home.social

#autofill — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #autofill, aggregated by home.social.

  1. Does your site handle varying types of #autofill data? Transform address forms for different countries? The "autofill" event lets you hook in *before* the browser fills the form to update your form to fit the data.

    Especially interested in feedback from platforms, CMS providers, frameworks, libraries, and plugins. I know you're already working around this in a few ways - does this event clean that up for you?

    developer.chrome.com/blog/auto

  2. Does your site handle varying types of #autofill data? Transform address forms for different countries? The "autofill" event lets you hook in *before* the browser fills the form to update your form to fit the data.

    Especially interested in feedback from platforms, CMS providers, frameworks, libraries, and plugins. I know you're already working around this in a few ways - does this event clean that up for you?

    developer.chrome.com/blog/auto

  3. Tip #819

    See more of the web page by hiding Keyboard Accessory View on iOS.

    While the Keyboard Accessory View toolbar can be super useful for auto-filling passwords, credit card info and addresses, if you don’t rely on that feature, the toolbar just gets in the way. That’s why, in Vivaldi on iOS, you can hide it.

    To hide Keyboard Accessory View:

    1. Go to Settings > Appearance & Theme.
    2. Toggle off “Show Keyboard Accessory View”.

    #autofill #iOS #settings #Vivaldi #VivaldiBrowser

    https://vivaldi.com/blog/tips/tip-819/

  4. @ScottHelme "This is mostly a list of things passkeys were never claimed to solve":

    1. You skipped the "private key never leaves the device" lie. Note that this vuln: seclists.org/fulldisclosure/20 is unfixed (see todon.nl/@ErikvanStraten/11655).

    The alternative, having access to YOUR OWN private keys does not make #BigTech lock-in vendors (i.e. Google, Apple) happy: github.com/keepassxreboot/keep.

    Btw, also unfixed: iOS/iPadOS passkeys may be used without local auth under certain conditions: todon.nl/@ErikvanStraten/11565 (@timcappalli ).

    2. Nobody cares what is considered out of scope for ANY auth. solution, in particular if it they're not told about it. People want to know their risks w.r.t. account takeover and account lockout. We need a safer internet.

    3. "Passkeys are not magic": I don't see "what risks remain" in scotthelme.co.uk/passkeys-101- - which is why I objected.

    4. Passkeys "are a major improvement over passwords": that depends. If people use a password manager to create unique long random passwords (which they should), and use AutoFill, then the advantages and risks (attestation?) of using passkeys vs passwords are not clear and neither easily comparable.

    #Passkeys #AndroidPasskeysGone #ApplePasskeyRisks #Passkey #PasswordManager #AutoFill #Autonomy #BigTechIsEvil #MYprivateKeys #DumbPasswordRules

  5. @ScottHelme "This is mostly a list of things passkeys were never claimed to solve":

    1. You skipped the "private key never leaves the device" lie. Note that this vuln: seclists.org/fulldisclosure/20 is unfixed (see todon.nl/@ErikvanStraten/11655).

    The alternative, having access to YOUR OWN private keys does not make #BigTech lock-in vendors (i.e. Google, Apple) happy: github.com/keepassxreboot/keep.

    Btw, also unfixed: iOS/iPadOS passkeys may be used without local auth under certain conditions: todon.nl/@ErikvanStraten/11565 (@timcappalli ).

    2. Nobody cares what is considered out of scope for ANY auth. solution, in particular if it they're not told about it. People want to know their risks w.r.t. account takeover and account lockout. We need a safer internet.

    3. "Passkeys are not magic": I don't see "what risks remain" in scotthelme.co.uk/passkeys-101- - which is why I objected.

    4. Passkeys "are a major improvement over passwords": that depends. If people use a password manager to create unique long random passwords (which they should), and use AutoFill, then the advantages and risks (attestation?) of using passkeys vs passwords are not clear and neither easily comparable.

