Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Is convenience more important than security? That's what you're saying here.


Before using a password manager: I'm using short, memorable (often repeated) passwords that are rarely, if ever, changed.

After using a password manager: I'm using long (generally 64 characters), unique passwords, and if one is compromised, it's a 30s job to change it on all of my devices.

Convenience _enables_ security. I could probably roll my syncing solution, but I would _not_ be convinced it is secure (I don't have that level of expertise), and I would probably end up using a third party anyway (Dropbox/Digital Ocean). I'm not going to sync it manually to the 6 or so devices I regularly use, plus others I use less frequently (it may be more secure, but it's not practical). Because it's low friction, I end up using it more, so it's a _net_ gain in security, even if it isn't perfect.


Convenience is security.


No. I'm saying that the vast majority of people are not capable of doing this, and that it's a better option than weak passwords.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: