this post was submitted on 19 Oct 2025
559 points (99.1% liked)

People Twitter

10405 readers
436 users here now

People tweeting stuff. We allow tweets from anyone.

RULES:

  1. Mark NSFW content.
  2. No doxxing people.
  3. Must be a pic of the tweet or similar. No direct links to the tweet.
  4. No international politcs
  5. Be excellent to each other.
  6. Provide an archived link to the tweet (or similar) being shown if it's a major celebrity, figure or any politician. You can replace the addres of .x.com to xcancel.com in the address. https://web.archive.org/save is an option. Archive.is is no longer recommended because they remove/alter content.
  7. If a tweet (or similar) makes a statement of fact, either mark it as "satire" in the body or provide the original source link backing up the statement (see rule 6)

founded 3 years ago
MODERATORS
 
you are viewing a single comment's thread
view the rest of the comments
[โ€“] hiramfromthechi@lemmy.world 35 points 10 months ago (12 children)

Okay, I'll be that guy: Keep em in your password manager.

And don't save them in your browser. In fact, turn autofill off for your browser altogether.

You can autofill from your password manager, or copy and paste instead.

Usually, security comes at the cost of inconvenience, but in this case it's actually the opposite.

[โ€“] victorz@lemmy.world 3 points 10 months ago* (last edited 10 months ago) (9 children)

Why not in the browser, though? So convenient.

Disclaimer: I keep them in my Bitwarden account. ๐Ÿ‘

[โ€“] FearfulSalad@ttrpg.network 3 points 10 months ago (1 children)

It's a good rule of thumb that if you do not pay, as the result of some sort of contract, for the service of security, and you do not own the software or hosting within which you expect something to be secure, then you don't actually have any security.

The browser could be storing your data in plain text, and making it available to other software or malware on your system (or even on websites you visit, or to scripts which run in ads on websites you visit); the browser could be making it available to their internal tools or external "partners"; the browser could be storing it in the cloud and be subject to a breach for which you will never receive a cent; the browser could be doing everything "right" right now, but change their terms next week and your convenience will turn into a liability.

Host it yourself, as you do with bitwarden, and manage your own security, or pay a company to host it who makes it their business and is therefore legally liable if they screw up.

Crane's law.

[โ€“] victorz@lemmy.world 2 points 10 months ago

I use the free tier of bitwarden.eu. ๐Ÿคทโ€โ™‚๏ธ I figure it's their business to be secure, then it should be secure enough.

load more comments (7 replies)
load more comments (9 replies)