logoalt Hacker News

Aachenyesterday at 11:26 PM2 repliesview on HN

I loosely monitor new password managers that appear with surprising regularity on F-Droid. Most have security issues that can be trivially found. It's conceptually simple software (running strings through a function before writing it to disk): nice for learning a new language, but should everyone's practice implementation seriously land in stores? So I'm skeptical of any new ones appearing from scratch, praising all their features and slick UI, with no mention of what was wrong with the incredibly diverse set of existing password manager projects. A study I read a few months ago showed that old code has fewer bugs than new code, which seems intuitive but it's nice to have actual data on it as well

Why a whole new project that needs to re-learn the gotchas that the predecessors ran into? Could any grievances have been pull requests or, worst case, a fork?


Replies

willangelotoday at 12:12 AM

Side note: have you experimented with different ones? Do you recommend any in particular?

8cvor6j844qw_d6today at 1:36 AM

Can't have software bugs if you just write your passwords down on paper. /jk