Hacker News new | ask | show | jobs
by ecnahc515 3908 days ago
You realize that having that option enabled is basically equivalent to having a plain text file on disk which has your passwords, right? If you encrypt your filesystem, this isn't so bad, but still any kind of remote execution exploit could basically gain access to all your passwords.
1 comments

Well, it'd be encrypted with my login password as part of Keychain password storage under OS X (and with my device key + unlock code under iOS) so at rest it's still going to be fairly secure.

But, as I said, I don't use password managers for passwords that are really important, I use them for the bulk of online services where I'd like to use a different random username/e-mail & password for each.