Ugh, the world's leading password manager is integrating itself into the world's most questionable browser, becoming the latest to jump on the AI hype train. Et tu, 1Password?
@dangoodin 😳🤮👿

@WTL @dangoodin

Came to say the same, but you were much more concise.

@czarbucks @dangoodin Sometimes emoji can say exactly what I want. I think the issue is now that @1password has taken on significant outside investment, they're stuck following the current investment buzzword trends, even if they're dumb.
@dangoodin literally every time i talk to them i *BEG THEM* to let me have local-only. i told them im not alone and that there are hundreds of other security nerds that would like to go back to the old way and manually sync our own vaults. we'd even pay for a subscription! i think their investors are preventing them from "fighting for the users". le sigh.
@Viss @dangoodin I moved to Strongbox when 1P deprecated local vaults. And then to KeePassXC when Strongbox got sold to a sketchy company. I was a happy 1P customer since the 2.x days, and then all that goodwill was destroyed.
@routable @dangoodin i am too grumpy and tired to play hopscotch with all my passwords. im sticking with the ancient, still totally valid and working versions of 1pw until something better comes along.
@Viss @dangoodin Can't blame you one bit. Moving from 1P was incredibly stressful and disruptive. It was then that I decided I'd only use password managers with open db formats to make the seemingly inevitable future migration less excruciating. Only took a few years for that decision to pay off.

@Viss @dangoodin Old 1password permanent licence bought for 6.

So happy they enshittified to cloud and services early, it drove me straight in to self hosted bit warden.

Never trust a mostly software company to implement saas for cash and do anything right.

@reijomancer @dangoodin i begged them to let me transfer my 1pw6 license from mac to windows, but they told me to get fucked and buy into cloud

@Viss @dangoodin Their version of pivot to cloud was exceptionally tone deaf and forced. First came the atrophy and EOL for dropbox and other Sync.

Then they pushed their family service like a Comcast save team.

And finally not honoring licences bullshit when they finally sold out.

Good riddance. I've personally saved a few companies from making the same mistake.

@reijomancer @dangoodin i really really liked 1pw, then they took on new investors, and those investors strip-mined the company
@Viss @dangoodin just use KeePass , it is not worth it to Beg
Hackers Are Weaponizing KeePass: What You Need to Know and How to Stay Safe

“We always thought the password manager was the last line of defense. Turns out, it’s also the new battleground.”

Medium
@Viss @dangoodin I acknowledge the risks , however I believe is selfhosting is the best way to go
@Viss @TheArchMage @dangoodin "Create an account to read the full story." 
@qgustavor @Viss @dangoodin IKR , i did not read , I'll stick to KeePass ATM
@qgustavor @Viss @TheArchMage @dangoodin Just follow the link in the story, no need to create a Medium account. It says they were tricked into downloading a hacked version. That really has nothing to do with KeePass. You could get tricked into downloading a hacked version of pretty much anything.
@Viss @dangoodin I haven’t explored the avenue but as far as I know, you can self host Bitwarden, yet no one seems to be talking about it… Have I missed a glaring vulnerability on the matter that justifies this?
@jul @dangoodin its a lot of work to forklift everything from one to another and bitwarden doesnt get me anything net-new by migrating from old 1pw pre-cloud
@dangoodin I left 1Password when private equity became involved. KeePassXC synced via Nextcloud.
@dangoodin AI password manager? So... it fills in web forms with data that is mostly correct except when it isn't?
Bitwarden sets foundation for secure AI authentication with MCP server | Bitwarden

Bitwarden is positioning itself at the forefront of secure credential management and Agentic AI. By introducing its Model Context Protocol (MCP) server, Bitwarden provides the infrastructure for secure AI agent integration with password management.

Bitwarden

@scadu @EpiphanicSynchronicity @dangoodin Oh, I don't know. Have you ever hard-coded credentials in a script? Sure. Maybe you put the credentials in the environment so you could share the script without sharing your credentials. Okay, but the environment isn't really secure either.

So having a password manager expose a way for scripts (or AI agents) to use credentials doesn't sound unreasonable. It's better than some of the crap I do now!

@dangoodin MCP next, so someone can send you an email suggesting a new product you might be interested in, and Gemini can then log into Amazon using 1password and order it automatically without you having to go through the hassle of doing it yourself.

I see almost no problems with this, ever.

@dangoodin Now I'm EXTRA glad I chose Bitwarden instead of 1Password when Dropbox Passwords shut down.
@dangoodin @cR0w This is a dangerous alignment for their brand image in the long term. I guess we shouldn’t be surprised though. 1P is a startup with hundreds of millions (I think over 1B?) from outside investors. They’ll do whatever it takes to make line go up. One of the reasons I prefer to stay away from them.

@dangoodin Matt and his team have been busy a while already

Imo their focus isn't the best password manager anymore, they have been an VC funded Enterprise Security company for a while already.

It's not all bad but it's different from someone making the best password manager.

I got off when they took off with the last hype train.

https://blog.1password.com/phantom-crypto-wallet-1password/

Save your Phantom wallet details in 1Password | 1Password

Phantom wallet owners can now use the Save in 1Password button to instantly save their wallet details in 1Password.

1Password Blog
@dangoodin paging @caseyliss looks like one more good reason to rant about how 1Password has gone downhill.