"We won’t be collecting your saved passwords, passkeys, usernames, and any URLs associated with your items. Your private information is just that – private.

All event data will be de-identified and processed in aggregate before it’s used for analysis. "

It sounds like they plan on releasing the technical details in the coming days/weeks. I’m curious how its de-identified and processed.

  • g0nz0li0@beehaw.org
    link
    fedilink
    arrow-up
    3
    ·
    1 year ago

    Tough place for 1Password, who clearly want to be able to collect data to maintain a competitive edge, but have an audience of security conscious users who may not be comfortable with this. But as always transparency is appreciated.

    • wet_lettuce@beehaw.orgOP
      link
      fedilink
      arrow-up
      2
      ·
      1 year ago

      It’s also incredibly important to note that they are making this explicitly opt-in. So none of that ‘dark pattern’ mumbo jumbo with the tyranny of the default–where companies opt you in and most users dont realize they have to opt-out.

      All in all they are going about this the right way it seems. The devil will be in the de-identifying technical details imo.

  • HTTP_404_NotFound@lemmyonline.com
    link
    fedilink
    arrow-up
    2
    ·
    1 year ago

    I’ll stick with my bitwarden / vaultwarden.

    100% self-hosted using vaultwarden. If- my vaultwarden server goes down, everything remains synced to my browsers, mobile devices, and other clients.

    Autofill works fantastically well, and it can also replace authy for managing 2FA keys.

    • sunbeam60@lemmy.one
      link
      fedilink
      English
      arrow-up
      1
      ·
      1 year ago

      Almost every product tracks user behaviour. It’s how they utilise that data that should concern us. In this case, this doesn’t concern me at all. I’ve already decided to trust them with my passwords.

      • Sleepkever@lemm.ee
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        Exactly. They are being transparant, it looks like it will be an opt-in when the time comes and are already telling you why they are collecting data. Now if they will tell you exactly what data they will be collecting in a short way before asking approval this is a textbook example of how analytics data collection should be done.

    • mainfrog@beehaw.org
      link
      fedilink
      arrow-up
      2
      ·
      1 year ago

      This seems transparent, well thought out, and opt-in. The headline concerned me but once I read the article this seems fine. I moved from LastPass to 1Password because of the horrible communication around breaches in the last few years.

    • ZickZack@kbin.social
      link
      fedilink
      arrow-up
      1
      ·
      1 year ago

      You can use keepassXC and “self-host” your passwords on any cloud-storage you want (it’s just a file after all), but if you are using 1Pass at the moment, I don’t see an opt-in anonymized telemetry system as a reason to switch.

    • chaotic_goody@beehaw.org
      link
      fedilink
      arrow-up
      1
      ·
      edit-2
      1 year ago

      If you’re not willing to trust what they say about the anonymity of the telemetry system, or to opt out, then I think you wouldn’t be happy trusting them with all your passwords in the first place!

      If you’re willing to stick to Safari, then I think using Apple Keychain is best, especially since they’ll be adding sharing this year.

      • sunbeam60@lemmy.one
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        Yeah this is what I don’t get. They already hold your most precious secrets and now you don’t trust them with a telemetry system?! Seems an odd order of concerns to me.

  • Screak42@lemmy.ml
    link
    fedilink
    arrow-up
    0
    ·
    1 year ago

    Isn’t 1passwoed subscription only? If I remember correctly that’s what drove me away from a once great application.

    and now they want to collect data from paying customers?? excuse me? are you insane?

    crash and burn.

    • sunbeam60@lemmy.one
      link
      fedilink
      English
      arrow-up
      2
      ·
      1 year ago

      Huh? They are interested in improving their app - to do that, understanding what choices people make (which buttons do they press, which so they miss etc) is helpful. They’re not trying to monetise your behaviour for goodness sake, but give you a better experience.

    • renard_roux@beehaw.org
      link
      fedilink
      arrow-up
      0
      ·
      1 year ago

      I used a legacy version until recently. Could still sync with Dropbox, but Chrome integration eventually broke completely, and that was the last straw. Now on BitWarden, and while not perfect, it’s free and does what I need it to do.

  • OsrsNeedsF2P@lemmy.ml
    link
    fedilink
    arrow-up
    0
    ·
    1 year ago

    Telemetry is one more attack vector, and it’s not a small one at that.

    Product owners need to be laid off to stop the enshittification of these apps. Extremely disappointed in this move.