Hey everyone, how do you evaluate the company Proton AG, the owner of Proton Mail and Proton Pass? I’m in the process of migrating some accounts to their platform, but I’ve always been wary of using a password solution, especially after the LastPass incident. I used to use Keepass stand alone, but it’s quite cumbersome. So, how do you assess their credibility and security? Just saying that it’s Swiss and has scientists doesn’t really help, lol. Thanks!
especially after the LastPass incident.
Which one?
Serously, I think LastPass has the worst security record for any password manager. Ever. And I think they’re the only who sold to some management company.
Proton is solid. So is Bitwarden.
Overwrite7445@lemmy.ca 1 year ago
I would suggest looking into other options for PW managers like bitwarden. Having email, calendar, drive, VPN, and PW manager all from one provider just means there is a single point of failure.
Dremor@lemmy.world 1 year ago
All Proton services are e2e encrypted, so even if they are breached, there is little data available without having to crack each user keys.
Still, the password manager is still new, and there is still a lot to iron out. So I would advise against using it as main password manager. But it is promissing.
avidamoeba@lemmy.ca 1 year ago
Err how is mail E2E encrypted when mail isn’t typically E2E encrypted? It has to reach a mailbox. If that mailbox isn’t on your computer, then it’s on Proton’s.
stealth_cookies@lemmy.ca 1 year ago
I agree, keep your password manager, 2FA, and email all on separate services so at least there is some protection from getting your accounts stolen if they get access to one of them.