Cloud Keychain / opvault format

Olaeg
Olaeg
Community Member

Hello there,

although I really like using 1Password, one thing that always bothered me was the plaintext-metadata (not encrypted title etc.) in the keychain-file. I knew that I wasn't alone, since there are many topics to about that topic in the discussion forums:

e.g.
https://discussions.agilebits.com/discussion/12237/metadata-is-not-encrypted
https://discussions.agilebits.com/discussion/25047/two-security-questions-unencrypted-metadata-in-keychain-and-master-password-issue
https://discussions.agilebits.com/discussion/22879/hint-and-other-data-not-encrypted
https://discussions.agilebits.com/discussion/12296/metadata-is-not-encrypted

In all these threads, it was promised that a migration to the new all-encrypted "cloud keychain / opvault" format would fix the issue, for Dropbox syncers as well (I use the non-AppStore-version). Yet, even since 1Password 5 for Mac has come out, the old format with the unencrypted metadata is still used.

I consider this a very important issue and it's worrisome that after all this time (almost 2 years) nothing has changed yet. It would be very reassuring to get an ETA for the migration or at least affirmation that it is well on the way.

Thank you in advance :-)

Comments

  • littlebobbytables
    littlebobbytables
    1Password Alumni

    Hi @Olaeg,

    I can confirm that it is still indeed a target that we're making our way towards but as you know we haven't achieved it yet. Now the bad news is I'm unable to give an ETA. We have a few issues we need to resolve as well as ensuring all platforms are capable of using the new format. On top of that we're just unable to supply projected timelines for any changes.

    I realise that response is pretty hand wavy and I do apologise.

  • jschlosser
    jschlosser
    Community Member

    Ran into the same question. Since I sync 1x Mac, 1x Windowx, 2x iOS (all pro), I cannot use iCloud sync unfortunately, and Wifi sync not either. So an update would be highly appreciated.

    Thanks.

  • littlebobbytables
    littlebobbytables
    1Password Alumni

    Hi @jschlosser,

    We're currently working on a Windows Modern version of 1Password. It's very much in beta but the reason I mention it is it is the first non-agilekeychain version of 1Password - it only supports the .opvault format at the moment and it might not ever either. I believe this may very well be the first step towards retiring the .agilekeychain format. In the latest version of 1Password for Mac beta we also now have a drop down menu option for switching to the .opvault format. It can be found in Help > Tools > Enable OPVault for Dropbox and Folder sync.

    If you were to do this from your Mac you would need to enable this option, disable syncing (it just changes the default format for new syncing) and you may need to go as far as moving the old .agilekeychain to ensure 1Password for Mac doesn't try to merge with an existing agilekeychain. As long as it believes it needs to create a new sync container it will do so in the OPVault format. Now obviously it's a beta and you may not want to play with it but I believe we are making progress.

    So the details there were a little scant, it was more to give you a feel of what needs to be done but more to show there is progress being made :smile:

  • jschlosser
    jschlosser
    Community Member

    Thanks for the Info. I assume this is is only for 1P V5, which only runs on Yosemite. A perfect catch22, since my iMac won't run Yosemite properly.

    I'll use the keychain upgrade as soon as the Windows version is available then. Thanks!

  • littlebobbytables
    littlebobbytables
    1Password Alumni

    Hi @jschlosser,

    I've emailed you directly.

    ref: TTH-18155-141

This discussion has been closed.