28 ms·
NO! It's all done locally via JavaScript -- we never want to get your master password / encryption key -- we go through great pains to ensure that never happen
by pwman 12y ago
NO! It's all done locally via JavaScript -- we never want to get your master password / encryption key -- we go through great pains to ensure that never happens.
- MichaelGG 12y agoBut there's like, no way for a customer to verify that. It's good practise, but a customer should not rely on that as part of their security model.
- joosters 12y agoIt's a lastpass.com site and you are already implicitly trusting them by using LastPass. How does this make it less secure?