Hacker News new | ask | show | jobs
by Barrin92 2958 days ago
As far as I am aware lastpass and keeper are the only two password managers to receive soc II security reports.

Also I'm pretty confident the entire lastpass vault is encrypted locally as well.

1 comments

1Password service has completed SOC 2 type 1 and 2 certification as well. It is more about internal company processes and how they are followed than encryption.

"Hey your data is safe just because we have SOC 2 certification" -- that's not want you want to hear.

About vault being encrypted locally: https://hackernoon.com/psa-lastpass-does-not-encrypt-everyth...