#autofill — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #autofill, aggregated by home.social.
-
Does your site handle varying types of #autofill data? Transform address forms for different countries? The "autofill" event lets you hook in *before* the browser fills the form to update your form to fit the data.
Especially interested in feedback from platforms, CMS providers, frameworks, libraries, and plugins. I know you're already working around this in a few ways - does this event clean that up for you?
https://developer.chrome.com/blog/autofill-event-origin-trial
-
Does your site handle varying types of #autofill data? Transform address forms for different countries? The "autofill" event lets you hook in *before* the browser fills the form to update your form to fit the data.
Especially interested in feedback from platforms, CMS providers, frameworks, libraries, and plugins. I know you're already working around this in a few ways - does this event clean that up for you?
https://developer.chrome.com/blog/autofill-event-origin-trial
-
Google Chrome introduces advanced autofill on Android and iOS with deeper Google Wallet support for IDs, passports, and travel details.
#mymobprice #GoogleChrome #GoogleWallet #Autofill #Android #iPhone #TechNews
https://mymobprice.com/advanced-autofill-ios-android-wallet/
-
Tip #819
See more of the web page by hiding Keyboard Accessory View on iOS.
While the Keyboard Accessory View toolbar can be super useful for auto-filling passwords, credit card info and addresses, if you don’t rely on that feature, the toolbar just gets in the way. That’s why, in Vivaldi on iOS, you can hide it.
To hide Keyboard Accessory View:
- Go to Settings > Appearance & Theme.
- Toggle off “Show Keyboard Accessory View”.
-
@ScottHelme "This is mostly a list of things passkeys were never claimed to solve":
1. You skipped the "private key never leaves the device" lie. Note that this vuln: https://seclists.org/fulldisclosure/2024/Feb/15 is unfixed (see https://todon.nl/@ErikvanStraten/116552104781266939).
The alternative, having access to YOUR OWN private keys does not make #BigTech lock-in vendors (i.e. Google, Apple) happy: https://github.com/keepassxreboot/keepassxc/issues/10407.
Btw, also unfixed: iOS/iPadOS passkeys may be used without local auth under certain conditions: https://todon.nl/@ErikvanStraten/115658045799601168 (@timcappalli ).
2. Nobody cares what is considered out of scope for ANY auth. solution, in particular if it they're not told about it. People want to know their risks w.r.t. account takeover and account lockout. We need a safer internet.
3. "Passkeys are not magic": I don't see "what risks remain" in https://scotthelme.co.uk/passkeys-101-an-introduction-to-passkeys-and-how-they-work/ - which is why I objected.
4. Passkeys "are a major improvement over passwords": that depends. If people use a password manager to create unique long random passwords (which they should), and use AutoFill, then the advantages and risks (attestation?) of using passkeys vs passwords are not clear and neither easily comparable.
#Passkeys #AndroidPasskeysGone #ApplePasskeyRisks #Passkey #PasswordManager #AutoFill #Autonomy #BigTechIsEvil #MYprivateKeys #DumbPasswordRules
-
@ScottHelme "This is mostly a list of things passkeys were never claimed to solve":
1. You skipped the "private key never leaves the device" lie. Note that this vuln: https://seclists.org/fulldisclosure/2024/Feb/15 is unfixed (see https://todon.nl/@ErikvanStraten/116552104781266939).
The alternative, having access to YOUR OWN private keys does not make #BigTech lock-in vendors (i.e. Google, Apple) happy: https://github.com/keepassxreboot/keepassxc/issues/10407.
Btw, also unfixed: iOS/iPadOS passkeys may be used without local auth under certain conditions: https://todon.nl/@ErikvanStraten/115658045799601168 (@timcappalli ).
2. Nobody cares what is considered out of scope for ANY auth. solution, in particular if it they're not told about it. People want to know their risks w.r.t. account takeover and account lockout. We need a safer internet.
3. "Passkeys are not magic": I don't see "what risks remain" in https://scotthelme.co.uk/passkeys-101-an-introduction-to-passkeys-and-how-they-work/ - which is why I objected.
4. Passkeys "are a major improvement over passwords": that depends. If people use a password manager to create unique long random passwords (which they should), and use AutoFill, then the advantages and risks (attestation?) of using passkeys vs passwords are not clear and neither easily comparable.