    #Passkeys #AndroidPasskeysGone #ApplePasskeyRisks #Passkey #PasswordManager #AutoFill #Autonomy #BigTechIsEvil #MYprivateKeys #DumbPasswordRules

  6. @ScottHelme "This is mostly a list of things passkeys were never claimed to solve":

    1. You skipped the "private key never leaves the device" lie. Note that this vuln: seclists.org/fulldisclosure/20 is unfixed (see todon.nl/@ErikvanStraten/11655).

    The alternative, having access to YOUR OWN private keys does not make #BigTech lock-in vendors (i.e. Google, Apple) happy: github.com/keepassxreboot/keep.

    Btw, also unfixed: iOS/iPadOS passkeys may be used without local auth under certain conditions: todon.nl/@ErikvanStraten/11565 (@timcappalli ).

    2. Nobody cares what is considered out of scope for ANY auth. solution, in particular if it they're not told about it. People want to know their risks w.r.t. account takeover and account lockout. We need a safer internet.

    3. "Passkeys are not magic": I don't see "what risks remain" in scotthelme.co.uk/passkeys-101- - which is why I objected.

    4. Passkeys "are a major improvement over passwords": that depends. If people use a password manager to create unique long random passwords (which they should), and use AutoFill, then the advantages and risks (attestation?) of using passkeys vs passwords are not clear and neither easily comparable.

    #Passkeys #AndroidPasskeysGone #ApplePasskeyRisks #Passkey #PasswordManager #AutoFill #Autonomy #BigTechIsEvil #MYprivateKeys #DumbPasswordRules

  7. @ScottHelme "This is mostly a list of things passkeys were never claimed to solve":

    1. You skipped the "private key never leaves the device" lie. Note that this vuln: seclists.org/fulldisclosure/20 is unfixed (see todon.nl/@ErikvanStraten/11655).

    The alternative, having access to YOUR OWN private keys does not make #BigTech lock-in vendors (i.e. Google, Apple) happy: github.com/keepassxreboot/keep.

    Btw, also unfixed: iOS/iPadOS passkeys may be used without local auth under certain conditions: todon.nl/@ErikvanStraten/11565 (@timcappalli ).

    2. Nobody cares what is considered out of scope for ANY auth. solution, in particular if it they're not told about it. People want to know their risks w.r.t. account takeover and account lockout. We need a safer internet.

    3. "Passkeys are not magic": I don't see "what risks remain" in scotthelme.co.uk/passkeys-101- - which is why I objected.

    4. Passkeys "are a major improvement over passwords": that depends. If people use a password manager to create unique long random passwords (which they should), and use AutoFill, then the advantages and risks (attestation?) of using passkeys vs passwords are not clear and neither easily comparable.

    #Passkeys #AndroidPasskeysGone #ApplePasskeyRisks #Passkey #PasswordManager #AutoFill #Autonomy #BigTechIsEvil #MYprivateKeys #DumbPasswordRules

  8. Who actually came up with the brilliant idea of removing the search function from Bitwarden's autofill on Android? It can't find a login because the URI isn't correct, but I can't search for the entry either. Great. Really great work. #bitwarden #autofill #ui #ux

  9. Who actually came up with the brilliant idea of removing the search function from Bitwarden's autofill on Android? It can't find a login because the URI isn't correct, but I can't search for the entry either. Great. Really great work. #bitwarden #autofill #ui #ux

  10. @Tutanota : rubbish.

    Two WEAK locks may be LESS pointless than one WEAK lock, but they're still pointless. Go read csoonline.com/article/4147134.

    U2F has been superseded by FIDO2 (hardware keys in WebAuthn mode) and Passkeys (example in Dutch: todon.nl/@ErikvanStraten/11628).

    Both WebAuthn methods have advantages and disadvantages.

    If you don't like them, use a trustworthy passwordmanager and:

    • Let it create a unique, random, as long as possible, pw per account

    • Make backups of the pw mngr database

    • Device compromise means "game over"

    • Use Autofill (easy in Android and iOS/iPadOS)

    • If Autofill does not automatically retrieve your credentials, it probably is a fake (phishing) website. Do read troyhunt.com/a-sneaky-phish-ju

    Please stop misinforming people.

