Is a PGP-based password manager a good idea in 2019?

Allan Odgaard lists+pass at simplit.com
Sun Sep 1 12:37:44 CEST 2019


On 1 Sep 2019, at 12:24, Allan Odgaard wrote:

> Sure, if we re-implement the features currently being used from GPG, 
> switching to an alternative would go unnoticed :)
>
> But that feature list also includes key management, for example teams 
> may encrypt passwords for multiple recipients and/or with different 
> keys for different sub-folders.

It turns out that `gopass` re-implements GPG including key storage as an 
alternative backend, so you can see what is involved here: 
https://github.com/gopasspw/gopass/tree/master/pkg/backend/crypto/xc

They use protocol buffers as the “file format” (when using this 
backend).
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.zx2c4.com/pipermail/password-store/attachments/20190901/3370eaa3/attachment.html>


More information about the Password-Store mailing list