More Details and Reasons for Weak or Vulnerable Password
In Proton Pass, clicking on any of the Login Items, it shows the security level of the password. Very often it mark my existing passwords as "Weak" or "Vulnerable". ***But, it is IMPORTANT to let users know the REASON for that!!!
Like Apple iCloud Passwords, it tells you why that specific password is graded as weak. Maybe because it is reused too frequently? Leaked in other databases? Or simply the combination of letters and numbers is not secure? Too short? Too simple? But Proton Pass DOES NOT tells you why!
What I mean is, there are a lot of reasons for the password to be classed as weak or vulnerable, and sometimes it just feel strange to me why that password is weak. For example, a password generated by Apple iCloud Password like Detdip-baqnyh-tedpa3 is graded as weak (It is considered safe in Apple).
Current Feature Affected:
- In Valuts > Login Item - Currently it only shows the security level label (WITHOUT any explanation)
- In Pass Monitor - Currently it only classify into weak or reused passwords, and the explanation in each item is simply saying it is weak (so this is actually not a valid explanation or elaboration of the reason why it is weak)
Suggestions:
- In Vaults > Login Item - May add a paragraph to tell the reason for password grades, e.g., safe - not leaked or detected from databases; weak - less than 15 characters too short, weak - combination is too simple; vulnerable - leaked in *** incident in 20XX.
- In Pass monitor - Add classifications and modify the explanations to provide more context of why it is being labeled as vulnerable or weak.
Please seriously consider about this! Proton Pass, you could lag behind the competition if you miss this feature while others are having such basic stuff.
Thanks for considering and hope this can be implemented.