    #WeakMFAsucks #Weak2FAsucks #FIDO2 #WebAuthn #Passkeys #AutoFill #KeePassium #KeePassDX

  11. @Tutanota : rubbish.

    Two WEAK locks may be LESS pointless than one WEAK lock, but they're still pointless. Go read csoonline.com/article/4147134.

    U2F has been superseded by FIDO2 (hardware keys in WebAuthn mode) and Passkeys (example in Dutch: todon.nl/@ErikvanStraten/11628).

    Both WebAuthn methods have advantages and disadvantages.

    If you don't like them, use a trustworthy passwordmanager and:

    • Let it create a unique, random, as long as possible, pw per account

    • Make backups of the pw mngr database

    • Device compromise means "game over"

    • Use Autofill (easy in Android and iOS/iPadOS)

    • If Autofill does not automatically retrieve your credentials, it probably is a fake (phishing) website. Do read troyhunt.com/a-sneaky-phish-ju

    Please stop misinforming people.

    #WeakMFAsucks #Weak2FAsucks #FIDO2 #WebAuthn #Passkeys #AutoFill #KeePassium #KeePassDX

  12. 🧵1
    Draadje met screenshots: passkey aanmaken en gebruiken om in te loggen - gebruikmakend van de KeePassDX als wachtwoordmanager onder Android.

    Als eerste moet de app KeePassDX zijn geïnstalleerd (play.google.com/store/apps/det) en geconfigureerd (dat beschrijven voert te ver voor deze serie toots). Als enige: in de hoofdpagina van de database heb ik "mappen" aangemaakt met als namen "0-9", "ABC", "DEF" etc. om de zaak overzichtelijk te houden (zie de screenshot hieronder).

    Daaronder maak ik, per website, een submap aan (met de naam van die website zonder eventueel voorafgaande "www.").

    #KeePassDX #Android #AutoFill

  13. 🧵1
    Draadje met screenshots: passkey aanmaken en gebruiken om in te loggen - gebruikmakend van de KeePassDX als wachtwoordmanager onder Android.

    Als eerste moet de app KeePassDX zijn geïnstalleerd (play.google.com/store/apps/det) en geconfigureerd (dat beschrijven voert te ver voor deze serie toots). Als enige: in de hoofdpagina van de database heb ik "mappen" aangemaakt met als namen "0-9", "ABC", "DEF" etc. om de zaak overzichtelijk te houden (zie de screenshot hieronder).

    Daaronder maak ik, per website, een submap aan (met de naam van die website zonder eventueel voorafgaande "www.").

    #KeePassDX #Android #AutoFill

  14. @maaikees : unfortunately, no. If such a solution would exist, spammers and phisher-(wo)men would immediately start using it.

    Using an email provider with a good reputation *or* (evil) big tech is your best bet.

    Note: when switching email provider, first make a list of *all* websites where you have an account, either with the old email address as user-ID or another user-ID but where the old email address can be used for password resets.

    It's okay to create a new email address (using another provider and domain name), but do not close your old email account until it has been removed (or replaced by your new address) from all websites where it may be used to authenticate you.

    My advice: use a password manager (*). Apart from other advantages, if you record in it every site where you enter your email address, you'll have a nice overview of sites that know your email address.

    (*) Full list of tips:
    Dutch: security.nl/posting/912904

    English: see the list in todon.nl/@ErikvanStraten/11561

    #PasswordManager #AutoFill #PhishingPrevention #Phishing

  15. @maaikees : unfortunately, no. If such a solution would exist, spammers and phisher-(wo)men would immediately start using it.

    Using an email provider with a good reputation *or* (evil) big tech is your best bet.

    Note: when switching email provider, first make a list of *all* websites where you have an account, either with the old email address as user-ID or another user-ID but where the old email address can be used for password resets.

    It's okay to create a new email address (using another provider and domain name), but do not close your old email account until it has been removed (or replaced by your new address) from all websites where it may be used to authenticate you.

    My advice: use a password manager (*). Apart from other advantages, if you record in it every site where you enter your email address, you'll have a nice overview of sites that know your email address.