#Passkeys #AndroidPasskeysGone #ApplePasskeyRisks #Passkey #PasswordManager #AutoFill #Autonomy #BigTechIsEvil #MYprivateKeys #DumbPasswordRules
-
@ScottHelme "This is mostly a list of things passkeys were never claimed to solve":
1. You skipped the "private key never leaves the device" lie. Note that this vuln: https://seclists.org/fulldisclosure/2024/Feb/15 is unfixed (see https://todon.nl/@ErikvanStraten/116552104781266939).
The alternative, having access to YOUR OWN private keys does not make #BigTech lock-in vendors (i.e. Google, Apple) happy: https://github.com/keepassxreboot/keepassxc/issues/10407.
Btw, also unfixed: iOS/iPadOS passkeys may be used without local auth under certain conditions: https://todon.nl/@ErikvanStraten/115658045799601168 (@timcappalli ).
2. Nobody cares what is considered out of scope for ANY auth. solution, in particular if it they're not told about it. People want to know their risks w.r.t. account takeover and account lockout. We need a safer internet.
3. "Passkeys are not magic": I don't see "what risks remain" in https://scotthelme.co.uk/passkeys-101-an-introduction-to-passkeys-and-how-they-work/ - which is why I objected.
4. Passkeys "are a major improvement over passwords": that depends. If people use a password manager to create unique long random passwords (which they should), and use AutoFill, then the advantages and risks (attestation?) of using passkeys vs passwords are not clear and neither easily comparable.
#Passkeys #AndroidPasskeysGone #ApplePasskeyRisks #Passkey #PasswordManager #AutoFill #Autonomy #BigTechIsEvil #MYprivateKeys #DumbPasswordRules
-
@ScottHelme "This is mostly a list of things passkeys were never claimed to solve":
1. You skipped the "private key never leaves the device" lie. Note that this vuln: https://seclists.org/fulldisclosure/2024/Feb/15 is unfixed (see https://todon.nl/@ErikvanStraten/116552104781266939).
The alternative, having access to YOUR OWN private keys does not make #BigTech lock-in vendors (i.e. Google, Apple) happy: https://github.com/keepassxreboot/keepassxc/issues/10407.
Btw, also unfixed: iOS/iPadOS passkeys may be used without local auth under certain conditions: https://todon.nl/@ErikvanStraten/115658045799601168 (@timcappalli ).
2. Nobody cares what is considered out of scope for ANY auth. solution, in particular if it they're not told about it. People want to know their risks w.r.t. account takeover and account lockout. We need a safer internet.
3. "Passkeys are not magic": I don't see "what risks remain" in https://scotthelme.co.uk/passkeys-101-an-introduction-to-passkeys-and-how-they-work/ - which is why I objected.
4. Passkeys "are a major improvement over passwords": that depends. If people use a password manager to create unique long random passwords (which they should), and use AutoFill, then the advantages and risks (attestation?) of using passkeys vs passwords are not clear and neither easily comparable.
#Passkeys #AndroidPasskeysGone #ApplePasskeyRisks #Passkey #PasswordManager #AutoFill #Autonomy #BigTechIsEvil #MYprivateKeys #DumbPasswordRules
-
Who actually came up with the brilliant idea of removing the search function from Bitwarden's autofill on Android? It can't find a login because the URI isn't correct, but I can't search for the entry either. Great. Really great work. #bitwarden #autofill #ui #ux
-
Who actually came up with the brilliant idea of removing the search function from Bitwarden's autofill on Android? It can't find a login because the URI isn't correct, but I can't search for the entry either. Great. Really great work. #bitwarden #autofill #ui #ux
-
@Tutanota : rubbish.
Two WEAK locks may be LESS pointless than one WEAK lock, but they're still pointless. Go read https://www.csoonline.com/article/4147134.
U2F has been superseded by FIDO2 (hardware keys in WebAuthn mode) and Passkeys (example in Dutch: https://todon.nl/@ErikvanStraten/116285192238090438).
Both WebAuthn methods have advantages and disadvantages.
