Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Remark: As far I know 1Password does not encrypt everything. Lets say you store a password in 1Password for twitter.com then the password is being encrypted but the information that the password is used for twitter.com is not. So someone could find out that you are using twitter simply by going through your 1Password file. This may be a problem with sites that are not as harmless like twitter.


Interesting observation.

I checked a couple of my 1Password files and you're right: usernames & passwords are encrypted, but not the website/URL they're associated with.




Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: