steve at
Sat Feb 8 15:11:38 CET 2020

> My ultimate objective is to set up a web server that contains a front-end
application for my Pass store so that I can access my passwords on the fly.

For what it's worth, that seems like quite a risky thing to do. A password
store is a uniquely valuable target, and exposing it via a webapp opens a
significant attack surface that would not otherwise be present. Given that
you're granting the app access to your private key, one flaw may be all it
takes for you to lose the lot.

Is there a reason you don't want to simply access / decrypt entries
locally, and use git to keep everything synchronised? What problem are you
solving with the webapp approach?


