• akilou@sh.itjust.works
      link
      fedilink
      arrow-up
      32
      arrow-down
      1
      ·
      7 months ago

      I can’t wait for Proton to ship Drive for Linux just so we can get a different complaint as the top comment on every Proton thread

    • lol@discuss.tchncs.de
      link
      fedilink
      arrow-up
      23
      ·
      7 months ago

      Yeah, give me Proton Drive for Linux and Cal/CardDAV and I’ll throw my money at you even if it’s 5 times more than I currently pay for email.

      • Leny@lemmy.world
        link
        fedilink
        arrow-up
        2
        ·
        7 months ago

        F-droid… We still can’t schedule send emails on Android. The new Android app isn’t any better. There’s a very long way to go.

        • PlexSheep@infosec.pub
          link
          fedilink
          arrow-up
          1
          ·
          7 months ago

          They don’t have SMTP and IMAP, I just want that (which is why I’m hosting my main Mail with another provider now)

    • cygnus@lemmy.ca
      link
      fedilink
      arrow-up
      3
      ·
      edit-2
      7 months ago

      Seriously… I would rather not have to pay for Filen on top of my Proton business sub.

    • Chaotic Entropy@feddit.uk
      link
      fedilink
      English
      arrow-up
      2
      ·
      7 months ago

      That’s the real sticking point for me, it is a problem for my desire to transition to Linux as a daily driver.

      • MagneticFusion@lemm.ee
        link
        fedilink
        arrow-up
        9
        ·
        7 months ago

        The only thing I know is RClone or something which I am not technically advanced enough to use. If I am paying for a Proton subscription, I shouldn’t have to make any work arounds. They should ship the full suite by default.

        • Chewy@discuss.tchncs.de
          link
          fedilink
          arrow-up
          8
          arrow-down
          1
          ·
          7 months ago

          They don’t take money from investors but grow organically, which limits their resources quite a bit. With more users being on other platforms and Linux being a bit more complex when it comes to amount of possible filesystem and other combinations I see why it takes them a while. Iirc they also do e2e encryption of (meta-)data which does increase complexity.

          Hopefully they’ll finish it at some point, as it’s been a long time since they announced Proton Drive. As I’m not paying for Proton, I understand a paying long-time subscriber might not share my acceptance of them zaking their time.

          • MagneticFusion@lemm.ee
            link
            fedilink
            arrow-up
            6
            arrow-down
            2
            ·
            7 months ago

            While there is no denying that, their decisions of not releasing flatpaks and instead releasing .deb and .rpm files is something contradictory as flatpak is a literal solution to make unified packaging formats on all Linux distros, but Proton is instead focusing on package manager versions which just makes their own life more difficult. They have done this with the Protonmail beta release on Linux btw.

  • LordKitsuna@lemmy.world
    link
    fedilink
    arrow-up
    63
    ·
    7 months ago

    If we didn’t already have the perfect option that is bitwarden I would probably go for this. But there’s really no reason to switch away from bitwarden to this. It’s open source, gets regularly publicly audited, and nothing ever leaves your device unencrypted. So even if they had their data center broken into and all machines stolen physically I wouldn’t have to worry about my passwords

  • bitfucker@programming.dev
    link
    fedilink
    arrow-up
    34
    arrow-down
    1
    ·
    7 months ago

    Damn, I thought for some unknown ungodly reason Valve implemented something like game pass for Proton.

  • Cyborganism@lemmy.ca
    link
    fedilink
    English
    arrow-up
    26
    arrow-down
    1
    ·
    7 months ago

    I’m very skeptical about online cloud-based password managers. I don’t trust that at all. I still prefer to use a local off-line password manager like KeePassXC.

    • ChiefGhost295@lemmy.one
      link
      fedilink
      arrow-up
      4
      ·
      edit-2
      7 months ago

      Since the vault is end-to-end encrypted, it shouldn’t matter where it is hosted, even if it is in the cloud. Here is what a security researcher and a password cracker Jeremy M. Gosney has said about this after the LastPass incident.

      ”Is the cloud the problem? No. The vast majority of issues LastPass has had have nothing to do with the fact that it is a cloud-based solution. Further, consider the fact that the threat model for a cloud-based password management solution should *start* with the vault being compromised. In fact, if password management is done correctly, I should be able to host my vault anywhere, even openly downloadable (open S3 bucket, unauthenticated HTTPS, etc.) without concern. I wouldn’t do that, of course, but the point is the vault should be just that – a vault, not a lockbox.”

    • mino@lemmy.ml
      link
      fedilink
      arrow-up
      2
      ·
      edit-2
      7 months ago

      What is your threatmodel here?

      The problem for me with completely self hosting it is that it’ll be relatively hard to get my backup, availability and sync requirements satisfied without a lot of effort.