    (*) Full list of tips:
    Dutch: security.nl/posting/912904

    English: see the list in todon.nl/@ErikvanStraten/11561

    #PasswordManager #AutoFill #PhishingPrevention #Phishing

  16. Google Chrome's autofill just got a whole lot more... helpful? It's now remembering loyalty card numbers and travel details by integrating with Google Wallet. Are we leaning into convenience or teetering on the edge of TMI? What's your take?

    Read more: cnet.com/tech/mobile/google-ch

    #GoogleChrome #Autofill #Privacy #TechNews #GoogleWallet

  17. Chrome browser's new enhanced autofill can now store your driver’s licenses, passports and VINs - hands-free convenience or a big risk waiting to happen? Learn why experts say you should pause and think before saving. 🔒

    Read: hackread.com/google-chrome-aut

    #Chrome #Autofill #Cybersecurity #Privacy #Google #BrowserSecurity

  18. Chrome browser's new enhanced autofill can now store your driver’s licenses, passports and VINs - hands-free convenience or a big risk waiting to happen? Learn why experts say you should pause and think before saving. 🔒

    Read: hackread.com/google-chrome-aut

    #Chrome #Autofill #Cybersecurity #Privacy #Google #BrowserSecurity

  19. Một tiện ích mở rộng Chrome đang được phát triển để tự động điền biểu mẫu Google và Microsoft. Ứng dụng này sẽ học các câu trả lời của người dùng và sử dụng AI để giải đáp các câu hỏi mở. Sẽ có phiên bản miễn phí và trả phí. Hiện tại, nhà phát triển đang thu thập email cho danh sách chờ.
    #TiệnÍchChrome #ĐiềnFormTựĐộng #AI #CôngNghệMới #ChromeExtension #AutoFill #AItools #SideProject

    reddit.com/r/SideProject/comme

  20. Chrome's latest feature: autofilling your passport, driver’s license, and VIN! Because nothing says 'secure' like having all your sensitive data just a click away. What could possibly go wrong? 🤔

    #TechNews #Privacy #Chrome #Autofill #Security

    techcrunch.com/2025/11/03/chro

  21. @tychotithonus : while Erik was writing a response, his account was suspended.

    If and once his appeal succeeds, he'll finish what he wrote and reply to you in public.

    Erik does not have a split personality. Everyone will have to take him as he is.

    @ErikvanStraten @DevaOnBreaches

    #UseAPasswordManager #UseAutoFill #PasswordManagers #AutoFill #DVcerts #FrancescaAlbaneseIsRight

  22. “The researcher tested his attack on certain versions of 1Password, Bitwarden, Enpass, iCloud Passwords, LastPass, and LogMeOnce, and found that all their browser-based variants could leak sensitive info under certain scenarios.”

    bleepingcomputer.com/news/secu

    #autofill

  23. “The researcher tested his attack on certain versions of 1Password, Bitwarden, Enpass, iCloud Passwords, LastPass, and LogMeOnce, and found that all their browser-based variants could leak sensitive info under certain scenarios.”

    bleepingcomputer.com/news/secu

    #autofill

  24. #Android: Ich weiß nicht genau, ab welcher Brave-Version das geht, aber: Autofill für Passwörter funktioniert jetzt auch ohne Google Play Services. Unter »Einstellungen → Autofill-Services« einfach »Autofill mit einem anderen Dienst« wählen – klappt z. B. mit KeePassDX.

    #brave #password #passwort #autofill #keepassdx

    /kuk

  25. #Android: Ich weiß nicht genau, ab welcher Brave-Version das geht, aber: Autofill für Passwörter funktioniert jetzt auch ohne Google Play Services. Unter »Einstellungen → Autofill-Services« einfach »Autofill mit einem anderen Dienst« wählen – klappt z. B. mit KeePassDX.

    #brave #password #passwort #autofill #keepassdx

    /kuk

  26. For the first time today, I tried to save a Passkey to KeePassium. But I get an error message on iOS.

    @KeePassium
    #KeePassium #iOS #Autofill #Passkey #Passkeys

  27. “Save my info for next time?” Sounds helpful—until it isn’t.

