1Password CLI Vulnerability

This looks valid at first glace.
I recommend:

  • avoid all extensions in anything and everything
  • put different contexts each in their own VM
2 Likes

There’s an ongoing discussion on HN.

1 Like

That’s why I voted for 1Password to be REMOVED from recommendations.

Since it is closed source we must trust something as critical as our passwords to them. Yeah, they claim audits…

Well… One auditor is good, but thousands of them if open source is better, right?

Plus we already got Proton Pass which can perfectly replace it.

Because security by obscurity is NOT the best way, IMHO.

1 Like