If you don't like them, use a trustworthy passwordmanager and:
• Let it create a unique, random, as long as possible, pw per account
• Make backups of the pw mngr database
• Device compromise means "game over"
• Use Autofill (easy in Android and iOS/iPadOS)
• If Autofill does not automatically retrieve your credentials, it probably is a fake (phishing) website. Do read https://www.troyhunt.com/a-sneaky-phish-just-grabbed-my-mailchimp-mailing-list/
Please stop misinforming people.
#WeakMFAsucks #Weak2FAsucks #FIDO2 #WebAuthn #Passkeys #AutoFill #KeePassium #KeePassDX
-
@Tutanota : rubbish.
Two WEAK locks may be LESS pointless than one WEAK lock, but they're still pointless. Go read https://www.csoonline.com/article/4147134.
U2F has been superseded by FIDO2 (hardware keys in WebAuthn mode) and Passkeys (example in Dutch: https://todon.nl/@ErikvanStraten/116285192238090438).
Both WebAuthn methods have advantages and disadvantages.
If you don't like them, use a trustworthy passwordmanager and:
• Let it create a unique, random, as long as possible, pw per account
• Make backups of the pw mngr database
• Device compromise means "game over"
• Use Autofill (easy in Android and iOS/iPadOS)
• If Autofill does not automatically retrieve your credentials, it probably is a fake (phishing) website. Do read https://www.troyhunt.com/a-sneaky-phish-just-grabbed-my-mailchimp-mailing-list/
Please stop misinforming people.
#WeakMFAsucks #Weak2FAsucks #FIDO2 #WebAuthn #Passkeys #AutoFill #KeePassium #KeePassDX
-
🧵1
Draadje met screenshots: passkey aanmaken en gebruiken om in te loggen - gebruikmakend van de KeePassDX als wachtwoordmanager onder Android.Als eerste moet de app KeePassDX zijn geïnstalleerd (https://play.google.com/store/apps/details?id=com.kunzisoft.keepass.free) en geconfigureerd (dat beschrijven voert te ver voor deze serie toots). Als enige: in de hoofdpagina van de database heb ik "mappen" aangemaakt met als namen "0-9", "ABC", "DEF" etc. om de zaak overzichtelijk te houden (zie de screenshot hieronder).
Daaronder maak ik, per website, een submap aan (met de naam van die website zonder eventueel voorafgaande "www.").
-
🧵1
Draadje met screenshots: passkey aanmaken en gebruiken om in te loggen - gebruikmakend van de KeePassDX als wachtwoordmanager onder Android.Als eerste moet de app KeePassDX zijn geïnstalleerd (https://play.google.com/store/apps/details?id=com.kunzisoft.keepass.free) en geconfigureerd (dat beschrijven voert te ver voor deze serie toots). Als enige: in de hoofdpagina van de database heb ik "mappen" aangemaakt met als namen "0-9", "ABC", "DEF" etc. om de zaak overzichtelijk te houden (zie de screenshot hieronder).
Daaronder maak ik, per website, een submap aan (met de naam van die website zonder eventueel voorafgaande "www.").
-
@maaikees : unfortunately, no. If such a solution would exist, spammers and phisher-(wo)men would immediately start using it.
Using an email provider with a good reputation *or* (evil) big tech is your best bet.
Note: when switching email provider, first make a list of *all* websites where you have an account, either with the old email address as user-ID or another user-ID but where the old email address can be used for password resets.
It's okay to create a new email address (using another provider and domain name), but do not close your old email account until it has been removed (or replaced by your new address) from all websites where it may be used to authenticate you.
My advice: use a password manager (*). Apart from other advantages, if you record in it every site where you enter your email address, you'll have a nice overview of sites that know your email address.
(*) Full list of tips:
Dutch: https://security.nl/posting/912904English: see the list in https://todon.nl/@ErikvanStraten/115611078608008423
-
@maaikees : unfortunately, no. If such a solution would exist, spammers and phisher-(wo)men would immediately start using it.
Using an email provider with a good reputation *or* (evil) big tech is your best bet.
Note: when switching email provider, first make a list of *all* websites where you have an account, either with the old email address as user-ID or another user-ID but where the old email address can be used for password resets.
It's okay to create a new email address (using another provider and domain name), but do not close your old email account until it has been removed (or replaced by your new address) from all websites where it may be used to authenticate you.
My advice: use a password manager (*). Apart from other advantages, if you record in it every site where you enter your email address, you'll have a nice overview of sites that know your email address.
