Hacker News new | ask | show | jobs
by resf 3256 days ago
Wait so the name of the website is stored in plain text? So if I want to store my login for gaymidgetporn.com, there will be a file on my computer with that name?

And anything or anybody on my computer can see all the websites for which I have logins just by doing ls ~/.password-store ?

Erm, no thanks.

3 comments

If someone compromised your machine (even just user-level access, not root) you're already done. Your browser history is not encrypted and they could get the same kind of information from there.
Nothing stops you from giving the sites an alias and storing the actual URLs in the encrypted files.