1Password wades into a right-wing mess after funding a Linux project

https://www.theverge.com/tech/988536/1password-dhh-linux-controversy

1Password faced immediate backlash from customers this week over a $300,000 pledge in support of a Linux distro created by David Heinemeier Hansson, who has regularly published overtly racist blog posts that include comments calling for deportation of ethnic minorities in Europe. The popular password manager is now a “distinguished corporate patron” of Omacom, the nonprofit foundation that oversees a popular Linux distribution known as Omarchy.

Archive: https://archive.is/osNh3

716 points · 238 comments · view on lemmy.world

238 Comments

CaptDust@sh.itjust.works · 259 pts · 2d (16 replies)

Why does this shit distro deserve all this funding and support? There's many better options doing a lot more for the ecosystem yet this gets the attention. It's don't understand.

crozilla@lemmy.world · 158 pts · 2d (11 replies)

It uses AI to fix issues and errors. And billionaires need people to use AI as much as possible.

lemmyng@piefed.ca · 92 pts · 2d (4 replies)

to fix issues and errors

and create more issues and errors, like executing USB device names as root.

Zachariah@lemmy.world · 60 pts · 2d (2 replies)

it’s the circle of slop

msage@programming.dev · 10 pts · 2d (1 reply)

Look! There's a lion! Oh my god!

not@lemmy.dbzer0.com · 3 pts · 1d

Nice reference bro!

boonhet@sopuli.xyz · 4 pts · 1d

I think it's time to start a company that produces excellent mice named rm -rf / --no-preserve-root then

ripcord@lemmy.world · 11 pts · 2d (5 replies)

But seriously what is the actual reason for the donation

TeaWithDani@lemmy.world · 24 pts · 2d

Billionaires like racists?

luciferofastora@feddit.org · 20 pts · 2d (2 replies)

Per @GreenBeard@lemmy.ca's comment

I think we all know why. Whether having money causes racism, or it just so happens that racists are the ones with the money and they're good at keeping it "In The Family" so to speak is kind of tangential and academic. It's the hateful bigots that have the cash to fund big things, so if you want funding, it pays to be trashy.

Brimstone@lemmy.ml · 12 pts · 2d (1 reply)

They aren’t just racist, They also hate the poors and basically anyone that isn’t them.

luciferofastora@feddit.org · 5 pts · 2d

I agree, but I suggest you direct your replies directly to the source comment. I'm just the messenger here.

abc@suppo.fi · 0 pts · 1d

Bundling of their stuff into the base installation, I suppose. With simple math, if 1password gets like 33k subscription payments, that's about $100 000 already.

Omarchy got perhaps a 100K installations just last month.

They're buying customers and visibility with a sum that's probably pocket change for them.

GreenBeard@lemmy.ca · 46 pts · 2d (1 reply)

I think we all know why. Whether having money causes racism, or it just so happens that racists are the ones with the money and they're good at keeping it "In The Family" so to speak is kind of tangential and academic. It's the hateful bigots that have the cash to fund big things, so if you want funding, it pays to be trashy.

architect@thelemmy.club · 3 pts · 2d

This is what I think it is.

artyom@piefed.social · 24 pts · 2d

Very seldom is something funded that "deserves" it. The answer is that its' creator (DHH) is very wealthy and connected.

abc@suppo.fi · 0 pts · 1d

That's the thing about real world. People don't ask for permission to do things.

If you think you can do better, who's stopping you?

qupada@fedia.io · 180 pts · 2d

1Password does not endorse hateful, dehumanizing, or exclusionary views, including those shared publicly by DHH.

Except... ya just did. Big 'ol cashy money endorsement.

Or did you forget about that already? Because we didn't.

Art / artist.

Pxtl@lemmy.ca · 148 pts · 2d (14 replies)

"popular Linux distribution known as Omarchy."

I've literally never heard of it.

BassTurd@lemmy.world · 83 pts · 2d (4 replies)

I've seen a handful of videos about it recently that have been pushed into my algorithm. There's definitely a campaign to get it out to influencers. Never heard of it prior to this week.

It's just a fork of Arch, with tiling, that's been slop coded with AI. Something anyone could recreate without AI in a couple hours if they're familiar with Arch.

Telorand@reddthat.com · 32 pts · 2d (1 reply)

But could you recreate it with $30mil and AI‽

/s

BassTurd@lemmy.world · 4 pts · 2d

Touche.

dreamy@lemmy.blahaj.zone · 19 pts · 2d

It's not even a fork or an actual distribution or anything. It's just Arch Linux with a bunch of dotfiles made using AI and some pre-installed packages.

Kangae_Hishiryo@scribe.disroot.org · 2 pts · 2d

Don't forget that's "macOS inspired".

Meanwhile actually good distros are drowning at the bottom of the ocean.