(*) Full list of tips:
Dutch: https://security.nl/posting/912904English: see the list in https://todon.nl/@ErikvanStraten/115611078608008423
-
Google Chrome's autofill just got a whole lot more... helpful? It's now remembering loyalty card numbers and travel details by integrating with Google Wallet. Are we leaning into convenience or teetering on the edge of TMI? What's your take?
-
Google Expands Chrome Autofill to Passports and Licenses, But Is It Safe? https://hackread.com/google-chrome-autofill-passports-licenses-safe/ #Cybersecurity #Technology #Autofill #Passport #Password #Privacy #Browser #License #Google #Chrome #Data
-
Google Expands Chrome Autofill to Passports and Licenses, But Is It Safe? https://hackread.com/google-chrome-autofill-passports-licenses-safe/ #Cybersecurity #Technology #Autofill #Passport #Password #Privacy #Browser #License #Google #Chrome #Data
-
Chrome browser's new enhanced autofill can now store your driver’s licenses, passports and VINs - hands-free convenience or a big risk waiting to happen? Learn why experts say you should pause and think before saving. 🔒
Read: https://hackread.com/google-chrome-autofill-passports-licenses-safe/
#Chrome #Autofill #Cybersecurity #Privacy #Google #BrowserSecurity
-
Chrome browser's new enhanced autofill can now store your driver’s licenses, passports and VINs - hands-free convenience or a big risk waiting to happen? Learn why experts say you should pause and think before saving. 🔒
Read: https://hackread.com/google-chrome-autofill-passports-licenses-safe/
#Chrome #Autofill #Cybersecurity #Privacy #Google #BrowserSecurity
-
Google Chrome's Enhanced Autofill Now Handles Passports, Driver's Licenses, and More
#GoogleChrome #Autofill #Privacy #CyberSecurity #Google #DataPrivacy #Browser #WebBrowsers #Alphabet
-
Google Chrome's Enhanced Autofill Now Handles Passports, Driver's Licenses, and More
#GoogleChrome #Autofill #Privacy #CyberSecurity #Google #DataPrivacy #Browser #WebBrowsers #Alphabet
-
Một tiện ích mở rộng Chrome đang được phát triển để tự động điền biểu mẫu Google và Microsoft. Ứng dụng này sẽ học các câu trả lời của người dùng và sử dụng AI để giải đáp các câu hỏi mở. Sẽ có phiên bản miễn phí và trả phí. Hiện tại, nhà phát triển đang thu thập email cho danh sách chờ.
#TiệnÍchChrome #ĐiềnFormTựĐộng #AI #CôngNghệMới #ChromeExtension #AutoFill #AItools #SideProject -
@tychotithonus : while Erik was writing a response, his account was suspended.
If and once his appeal succeeds, he'll finish what he wrote and reply to you in public.
Erik does not have a split personality. Everyone will have to take him as he is.
@ErikvanStraten @DevaOnBreaches
#UseAPasswordManager #UseAutoFill #PasswordManagers #AutoFill #DVcerts #FrancescaAlbaneseIsRight
-
“The researcher tested his attack on certain versions of 1Password, Bitwarden, Enpass, iCloud Passwords, LastPass, and LogMeOnce, and found that all their browser-based variants could leak sensitive info under certain scenarios.”
-
“The researcher tested his attack on certain versions of 1Password, Bitwarden, Enpass, iCloud Passwords, LastPass, and LogMeOnce, and found that all their browser-based variants could leak sensitive info under certain scenarios.”
-
🆕Nowy autofill w Gboard: znaczący wzrost wygody
➡️https://rootblog.pl/nowy-autofill-w-gboard-wzrost-wygody/#Android #Aplikacje #Autofill #AutomatyczneWypenianie #formularze #Gboard #Google #hasa #klawiatura #patnoci
-
#Android: Ich weiß nicht genau, ab welcher Brave-Version das geht, aber: Autofill für Passwörter funktioniert jetzt auch ohne Google Play Services. Unter »Einstellungen → Autofill-Services« einfach »Autofill mit einem anderen Dienst« wählen – klappt z. B. mit KeePassDX.