      Whereas I trust encryption in theory enough to hand my encrypted data to anyone. If the implementation is properly audited then I also trust that.

      Most of my passwords are for accounts with 2fa anyway so even if both the storage leak and the encryption turn out to be subpar my threatmodel is still not violated.

    • ikidd@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      7 months ago

      If self-hosting makes you feel better about it, Vaultwarden exists for the Bitwarden client.

  • QuizzaciousOtter@lemm.ee
    link
    fedilink
    arrow-up
    20
    ·
    7 months ago

    I’ll stick with KeePassXC but I’m still very happy to see them remembering about Linux. I hope Drive will be next, this is something I’m really waiting for.

    • krysel@lemmy.ml
      link
      fedilink
      arrow-up
      9
      arrow-down
      1
      ·
      7 months ago

      It‘s probably not but if you are in their ecosystem you might as well use it.

      • cyberwolfie@lemmy.ml
        link
        fedilink
        arrow-up
        18
        ·
        7 months ago

        An alternative is to keep your eggs somewhat separated so that you don’t end up in a locked in situation if their services deteriorate over the years, giving you an easier escape in that scenario.

        • SandbagTiara2816@lemmy.dbzer0.com
          link
          fedilink
          arrow-up
          6
          ·
          7 months ago

          Yep! That’s what I do. I use just about everything else in Proton’s ecosystem, but I choose to use Bitwarden as my password manager. Just feels like better practice to not be wholly dependent on Proton for all my security.

      • asap@lemmy.world
        link
        fedilink
        English
        arrow-up
        3
        ·
        7 months ago

        I’m in their ecosystem but specifically don’t use it, as it seems extraordinarily unsafe to put my passwords behind the same authentication that I use just to check my email.

    • cygnus@lemmy.ca
      link
      fedilink
      arrow-up
      3
      ·
      7 months ago

      If you have a paid plan you can generate SimpleLogin aliases directly when generating a login on a webpage. It’s a very nice feature.

      • asap@lemmy.world
        link
        fedilink
        English
        arrow-up
        2
        ·
        7 months ago

        Bitwarden also integrates SimpleLogin for one-click alias generation.

        • cygnus@lemmy.ca
          link
          fedilink
          arrow-up
          1
          ·
          7 months ago

          I didn’t know that! Although I don’t pay for SL, I get it as part of my Proton sub.

    • krash@lemmy.ml
      link
      fedilink
      arrow-up
      1
      ·
      7 months ago

      One thing protonpass does is exporting your passkeys that is generated within it. AFAIK, bitwarden supports creating and authenticating with passkeys, but you cannot export them.

  • franzcoz@feddit.cl
    link
    fedilink
    arrow-up
    10
    arrow-down
    1
    ·
    7 months ago

    What I like about Proton Pass is the aliases for your email, they are one of the neatest features I have seen in the last time, even firefox now has that feature

      • franzcoz@feddit.cl
        link
        fedilink
        arrow-up
        2
        ·
        7 months ago

        oh ok, didn’t know. still, all I wanted to say is it’s a cool feature. and Proton has up to 10, firefox up to 5 I think.

            • 8Bitz0@discuss.tchncs.de
              link
              fedilink
              arrow-up
              1
              arrow-down
              2
              ·
              edit-2
              7 months ago

              Like as in beer? No. Or free as in freedom? Also no.

              However, iCloud will give you a large amount of the feature set for a fraction of the price (starts at $0.99/mo) and will likely give privacy not too far from what Proton gives you.

              In the end, there’s always a risk with putting any information on the web.

      • franzcoz@feddit.cl
        link
        fedilink
        arrow-up
        2
        ·
        7 months ago

        it’s an email generated by a service like Firefox Relay, Proton Pass or Simple Login, etc, connected to your email (only on the receiving part) used as a way to hide and protect your actual email from spam when registering to anything. That way, this alias email redirects incoming mail to your real email, and when you receive spam, or something you don’t want in your Inbox, you just deactivate that alias.

    • asap@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      7 months ago

      Proton provides a SimpleLogin account, which is integrated with Bitwarden, so you can get the same functionality directly with Bitwarden too.

      • franzcoz@feddit.cl
        link
        fedilink
        arrow-up
        2
        ·
        7 months ago

        I think Proton bought SimpleLogin or something. It’s very similar, I use both to have more free aliases

  • entropicshart@sh.itjust.works
    link
    fedilink
    arrow-up
    9
    arrow-down
    1
    ·
    7 months ago

    Still no plans/pricing for Proton Pass Family (only the full proton suite).

    Proton is missing many users with this simple lack of effort; not everyone wants drive, vpn, etc.

