View File

@ -0,0 +1,54 @@
layout: default
<section id="how">
<h1>How does it work?</h1>
<h2><img src="/img/password_offer.svg" title="https://thenounproject.com/term/key-delivery/944292/" />
One, two, enter.</h2>
<p>Good security depends on ease of use.</p>
<p>With Master Password, logging into any website involves these steps:</p>
<li>Unlock the Master Password app.</li>
<li>Find your site and copy its key.</li>
<li>Enter the site by pasting the key into its password field.</li>
<p>Most browsers will then ask you to "save" the site's password. If you're comfortable with that, it's a good way of skipping the above steps and logging in even faster next time.</p>
<h2><img src="/img/getting_started.svg" title="https://thenounproject.com/term/rocket/162761/" />
Getting started.</h2>
<p>As explained, Master Password is not a password manager or a vault. It is not made to hold your existing site passwords &mdash; that would violate the principles it stands for and break the advantages it offers over ordinary password managers.</p>
<p>As a result, the largest curve to adopting Master Password involves changing the passwords of all your existing accounts into the cryptographically secure keys generated by Master Password.</p>
<h3>I want pictures.</h3>
<p>All right. Here's Robert on his iPhone:</p>
<img src="/img/howto-twitter-signup.png" />
<p>He wants to sign up for Twitter. Robert filled in all the fields, except for password. Not wanting to worry about what his twitter secret is going to be, he switches to Master Password.</p>
<img src="/img/howto-mp-login.png" />
<p>Of course, he begins by unlocking his user with his master password. Robert can skip this step by going into Master Password's preferences and setting it to either save his master key or remember his login, but he choses not to.</p>
<img src="/img/howto-mp-create.png" />
<img src="/img/howto-mp-create-confirm.png" />
<p>He creates a password for Twitter by using its bare domain name: twitter.com. He knows not to use mobile.twitter.com or Twitter or anything non-standard, because that would be very difficult to remember correctly on a later date. If he has multiple twitter accounts, he could prefix the name with a user name and an @: rmitchell@twitter.com, superbob@twitter.com.</p>
<img src="/img/howto-mp-type-change.png" />
<img src="/img/howto-mp-type-basic.png" />
<p>If the account Robert's signing up for is with a website that prohibits symbols for some daft reason, Robert can change the type to Basic or something similar instead. Robert can also bump up the complexity to get an even more secure password if he wants.</p>
<img src="/img/howto-twitter-paste.png" />
<img src="/img/howto-twitter-done.png" />
<p>When Robert created the site in Master Password, it copied the password to his pasteboard. Now, Robert just switches back to Safari and pastes his brand-new password he doesn't care to remember in twitter's password field. All done!</p>

View File

@ -0,0 +1,18 @@
Binary file not shown.


Width:  |  Height:  |  Size: 244 KiB

View File

@ -0,0 +1,128 @@
layout: default
<section id="intro">
<h2><img src="/img/frustrated.svg" title="https://thenounproject.com/term/professor/625996/" />
Passwords are frustrating.</h2>
<p>We all struggle so hard, trying to keep our accounts secure.</p>
<p>But we're admittedly terrible at it, and what's more, we really don't <i>want</i> to have to bother with it.</p>
<p>There's a lot of noise about passwords lately. Accounts of popular people and friends alike getting hacked. Huge data leaks have become common news. And every time we're reminded of our need to be good virtual citizens &mdash; <q>keep good passwords</q>, <q>use unique passwords for every site</q>, <q>nothing predictable or simple</q>. How do we keep up?<br>And even more importantly so, how do we keep safe without sacrificing our freedom for that safety?</p>
<p>Do you really <i>have</i> passwords? Or does something or someone else <i>have</i> them for you?</p>
<h2><img src="/img/password_head.svg" title="https://thenounproject.com/term/password/336886/" />
A password is something you know,<br>
not something you have.</h2>
<p>You walk up to the entrance of an invite-only night club.<br>
At the entrance, a large man, thick leather vest, stops you in your tracks. <q>Password, please?</q></p>
<p>Passwords are secrets which we are expected to remember. Writing passwords down is highly frowned upon &mdash; and rightly so. The secret leaves your head and is out in the open. It's like confiding in your friend, and then she goes and puts it in her diary, which anyone could find.</p>
<p>Things we know are things we can keep secret, they are locked away safely in our head where none can get to them.<br>
Things we have, car keys, a badge, the garage remote, are things we can lose or get stolen from us. We need to keep them safe, protected and always on-hand. This is a real hassle, and we don't want that headache for our dozens of passwords.</p>
<p>And yet, we are now expected by websites everywhere, to make and remember secret passwords for each of them, while also making them non-personal and unique? This is intolerable. No wonder many of us defect and write our passwords down wherever we can &mdash; often in the form of digital notes or password "vaults". But this is a panicked reaction to a problem we simply don't know how to handle:<br>The problem of passwords for everything.</p>
<h2><img src="/img/password_generate.svg" title="https://thenounproject.com/term/expert/861293/" />
Know one password.<br>
Generate all the others.</h2>
<p>Master Password is the answer to the problem websites put on us.</p>
<p>Master Password is not a password manager. It is not a secure vault or a digital notebook. It is something else entirely, and yet something so simple.</p>
<p>Think of it, as a store-bought calculator. If your name was <code title="leet">1337</code>, your master password was <code title="lies">5317</code> and your site was named <code title="egg.lol">707.993</code>, take any calculator in the world and type in <code>1337 + 5317 + 707.993</code> to get your site's account password, <code>= 7361.993</code>.<br>
Master Password performs a similar but <i>cryptographically secure</i> operation, while making everything else easy for you.</p>
<p>Now, remember only your name and one password. Your master password. Forget everything else.</p>
<p>With Master Password you leave no passwords laying around. You no longer store passwords in commercial, proprietory apps and no longer send them off to the cloud. You are no longer tied to your laptop or the internet if you need to look one up. Even if a personal or natural catastrophe causes you loss, you can never lose your account passwords &mdash; all you ever need is your one and only master password and anyone's Master Password calculator.</p>
