Option to unlock vault with 2FA
I really like how Norton Password Manager requires unlocking the vault with 2FA after opening the browser. This keeps passwords secure even if the computer is unlocked. I'd love to see a similar feature in Proton Pass!
-
Tinashe “Nash Wells” Matanda commented
I feel that all passwords shouldn't be readable when the add-on for the browser is clicked, it should require login or maybe system-key which will allow biometrics to see the passwords because opening the browser itself is not safe
-
Nis Peder Bonde commented
Please add the ability to require mobile device approval before accessing secrets in Proton Pass on Windows or via browser plugins. This would add an extra security layer against malware, since accessing secrets would require physical possession of a second device.
For example, I'd like to configure that accessing credit cards or 2FA codes in Windows Proton Pass requires approval via push notification in the iOS/Android Proton Pass app. Since mobile OS's are generally more secure than Windows, this would significantly enhance security for sensitive data.
The feature could be implemented through simple rules like:
"When accessing [some or all secret types] from [device X], require approval notification in mobile Proton Pass app."
This leverages Proton's existing mobile apps and would provide true multi-factor authentication using physical device possession.