Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

How Chrome for Android handles this, which supports encrypted sync, is that after logging in it will prompt you for your real password so that it can decrypt the sync data.


Sounds handy, but at some point breaks the concept of not saving the main password on any platform. Still not that bad, since app specific passwords only are in use if you also have 2-factor-login.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: