[Proton Pass] wont allow edit of weak passwords - remove this feature
This is a copy of a message I send to the dev team via the "bug report".
Since a recent update, the Proton Pass extension in firefox wont allow me to save or edit a password if it's considered weak (too short, not enough special characters)
This is new, and profoundly frustrating. Please remove this feature, or at least allow user to disable it via settings.
Sometimes, we use weak password with good reasons. Some old websites wont allow long password and we have to use weak ones.
Sometimes, we use weak password with bad reasons : type it often, and the risk profile is very low.
Sometimes, user want to do what the **** they want without judgement from a password manager.
By blocking users out of their workflow, your pushing us away from your product. Best case, we'll use and insecure password that we will reuse somewhere else, and what's the point of a password manager then ?
Worst case, we switch away from a password manager altogether.
I switched away from windows onto Linux because I'm sick of my computer thinking it knows better than me. I wont hesitate to switch away from proton if it behaves the same.
Instead of locking users out of a risky, yet useful feature, You could instead just show a warning like :
"this password is weak and can be brute-forced : it is insecure. Please choose a longer and safer, randomly generated password. Learn more about secure passwords here <link>. [understood] [continue anyways]"
Or you could hide in the options the ability for user to "Allow the use of weak and insecure password. By using this option, I <understand the risks of insecure passwords>".
But dont lock us out of a basic functionality your product was designed to replace.
Waiting for your change, i will use the "note" section of the login info to store my password. This is less secure, less convenient, and less user friendly, but will work anyways. Are you going to take this away too ?
A long time user, wishing to stay the same.