    Autofill settings in your browser can accidentally drop your address, phone, or credit card into phishing forms that look legit.

    📌 Turn off autofill in your browser settings.
    📌 Always type sensitive info manually.
    📌 Don’t trust every form with your details.

    #Privacy #CyberSecurity #Autofill #Phishing #BiyteLüm #BrowserSecurity

  28. “Save my info for next time?” Sounds helpful—until it isn’t.

    Autofill settings in your browser can accidentally drop your address, phone, or credit card into phishing forms that look legit.

    📌 Turn off autofill in your browser settings.
    📌 Always type sensitive info manually.
    📌 Don’t trust every form with your details.

    #Privacy #CyberSecurity #Autofill #Phishing #BiyteLüm #BrowserSecurity

  29. Lilbits: Intel Core Ultra 300 chips leak, OpenWrt 24.10 released, and third-party auto-fill coming to Chrome for Android (later than expected)

    Laptops with Intel’s new Arrow Lake mobile processors are just starting to hit the starting to hit the streets, but details about next-gen Intel mobile chips based on Panther Lake and Wildcat Lake architecture are starting to arrive.

    According to a social media post from @jaykihn0, Intel’s Panther Lake chips could feature up to 16 CPU cores (4 Performance + 8 Efficiency + 4 Low-Power […]

    #android #autofill #chips #chrome #google #intel #kindleColorsoft #kindlePaperwhite #leaks #lilbits #openwrt #pantherLake #wildcatLake

    Read more: liliputing.com/lilbits-intel-c

  30. Google had planned to add support for third-party autofill services to Chrome 131 for Android, but has moved that feature back to Chrome 135 following feedback from developers. It should roll out in April, 2025. buff.ly/42LpxE4

  31. Google had planned to add support for third-party autofill services to Chrome 131 for Android, but has moved that feature back to Chrome 135 following feedback from developers. It should roll out in April, 2025. buff.ly/42LpxE4 #Android #Autofill #Chrome

  32. Tip #603

    Start fresh by deleting History and other browsing data in Vivaldi on Android.

    It can be convenient to find a page you recently visited or autofill forms with your information, but it’s also good to get rid of unnecessary data every now and then. In Vivaldi on Android you can choose what to delete and for what time period.

    To delete your browsing data:

    1. Open the History Panel and tap on the broom icon in the bottom right corner.
      Alternatively, go to Settings > Privacy and Security > Delete browsing data.
    2. Select the time range you want to delete data for.
    3. Select the data types you want to delete.
    4. Tap on “Delete data”.

    #android #autofill #cookies #history #passwords

    https://tips.vivaldi.net/tip-603/

  33. Tip #603

    Start fresh by deleting History and other browsing data in Vivaldi on Android.

    It can be convenient to find a page you recently visited or autofill forms with your information, but it’s also good to get rid of unnecessary data every now and then. In Vivaldi on Android you can choose what to delete and for what time period.

    To delete your browsing data:

    1. Open the History Panel and tap on the broom icon in the bottom right corner.
      Alternatively, go to Settings > Privacy and Security > Delete browsing data.
    2. Select the time range you want to delete data for.
    3. Select the data types you want to delete.
    4. Tap on “Delete data”.

    #android #autofill #cookies #history #passwords

    https://tips.vivaldi.net/tip-603/

  34. Tip #603

    Android 版 Vivaldi で履歴やブラウジングデータを削除してリフレッシュする方法

    最近アクセスしたページを簡単に見つけられたり、情報が自動入力されたりすると便利ですが、不要なデータを時々削除することも大事です。Android 版 Vivaldi では、削除するものと対象とする期間を指定して削除することができます。

    ブラウジングデータを削除するには:

    1. 履歴パネル を開いて右下の ほうきアイコンをタップする。その他に、設定 > プライバシーとセキュリティ > 閲覧履歴データを削除 に移動する
    2. データを削除したい期間を選択する
    3. 削除したいデータの種類を選択する
    4. 「データを削除」をタップする

