Ingest, store, & analyze all types of time series data in a fully-managed, purpose-built database. Keep data forever with low-cost storage and superior data compression. Learn more →
Similar projects and alternatives to pashword
🆙 Upscayl - Free and Open Source AI Image Upscaler for Linux, MacOS and Windows built with Linux-First philosophy.
🔥 MagLit - Privacy Respecting Encrypted Link Shortener with Password Protection and Torrent Magnet Links support
Appwrite - The Open Source Firebase alternative introduces iOS support . Appwrite is an open source backend server that helps you build native iOS applications much faster with realtime APIs for authentication, databases, files storage, cloud functions and much more!
Low-Budget Password Strength Estimation
⭐️ ⭐️ ⭐️ ⭐️ ⭐️ The most popular, free and open-source Tailwind CSS component library
KeePassXC is a cross-platform community-driven port of the Windows application “Keepass Password Safe”.
There can be more than Notion and Miro. AFFiNE is a next-gen knowledge base that brings planning, sorting and creating all together. Privacy first, open-source, customizable and ready to use.
Workgroup for React 18 release.
A tiny (228B) utility for constructing `className` strings conditionally.
multi-channel fulfillment at scale
unofficial mirror of KeePass2.x source code
json formatter live / Keyboard first, privacy-friendly, installable JSON formatter
UltraWeather gives user-friendly, actionable weather forecasts.
kn — nvgt/fldrs/qckly
A TypeScript DSL for writing utility CSS in React/JSX (by homebound-team)
Composable / async / functional / type-safe / parallel-pipelined queries and relations without SQL injection or N+1s. (by karmakaze)
Hcker News mobile web app
An easy to learn keyboard layout that's fast and comfortable to type.
Composable computation pipelines for Java: Async, Lazy, Option, Try, Result, Multi (List), Stated, Reader, Logger, Writer.
Experiment in SSL CA management.
Access the most powerful time series database as a service. Ingest, store, & analyze all types of time series data in a fully-managed, purpose-built database. Keep data forever with low-cost storage and superior data compression.
pashword reviews and mentions
Show HN: Pashword – Hashed Password Calculator
Source Code: https://github.com/pashword/pashword
I built this webapp a few months ago because I forgot my bank account password and got locked out. A few days later, my friend complained to me about the same problem, he forgot his password and couldn't login.
This was a fun way to learn more about cryptography and hashing in detail and it was a lot of fun creating something that I would personally use.
I am well aware of the pitfalls and shortcomings of using such a tool but to be honest, I like Pashword because it suits my threat model and it's very convenient for me to use as well.
Would love to know what HN thinks about it and if there's anything I could do to improve it as well :)
This is beautifully done, great design work.
Scrypt for password stretching seems good. I see you're using CPU cost of 2^15. When storing a password hash you'd want to use 2^17 (with agility to change algorithm or increase cost in the future) . Since you're not storing the result, I suspect the lower number is reasonable.
I don't like simple concatenation when building a salt from two variable length fields. You'll get the same salt for `"foo" + "bar"` and `"foob" + "ar"`, but the salt should be unique. Although I don't think that's an issue for this project since the first is a website.
Using the website in the salt has some issues when there are multiple domains that use the same password. Do I use mail.google.com, auth.google.com, or google.com? trello.com or atlassian.net? What if the website it bought and the new owner changes the domain name? With a password manager, I can just look in my vault to figure out the old domain name.
Phishing is a major way passwords are stolen and this project doesn't seem to do anything to protect against that. A browser extension (and mobile app), that checks the domain name before showing/filling the password could help.
The secret key field let me use `1234` as the key, although the color of the field was red. I think this should either prevent obviously weak passphrases or show a much more obvious warning if when one is used. Using a password found in a breach is also a bad idea (even it the password looks strong). You don't have a way to check HIBP, so users will be vulnerable if they make that mistake. It's too easy to make a critical mistake with the current design.
Also check out other similar projects, lots of discussion which likely applies here as well. I believe one of these supports uses a counter to support password rotation. You'd just need to remember the counter value for each site.
* LessPass - https://news.ycombinator.com/item?id=12889807
Ask HN: Tools you have built for yourself?
17 projects | news.ycombinator.com | 23 Jan 2023
Hard reset every day
3 projects | reddit.com/r/adhdmeme | 18 Jan 2023
Design-first open source softwares, is that a thing/possible?
5 projects | reddit.com/r/opensource | 4 Dec 2022
Why Tailwindcss over styled-components?
7 projects | reddit.com/r/reactjs | 23 Nov 2022
Just take a look here: https://github.com/pashword/pashword/blob/main/pages/index.tsx
Pashword - FOSS Hashed Password Generator - Works without internet, Works anywhere, Never forget your passwords ever again.
4 projects | reddit.com/r/opensource | 1 Aug 2022
Source Code/Star it on Github: https://github.com/NayamAmarshe/pashword4 projects | reddit.com/r/opensource | 1 Aug 2022
I forgot my bank account password and got locked out (not the first time), so I made a webapp that generates strong passwords that I don't need to remember. After months of work, here it is! A FOSS Webapp that works offline! Never forget passwords ever again!
2 projects | reddit.com/r/linux | 1 Aug 2022
Fully FOSS, Everything happens on the client side. Source Code: https://github.com/NayamAmarshe/pashword
A note from our sponsor - InfluxDB
www.influxdata.com | 31 Mar 2023
pashword/pashword is an open source project licensed under GNU Affero General Public License v3.0 which is an OSI approved license.