Why wouldn’t you encrypt the URLs and username field of a password vault. Honestly what even was going on over at LastPass.

@matthew_d_green Not a LastPass user but my guess is it's so browser extension can prompt user to login when on a known site.


@jake_ohnstad @matthew_d_green This seems correct re the URL, but I can see no excuse for transmitting the username in cleartext.

Sign in to participate in the conversation

a Schelling point for those who seek one