    #android #autofill #cookie #パスワード #履歴

    https://vivaldi.com/ja/blog/tips/android-tips/tip-603/

  35. Tip #603

    Android 版 Vivaldi で履歴やブラウジングデータを削除してリフレッシュする方法

    最近アクセスしたページを簡単に見つけられたり、情報が自動入力されたりすると便利ですが、不要なデータを時々削除することも大事です。Android 版 Vivaldi では、削除するものと対象とする期間を指定して削除することができます。

    ブラウジングデータを削除するには:

    1. 履歴パネル を開いて右下の ほうきアイコンをタップする。その他に、設定 > プライバシーとセキュリティ > 閲覧履歴データを削除 に移動する
    2. データを削除したい期間を選択する
    3. 削除したいデータの種類を選択する
    4. 「データを削除」をタップする

    #android #autofill #cookie #パスワード #履歴

    https://vivaldi.com/ja/blog/tips/android-tips/tip-603/

  36. Some public Wi-Fi networks are inconvenient to use. This wouldn’t be an issue if the web page that pops up when you connect to public Wi-Fi had access to your autofill data, but it doesn’t. That could change soon.

    #public #wifi #networks #autofill
    androidauthority.com/android-c

  37. Lilbits: Ploopy TrackPad is here, Intel Core 3 N350 is coming soon, and Winamp deletes its GitHub

    Ploopy has been designing open source trackballs for the past five years, giving potential customers a choice between building their own or buying one that comes fully (or partially) assembled.

    Now the company has released a Ploopy TrackPad. It’s available for purchase as a DIY kit for $100 Canadian (about $73 USD), or as a fully assembled TrackPad for $130 CAD ($94 USD). Or you can find use […]

    https://liliputing.com/?p=172784

    #android #autofill #chips #chrome #github #intelCore3N350 #kindleOasis #leaks #lilbits #openHardware #openSource #passwordManager #ploopy #ploopyTrackpad #winamp

  38. Google Chrome for Android is adding support for third-party autofill services, allowing apps like password managers to fill in forms on websites. It's available in Chrome 131 beta on Android 14 and later, will roll out widely on Nov 12. buff.ly/3UcRyzx #Android #PasswordManager #WebBrowsers #AutoFill

  39. Tip #553

    Vivaldi でクレジットカード情報を保存してオンライン決済をスムーズに行う方法

    オンラインショッピングを頻繁にするのであれば、ブラウザでクレジットカード情報が自動的に入力されるようにすると、素早く決済を行うことができます。新しい支払方法を保存するには、購入のプロセス中に表示されたダイアログで「保存」をクリックしてください。

    新しいカード情報を手動で追加するには:

    1. 設定 > プライバシーとセキュリティ > 決済方法 に移動する
    2. 「新しい決済カードを追加」をクリックする
    3. カードの詳細を入力する
    4. 「保存」をクリックする

    支払い情報と住所の自動入力 に関する詳細は Vivaldi のヘルプページを確認してください。

    #autofill #セキュリティ

    https://vivaldi.com/ja/blog/tips/desktop-tips/tip-553/

  40. Tip #553

    Vivaldi でクレジットカード情報を保存してオンライン決済をスムーズに行う方法

    オンラインショッピングを頻繁にするのであれば、ブラウザでクレジットカード情報が自動的に入力されるようにすると、素早く決済を行うことができます。新しい支払方法を保存するには、購入のプロセス中に表示されたダイアログで「保存」をクリックしてください。

    新しいカード情報を手動で追加するには:

    1. 設定 > プライバシーとセキュリティ > 決済方法 に移動する
    2. 「新しい決済カードを追加」をクリックする
    3. カードの詳細を入力する
    4. 「保存」をクリックする

    支払い情報と住所の自動入力 に関する詳細は Vivaldi のヘルプページを確認してください。

    #autofill #セキュリティ

    https://vivaldi.com/ja/blog/tips/desktop-tips/tip-553/