6 ms·
Apple makes this experience as seamless as I think it possibly can be. (As long as you use Safari...). All my passwords synced across all devices all the time,
by EnragedParrot 3y ago
Apple makes this experience as seamless as I think it possibly can be. (As long as you use Safari...). All my passwords synced across all devices all the time, instantly available with faceID or or my fingerprint. Apply pay makes checking out of most online retailers as fast as using my fingerprint or double-clicking the side button on my phone. Passkeys generally starting to replace passwords on many major sites, making the process even faster.
- wharvle 3y agoThat whole process in the top level comment is much faster, in practice, on my phone. Everything auto-fills (unless a site manages to fuck up their forms). I don’t typically have to type or manually copy anything, including 2fa tokens. Wait for the notification to ping, “fill from message” option, done. I can often go through an entire sign-up, entering shipping, and payment, at a new site, without typing a single thing.
- hcurtiss 3y agoHow are you populating non-SMS 2FA codes automatically?
- InitialBP 3y ago1Password can do this for you, and I assume many other password managers as well. https://support.1password.com/one-time-passwords/ https://support.1password.com/one-time-passwords/
- sgarman 3y agoI use 1password but opt out of this feature. Just as described in the article masterpassword creates a single source of failure so I don't personally want to put more eggs in that basket.
- jorvi 3y agoI keep my unimportant 2FA in 1Password and the really important one’s (e-mail, domains, etc) in a separate 2FA app. If someone has pwned my 1Password I don’t really care if they log on to my Discord or order a limited amount of crap on Amazon because I am in much deeper shit at that point.
- Encrypt-Keeper 3y agoIt depends on the set of credentials. Your primary email address, your access to 1Password, things of that nature can and should be stored in a 2FA app on another device. But the majority of 2FA codes for most websites are fine to be stored in your password manager. This way you can enable 2FA on every site you use, without the inconvenience, but you can reserve the extra security of a second device for services that would be critical failure points for you.
- wharvle 3y agoThat, I don’t, but I only have those on work accounts anyway. None of my work stuff is set up to be as nice as my personal stuff, but that’s mostly outside my control. Oh, wait: Steam has them I guess. Every so often (once every few months?) I have to type in one of their codes. I did just check and I guess I could be doing this with non-sms codes if I added them to my password manager. If I had more than just Steam that used them, I’d do that.
- DHPersonal 3y agoApple hardware can auto-fill 2FA codes if the codes are set up in the Passwords tool on iOS/iPadOS/macOS, which are synchronized through iCloud.
- sage92 3y agoIf you use BitWarden paid version ($10/yr) then after an autofill of username/password, the totp is automatically added to the clipboard.
- alwayslikethis 3y agoKeepassXC can act as a TOTP client and can fill it just like it can do passwords.
- Aerbil313 3y agoiOS’s built in password manager iCloud Keychain does this automatically (at least on Safari).
- szundi 3y agoThis is slower than Apple Pay on the iPhone, I can assure you.
- wharvle 3y agoWell, yes (I also use Apple Pay when it’s available—best overall experience by a long shot) but it’s still quite fast and often involves no typing or copy-pasting.
- dgellow 3y agoHow does that work if you want to get an android phone or Samsung tablet or windows laptop at some point?
- rootusrootus 3y agoIf you go all-in on an ecosystem there's going to be pain if you decide to jump to another ecosystem. You can avoid some of that by using 1Password (I'm sure there are others as well). It integrates just fine with iOS.
- appplication 3y agoI used to feel this way and used LastPass, which did not end well.
- gryn 3y agoyou don't, that's the whole apple strategy lock-in your average younger, non technical person so much that they find it 'an ick' to have to interact with an android user.
- EnragedParrot 3y agoIt doesn't, but I've used Apple stuff for going on 25 years now and it is doubtful I will care to move to something different any time soon, so it works for me. Always the tradeoff with Apple is choice and flexibility versus a seamless and pleasant user experience.
- efitz 3y agoI love the Apple ecosystem, however I always have a low level of dread that someday I will somehow offend them and be permanently blacklisted. This is the main reason I've drawn the line at using their password manager or email - I use separate email and separate password manager so that in a worst case situation I don't get locked out of everything.
- MDWolinski 3y agoNot to be argumentative, just wondering, has there been a case related to iCloud access that Apple has ever blacklisted someone? Certainly, I've heard of Meta and other companies doing not, but don't recall Apple outside of security confirmation issues people are having.
- nobrains 3y agoAnyone else feels that the double clicking of the side button doesn't feel ergonomic? It doesn't feel right to me when doing it. I end up holding it like a gun, and then double clicking it, as in the default pose of holding a phone, my thumb is unable to double click.
- DavideNL 3y agoAgree, it's somehow unwieldy... not sure what it is exactly.
- jetpks 3y agoagreed, but i almost feel like it's supposed to feel a little weird to avoid accidentally buying things. either way, if you want to make it easier, there's an option under settings > accessibility > side button. You can adjust the speed required to register a double or triple click.
- illiac786 3y agoIt's a habit to take I guess. Moving the mouse around feels very weird for people who have never used it before (yes, those exist).
- bradley13 3y agoI have a similar experience without Apple. But. Those synced passwords are a huge, juicy target. Someday, someone is going to get them. This process is a vulnerable mess.