Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

`pass` stores the name of the entry in plain-text (as the filename of the encrypted file), so you have to either obfuscate the names of the entries or it leaks the name of the site that the entry is for.


I understand this is a valid concern for some, but I generate random long passwords and never reuse them, so I can live with unencrypted entry names (that contains site+login)




Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: