting 1Password 7 ready for the Mac App Store
Hi Ken.

It is finicky! There are multiple components outside of 1Password control when you are using Dropbox, iCloud, or WiFi sync.

We do our best to find, troubleshoot, workaround these issues. We have built an entire Troubleshooting and Diagnostics utility just for that: https://support.1password.com/diagnostics/

For the majority of users sync with third-party services works well. However, there cases when it gets finicky.

roustem··on Getting 1Password 7 ready for the Mac App Store
I completely disagree. If it is critical then it requires constant monitoring and regular updates.
roustem··on Getting 1Password 7 ready for the Mac App Store
You can do that. It is possible to have a subscription and also host a vault on iCloud.

If you only want to use iCloud then you might be served better with a license.

roustem··on Getting 1Password 7 ready for the Mac App Store
Did you subscribe to our newsletter? We also sent an email about it.

Blog and newsletter are the only options we have to communicate with our customers. I agree that it is not enough and not everyone receives this information.

If you have an idea how we can make it better, please let me know!

roustem··on Getting 1Password 7 ready for the Mac App Store
Thanks! Sounds like you will be happy then :)
roustem··on Getting 1Password 7 ready for the Mac App Store
Does it still send unencrypted item URLs to the server?
roustem··on Getting 1Password 7 ready for the Mac App Store
Good news! With 1Password X you can use it without installing the desktop app:

https://blog.agilebits.com/2017/11/13/1password-x-a-look-at-...

roustem··on Getting 1Password 7 ready for the Mac App Store
1Password Family accounts have support for free guest accounts that can be used to share information with other people without requiring them to purchase.
roustem··on Getting 1Password 7 ready for the Mac App Store
Multiple browsers, Windows, Linux, Chromebooks, encrypted documents and other item types, sharing, travel mode, item history, watchtower (security audit), ...
← PreviousPage 2 of 4Next →