#brave #password #passwort #autofill #keepassdx
/kuk
-
#Android: Ich weiß nicht genau, ab welcher Brave-Version das geht, aber: Autofill für Passwörter funktioniert jetzt auch ohne Google Play Services. Unter »Einstellungen → Autofill-Services« einfach »Autofill mit einem anderen Dienst« wählen – klappt z. B. mit KeePassDX.
#brave #password #passwort #autofill #keepassdx
/kuk
-
For the first time today, I tried to save a Passkey to KeePassium. But I get an error message on iOS.
-
“Save my info for next time?” Sounds helpful—until it isn’t.
Autofill settings in your browser can accidentally drop your address, phone, or credit card into phishing forms that look legit.
📌 Turn off autofill in your browser settings.
📌 Always type sensitive info manually.
📌 Don’t trust every form with your details.#Privacy #CyberSecurity #Autofill #Phishing #BiyteLüm #BrowserSecurity
-
“Save my info for next time?” Sounds helpful—until it isn’t.
Autofill settings in your browser can accidentally drop your address, phone, or credit card into phishing forms that look legit.
📌 Turn off autofill in your browser settings.
📌 Always type sensitive info manually.
📌 Don’t trust every form with your details.#Privacy #CyberSecurity #Autofill #Phishing #BiyteLüm #BrowserSecurity
-
1Password-Update bringt neue Apple-Watch-Funktion
https://techupdate.io/sicherheit/1password-update-bringt-neue-apple-watch-funktion/50277/
#apple #technews #iosupdate #applewatch #sicherheit #techupdate #1password #passwortmanager #autofill
-
Lilbits: Intel Core Ultra 300 chips leak, OpenWrt 24.10 released, and third-party auto-fill coming to Chrome for Android (later than expected)
Laptops with Intel’s new Arrow Lake mobile processors are just starting to hit the starting to hit the streets, but details about next-gen Intel mobile chips based on Panther Lake and Wildcat Lake architecture are starting to arrive.
According to a social media post from @jaykihn0, Intel’s Panther Lake chips could feature up to 16 CPU cores (4 Performance + 8 Efficiency + 4 Low-Power […]
#android #autofill #chips #chrome #google #intel #kindleColorsoft #kindlePaperwhite #leaks #lilbits #openwrt #pantherLake #wildcatLake
-
Google had planned to add support for third-party autofill services to Chrome 131 for Android, but has moved that feature back to Chrome 135 following feedback from developers. It should roll out in April, 2025. https://buff.ly/42LpxE4 #Android #Autofill #Chrome
-
Google had planned to add support for third-party autofill services to Chrome 131 for Android, but has moved that feature back to Chrome 135 following feedback from developers. It should roll out in April, 2025. https://buff.ly/42LpxE4 #Android #Autofill #Chrome
-
Tip #603
Start fresh by deleting History and other browsing data in Vivaldi on Android.
It can be convenient to find a page you recently visited or autofill forms with your information, but it’s also good to get rid of unnecessary data every now and then. In Vivaldi on Android you can choose what to delete and for what time period.
To delete your browsing data:
- Open the History Panel and tap on the broom icon in the bottom right corner.
Alternatively, go to Settings > Privacy and Security > Delete browsing data. - Select the time range you want to delete data for.
- Select the data types you want to delete.
- Tap on “Delete data”.
- Open the History Panel and tap on the broom icon in the bottom right corner.
-
Tip #603
Start fresh by deleting History and other browsing data in Vivaldi on Android.
It can be convenient to find a page you recently visited or autofill forms with your information, but it’s also good to get rid of unnecessary data every now and then. In Vivaldi on Android you can choose what to delete and for what time period.
To delete your browsing data:
- Open the History Panel and tap on the broom icon in the bottom right corner.
Alternatively, go to Settings > Privacy and Security > Delete browsing data. - Select the time range you want to delete data for.
- Select the data types you want to delete.
- Tap on “Delete data”.
- Open the History Panel and tap on the broom icon in the bottom right corner.
