Comments (6)
Quoting the author(s):
We haven't implemented that because it is very dangerous. There have been many exploits shown with that feature in LastPass.
from clients.
As mentioned, we have not implemented this feature because it can be easy to exploit by malicious websites. We may add it in the future as an experimental opt-in feature.
from clients.
Thanks. I thought it might be a security concern. I like that.
I previously used auto fill with LastPass and, before that, Google Chrome itself. Are they taking an unnecessary risk by offering auto fill?
from clients.
IMO yes. A couple of examples:
https://labs.detectify.com/2016/07/27/how-i-made-lastpass-give-me-all-your-passwords/
http://gizmodo.com/autofill-on-chrome-and-safari-can-give-hackers-access-t-1791030208
from clients.
from clients.
This has been added for next release as an opt-in experimental feature: ad544e5
from clients.
Related Issues (20)
- Flatpak package for Linux fails to update Master password, fresh install of deb package works HOT 1
- Vault loads with no items (macOS 14.4.1) after first time log in HOT 1
- Passwords in app do not display < symbols HOT 1
- Refreshing any reports pages leads to the displaying an empty state HOT 3
- Linux Desktop Client - no collection pre-seclected and also no collection selectable HOT 1
- Vault Timeout Value not Saving HOT 2
- Segmentation fault and Stack smshing in CLI on Linux ARM HOT 3
- Unable to create new entries HOT 1
- Constantly getting "There are no collects to list." in Bitwarden desktop client HOT 2
- Bitwarden Autofill makes crash Odoo 16 contact form HOT 1
- Vault Timeout setting is not saved HOT 3
- No key provided. Use ClearUserKey to clear the key HOT 3
- Password will not paste on ebay login screen HOT 3
- Safari plugin showing all entries in the vault when only one is appropriate for the current URL HOT 3
- Bitwarden Desktop does not save settings inside "Security" topic on Arch Linux. HOT 2
- Inline auto-fill blocking text field in Firefox HOT 1
- Different 2FA Codes for same Account HOT 2
- Touch ID popup incorrectly appearing after Vault timeout / lock HOT 5
- Base domain matching doesn't work on domains without TLD HOT 3
- Vault Timeouts Open GUI and Steals Focus, and Refuses to Close HOT 1
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from clients.