No, they don’t. Quoting Jonah does not make it a fact, given that Jonah is not a relevant security researcher who can fall back to appeal to authority. Audits show exactly what they themselves say on the label: A team of supposedly competent people have looked at some code given by a company (often running on a demo server) under a given deadline. The soft undercurrent of “The one you are reviewing is also your financier” also does lead to mellow reports and recommendations.
And this does not happen at 1Password. You can look at their audit reports.
Auditors are not constant. This is just ignorance or intentionally misleading.
You did exactly that.
Source? How do you know? Are all audits public? Is there no social audit by frequent users? Are you aware of if governments that use KeePass (there are a lot) have employed secret audits? This just keeps on getting worse.
This is orthogonal and unrelated to our discussion. The blind trust comment was related to audits not 1Password.
I don’t care about macos, I don’t care about 1Password, I don’t care about open source requirements. I just want people to stop insinuating audits prove A is better than B at anything.