    Some folks just want a password manager for the immediate and extended family; and often times we are willing to just pay a few bucks extra per month and not worry about helping these people after they get hacked, due to terrible passwords.

    • Norgur@fedia.io
      link
      fedilink
      arrow-up
      7
      ·
      7 months ago

      Well,.Bitwarden is here for you. You can even self host Bitwarden and skip fees all together if you feel so inclined at some point.

      • hitmyspot@aussie.zone
        link
        fedilink
        arrow-up
        3
        ·
        7 months ago

        I find password sharing between family or others poor on bitwarden. It segments all the password vaults and then defaults all new into one. Very hard to change. It would be better to be able to choose zones or similar for sharing so I could have a personal vault, a family vault and a work vault and able to access all seamlessly. I would own all but be able to share as appropriate.

        While this is possible to do its not seamless.

        • Norgur@fedia.io
          link
          fedilink
          arrow-up
          2
          ·
          7 months ago

          That’s what organizations are for in Bitwarden. They are groups you can give passwords to instead of your personal vault and people in said organizations can then see them just as their own passwords. That’s exactly what you described, no?

          • hitmyspot@aussie.zone
            link
            fedilink
            arrow-up
            1
            ·
            7 months ago

            Yes, I use them but it doesn’t work smoothly. I cannot easily add a password to my organisations from my personal account within a browser, even when setting up first time. If someone shares an organization vault with me, it can easily be accessed.

            • Norgur@fedia.io
              link
              fedilink
              arrow-up
              1
              ·
              7 months ago

              Why can’t you? I don’t see where the issue is. During password creation, you choose your organization and it’s done. If the entry already exists, edit the entry and choose the organization under “owner”. It’s four clicks max. Do you use this so differently than I do?

  • perishthethought@lemm.ee
    link
    fedilink
    English
    arrow-up
    8
    arrow-down
    2
    ·
    7 months ago

    As scientists, we know that transparency and peer review lead to better security.

    What? App developers are scientists now?

    I know this originally came from CERN, but I find it hard to believe those same folks are working on this now.

    • lol@discuss.tchncs.de
      link
      fedilink
      arrow-up
      8
      arrow-down
      1
      ·
      edit-2
      7 months ago

      What? App developers are scientists now?

      It does indeed sound like a typical misleading PR statement, made intentionally vague by not specifying who “we” is even supposed to refer to exactly in this context. But to be fair, although it is kind of implied, it doesn’t explicitly claim that those scientists are actively working on Proton as software developers (or anything really).

      I know this originally came from CERN, but I find it hard to believe those same folks are working on this now.

      As far as I can tell only two of the three founders that “met at CERN” (the about page doesn’t say they worked there as scientists) still work at the company: the CEO Andy Yen and Jason Stockman who does apparently work on the UI and websites, although I’m not sure if the latter is actually a “scientist”. The last co-founder Wei Sun worked at CERN as a student, but left the company already back in 2014.

    • Para_lyzed@lemmy.world
      link
      fedilink
      arrow-up
      3
      ·
      7 months ago

      While I don’t particularly agree with the sentiment, those in the field of Computer Science could be argued to be “scientists”, though often not in the classical sense. As a Computer Science major myself, I would never consider myself a “scientist” in the classical definition of the term. Those involved in actual research, yes, though that does not describe me despite the title of my Bachelor’s. I would consider those involved in the theoretical side of Computer Science to be more akin to mathematicians, as most of the theory is based in mathematical proofs and models (take for instance the field describing formal computational models as a means to defining how computers operate, and how effective specific algorithms are in that context). Though I could understand the argument that those involved heavily in the theoretical side of Computer Science may be considered scientists, given their similarity to theoretical physicists. In that sense, there is also active experimentation to test hypotheses about algorithmic runtime. It’s a fascinating niche of Computer Science that I studied briefly in university, but likely will not be pursuing in the future.

      Generally those involved with active development of commercial software don’t fit into that category, though. It’s very much a question of semantics.

  • narc0tic_bird@lemm.ee
    link
    fedilink
    arrow-up
    4
    ·
    7 months ago

    The last big feature missing for me now is support for SSH keys with an SSH agent. This is such a great feature of 1Password and I use it daily. Can’t switch before that, even though Proton Pass is already included in my Proton subscription.

    • Avid Amoeba@lemmy.ca
      link
      fedilink
      arrow-up
      2
      ·
      7 months ago

      Why switch from 1Password? One less subscription? Suspicion about 1Password enshitification? Something else?

      • narc0tic_bird@lemm.ee
        link
        fedilink
        arrow-up
        1
        ·
        7 months ago

        I think 1Password is great. The best password manager for me by a long shot.

        Proton Pass is lacking features I need/want and the UX is still superior with 1Password for now, but should Proton Pass catch up, I’ll happily save some money, sure.