Skip to main content
Hello. I am back with this issue, which may interest a lot of people, I suppose.

 

I am using the password manager, it's helpful and I give for granted it's safe (hopefully).

But I noticed that there is a backdoor, in case one forgets the main password.

It's probably right so, and in fact, after changing my password, I had a hard time to remember it for a few hours (!), so I was thinking of using this possibility, but fortunately I regained memory :D

However I wonder if this represents a serious security breach, isn't it?

What happens exactly when one says “I forgot the password” and asks for the help of the support team?

What I understood is that the password is reset (not restored), so that one can set a new one.

This should involve a number of emails, I suppose, but what if another person takes control of the user email account? How can we feel safe anyway? Are we depending only on the safety question? If so we should perhaps pay more attention to chose it carefully (and remember it!).

 
Have not used the feature for quite a while...I manage to remember that password.

 

Does one not have to have access to the email address that is being used in conjunction with the password, or am I imagining that?

 

Regards, Baldrick

Reply