-
Tip #603
Android 版 Vivaldi で履歴やブラウジングデータを削除してリフレッシュする方法
最近アクセスしたページを簡単に見つけられたり、情報が自動入力されたりすると便利ですが、不要なデータを時々削除することも大事です。Android 版 Vivaldi では、削除するものと対象とする期間を指定して削除することができます。
ブラウジングデータを削除するには:
- 履歴パネル を開いて右下の ほうきアイコンをタップする。その他に、設定 > プライバシーとセキュリティ > 閲覧履歴データを削除 に移動する
- データを削除したい期間を選択する
- 削除したいデータの種類を選択する
- 「データを削除」をタップする
-
Tip #603
Android 版 Vivaldi で履歴やブラウジングデータを削除してリフレッシュする方法
最近アクセスしたページを簡単に見つけられたり、情報が自動入力されたりすると便利ですが、不要なデータを時々削除することも大事です。Android 版 Vivaldi では、削除するものと対象とする期間を指定して削除することができます。
ブラウジングデータを削除するには:
- 履歴パネル を開いて右下の ほうきアイコンをタップする。その他に、設定 > プライバシーとセキュリティ > 閲覧履歴データを削除 に移動する
- データを削除したい期間を選択する
- 削除したいデータの種類を選択する
- 「データを削除」をタップする
-
Some public Wi-Fi networks are inconvenient to use. This wouldn’t be an issue if the web page that pops up when you connect to public Wi-Fi had access to your autofill data, but it doesn’t. That could change soon.
#public #wifi #networks #autofill
https://www.androidauthority.com/android-custom-tabs-captive-portal-3498113/ -
Google Chrome for Android is adding support for third-party autofill services, allowing apps like password managers to fill in forms on websites. It's available in Chrome 131 beta on Android 14 and later, will roll out widely on Nov 12. https://buff.ly/3UcRyzx #Android #PasswordManager #WebBrowsers #AutoFill
-
#Development #Techniques
Prevent data loss on web page refresh · A smart way to protect users’ unsubmitted form data https://ilo.im/160a9w_____
#Form #Data #Storage #Autofill #Autocompletion #BrowserHistory #Browser #WebDev #Frontend #JavaScript -
Tip #553
Vivaldi でクレジットカード情報を保存してオンライン決済をスムーズに行う方法
オンラインショッピングを頻繁にするのであれば、ブラウザでクレジットカード情報が自動的に入力されるようにすると、素早く決済を行うことができます。新しい支払方法を保存するには、購入のプロセス中に表示されたダイアログで「保存」をクリックしてください。
新しいカード情報を手動で追加するには:
- 設定 > プライバシーとセキュリティ > 決済方法 に移動する
- 「新しい決済カードを追加」をクリックする
- カードの詳細を入力する
- 「保存」をクリックする
支払い情報と住所の自動入力 に関する詳細は Vivaldi のヘルプページを確認してください。
-
Tip #553
Vivaldi でクレジットカード情報を保存してオンライン決済をスムーズに行う方法
オンラインショッピングを頻繁にするのであれば、ブラウザでクレジットカード情報が自動的に入力されるようにすると、素早く決済を行うことができます。新しい支払方法を保存するには、購入のプロセス中に表示されたダイアログで「保存」をクリックしてください。
新しいカード情報を手動で追加するには:
- 設定 > プライバシーとセキュリティ > 決済方法 に移動する
- 「新しい決済カードを追加」をクリックする
- カードの詳細を入力する
- 「保存」をクリックする
支払い情報と住所の自動入力 に関する詳細は Vivaldi のヘルプページを確認してください。
-
Yesterday I published “Why Does Edge Know My Real Birthday?😱”
https://www.ii.com/why-does-edge-know-my-birthday/
#InfiniteInk
#AutoFill #Birthday #Birthdays #Browsers #DarkPattern #DarkPatterns #Edge #EdgeBrowser #PII #Privacy #Security #Windows
#Byℵ #ByNM -
Yesterday I published “Why Does Edge Know My Real Birthday?😱”
https://www.ii.com/why-does-edge-know-my-birthday/
#InfiniteInk
#AutoFill #Birthday #Birthdays #Browsers #DarkPattern #DarkPatterns #Edge #EdgeBrowser #PII #Privacy #Security #Windows
#Byℵ #ByNM -
We have all accidentally typed a #password into a username field and had it stored by the #autofill of Chrome etc. to become visible by e.g. another user of your machine / session. How can it be that one cannot set it so that stupid behaviour is not possible? Can I set a #whitelist of autofill text that is allowed and block all others? Or do I have to block autofill completely for ever? #2Fa