Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Inactive Support Threads
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Software
General Apps
Passwords and passkeys
Proton Pass - Features, Security model and Plans
Message
<blockquote data-quote="Ink" data-source="post: 1052329" data-attributes="member: 3"><p>No, the password managers purpose is to generate secure passwords, not the other way around.</p><p></p><p><span style="font-size: 15px"><strong>Your Email Password <u>should not</u> be your Master Password.</strong></span></p><p></p><p>In the examples below let’s ignore 2FA to make it easier to understand:</p><ul> <li data-xf-list-type="ul">Email Password (<strong>is</strong>) Master Password<ul> <li data-xf-list-type="ul">Eg. Proton Mail password gets leaked, then the Proton Pass vault is compromised.</li> </ul></li> <li data-xf-list-type="ul">Email Password (<strong>is not</strong>) Master Password<ul> <li data-xf-list-type="ul">Eg. Proton Mail password gets leaked, then the Bitwarden vault is not compromised.</li> </ul></li> </ul><p></p><p>As far as I know, only 1Password implements a Secret Key to make it impossible to compromise your vault if your password gets leaked.</p><ul> <li data-xf-list-type="ul"><a href="https://blog.1password.com/what-the-secret-key-does/" target="_blank">Secret Key: What is it, and how does it protect you? | 1Password</a></li> <li data-xf-list-type="ul"><a href="https://support.1password.com/secret-key/" target="_blank">Find your Secret Key or Setup Code | 1Password</a></li> </ul><p></p><p>By properly using a secure password manager, its users only need to memorise the Master Password, that’s it. <u>One password to rule them all</u>.</p></blockquote><p></p>
[QUOTE="Ink, post: 1052329, member: 3"] No, the password managers purpose is to generate secure passwords, not the other way around. [SIZE=4][B]Your Email Password [U]should not[/U] be your Master Password.[/B][/SIZE] In the examples below let’s ignore 2FA to make it easier to understand: [LIST] [*]Email Password ([B]is[/B]) Master Password [LIST] [*]Eg. Proton Mail password gets leaked, then the Proton Pass vault is compromised. [/LIST] [*]Email Password ([B]is not[/B]) Master Password [LIST] [*]Eg. Proton Mail password gets leaked, then the Bitwarden vault is not compromised. [/LIST] [/LIST] As far as I know, only 1Password implements a Secret Key to make it impossible to compromise your vault if your password gets leaked. [LIST] [*][URL='https://blog.1password.com/what-the-secret-key-does/']Secret Key: What is it, and how does it protect you? | 1Password[/URL] [*][URL='https://support.1password.com/secret-key/']Find your Secret Key or Setup Code | 1Password[/URL] [/LIST] By properly using a secure password manager, its users only need to memorise the Master Password, that’s it. [U]One password to rule them all[/U]. [/QUOTE]
Insert quotes…
Verification
Post reply
Top