Brain-based management is getting too exhausting, and isn’t even fully possible with a larger quantity of online accounts.

  • BurgerBaron@quokk.au
    link
    fedilink
    English
    arrow-up
    1
    ·
    1 day ago

    Self host. Keepass, NAS with a sync app across devices. Occasional manual backup. Probably overkill.

  • edgyspazkid@lemmy.wtf
    link
    fedilink
    arrow-up
    2
    ·
    2 days ago

    I use KeePass database for all my passwords and other database for recovery passwords (like from 2FA codes etc). I have it synced in my Nextcloud and ProtonDrive (In case my Nextcloud would fuck up).

  • huquad@lemmy.ml
    link
    fedilink
    English
    arrow-up
    1
    ·
    2 days ago

    I ask AI to make me a random password for “x” service. Whenever I need to remember it, I just ask again \s

    Vaultwarden

    • u/lukmly013 💾 (lemmy.sdf.org)@lemmy.sdf.orgOP
      link
      fedilink
      English
      arrow-up
      1
      ·
      1 day ago

      I ask AI to make me a random password for “x” service. Whenever I need to remember it, I just ask again

      I’ve already seen someone do that, a certain family member. At first I found it funny when they asked an LLM about their WiFi password, which was some gibberish. But it worked. There’s no way something like that would be default across entire product line.
      Indeed, when I asked, I got “I gave it screenshots of everything because I didn’t know what to type where”.

    • WhyJiffie@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      2
      ·
      4 hours ago

      I think the site stores my password in its original form, without hashing. its way too common, even at high profile services like banks, university or government systems.

    • BlueOysterCultist@lemmy.zip
      link
      fedilink
      arrow-up
      25
      arrow-down
      1
      ·
      3 days ago

      To further this, if you actually move over to any password manager please regenerate all of your duplicate passwords with something 20+ characters. It’s almost pointless to have a PW Manager if you’re using the same weak password everywhere.

      Make a new strong password for your master password too; I’d recommend a phrase of four moderately long words like “BattleshipMonitorPaintingPrinter” and perhaps a little postit note doodle drawing to remember it until it’s hammered home.

      Alternatively, writing down the master password somewhere secure, like in a safe, would also be good if you have to pass on important accounts to descendants.

      • Mercer@lemmy.zip
        link
        fedilink
        arrow-up
        1
        ·
        2 days ago

        Or a USB with a Gpg encrypted text file locked with a slightly easier password.

      • That’s my reason for wanting to switch to a password manager. Everything gets some long random string that would be insane to type anyway. Or using passkeys, if supported, though I’ll have to research how that works.

        My biggest problem is backups. I like the method of Aegis authenticator. It just stores some number of past (encrypted) databases. Each change is a new file. This way rsync takes care of both backups and version control. If I accidentally rsync a corrupted file, it doesn’t matter much. And I can verify them with Rhash, just like all files that don’t change (like photos).

  • prole@lemmy.blahaj.zone
    link
    fedilink
    arrow-up
    1
    ·
    2 days ago

    Have you considered trying pass phrases? Weirdly, they can sometimes be easier to remember depending on where you take it from.

  • Lushed_Lungfish@lemmy.ca
    link
    fedilink
    English
    arrow-up
    1
    ·
    2 days ago

    I write down a password hint on a physical piece of paper.

    Since the primary threat vector is remote access and not physical access, I’d argue that is fine.

    Additionally the password hint has to pass through several thought chains in order to provide the actual password.

    I do wish sites would up front tell you what the password requirements were when you logged in though.