← Back to context

Comment by nathanmills

14 hours ago

Why are browser extensions not sane in your opinion?

Browser password manager extensions are like putting a dog door on your reinforced vault door. Giant increase in attack surface.

  • Well we're in a thread about the CLI being compromised. I've never heard of a sandboxed browser extension being compromised.

  • Quite the contrary, actually: not using a browser extension makes you much more susceptible to phishing attacks, since your password manager won't be able to protect you from copy-pasting credentials into an imposter website.