Aeder@lemmy.world · 45 pts · 2d

It's yet another distro being shilled by god knows who on YouTube and other social media.

The fact that it's being pushed so hard without anything of note about it is already suspicious to me.

HubertManne@piefed.social · 5 pts · 2d

yeah this is like a bunch of other internet things where I kinda hate it even seeing it. for me its not a thing of interest.

TeaWithDani@lemmy.world · 5 pts · 2d

I only know of it because I was on Distro Watch this week looking for top mention distros I never heard of. The mentions position is likely because of this donation. lol

moopet@sh.itjust.works · 3 pts · 2d

I've heard the name but have not spent the time to find out what it is. I thought it was some immutable distro. I think the same about bazzite and catchy (sp?) which are other distros I see mentioned from time to time and believe are immutable and flatpak-y and that's all I know. I realise I'm just one data point but I never see a lot about these sorts of distros in my general browsing.

artyom@piefed.social · -5 pts · 2d (1 reply)

Oh well if you've never personally heard of it, it must not be popular, right?

lemmyvore@feddit.nl · 1 pts · 1d

I'm not OP but yeah, basically. People who are passionate about a specific topic will know what's up in that area.

I can name half a dozen of the most popular Arch-based distros off the top of my head because... they're actually well-known. Meaning they've been around for years, I've used several personally and can argue their pros and cons, and they feature prominently in objective lineups like the Steam Hardware Survey. Omarchy is none of these things.

Zorque@lemmy.world · -6 pts · 2d (2 replies)

Popular for Linux, not popular for Marvel movies.

AnUnusualRelic@lemmy.world · 41 pts · 2d

Still not convinced it's very popular.

lemmyvore@feddit.nl · 2 pts · 1d

It's virtually unknown in the Linux world too. It's literally something they made up overnight and are trying to astroturf.

I'd say "what a time to be alive" to see the day someone considers it worth astroturfing a Linux distro, except there's probably some nefarious shit behind it.

ryper@lemmy.ca · 108 pts · 2d (15 replies)

Nonetheless, it seems the company has sacrificed a moral position for a “mission-driven” position. In the same message to staff, Faugno says “the scale and growth of [Omarchy’s] use among our customers is significant - Omarchy has grown to be the second most used Linux distribution among 1Password users."

I didn't know Omarchy existed until, like, yesterday, so this is surprising. Do 1Password users just tend not to use Linux, so second place isn't many users?

mlg@lemmy.world · 81 pts · 2d (9 replies)

I feel like this has to be made up, downstream repack distros almost never show up on the top 10 usage stats. You will always see Ubuntu way ahead of Kubuntu.

Not to mention 1Password is a pretty popular enterprise app and I have yet to see some insane sysadmin actually roll with arch as their distro of choice. Most are probably on RHEL or some other enterprise derivative.

Zak@lemmy.world · 89 pts · 2d (8 replies)

It's probably not made up because 1Password is pre-installed and bound to a hotkey in Omarchy. Linux users making informed decisions about what to use for password management probably don't pick 1Password most of the time due to its terrible security record.

Rentlar@lemmy.ca · 35 pts · 2d

That piece of information seems like key context. 1Password didn't just give money simply because they like the product. More or less, it's product placement in return for funding.

I'm on the fence if that's better or worse.

mlg@lemmy.world · 33 pts · 2d (1 reply)

Ah didn't realize it came preinstalled lol.

::: spoiler spoiler Prepackaged "superior" arch distro and the best they could come up with was 1Password? seriously lol? :::

Zak@lemmy.world · 45 pts · 2d

1Password is the best they could come up with when "best" is measured in dollars contributed.

ryper@lemmy.ca · 19 pts · 2d

I said somewhere else that giving money to a distro won't even have an ROI, but I didn't know about this. If the distro is promoting their product that's a whole other thing.

418_im_a_teapot@lemmy.world · 11 pts · 2d (1 reply)

Terrible security record?

Of the items listed in your link, only the second one seems problematic, in that I wish they had discovered the (non-password but still privacy related) issues first. Even that section acknowledges all of the issues are fixed. The only section that makes it sound like there is still a problem is the last one, which states that version X still contains the vulnerabilities, but in reality that's just how versions work. Patching a vulnerability creates a new version.

Is there ANY record of passwords being leaked from 1password because of their own lack of security??

abc@suppo.fi · 1 pts · 1d

The pattern is this: First, they find out who to hate. Second, they find reasons to hate. Third, if they cannot find any reasons, they make them up.

tyler@programming.dev · 1 pts · 2d (1 reply)

lol what. 1Password literally has one of the best security records out there. They’re the ones actually inventing new more secure ways of doing things. The fact that those are all of the issues over the years and they’re one of the most popular pw managers on the planet is pretty indicative of how strong their security actually is. And they’ve never had a password breach, unlike lastpass.

roundabout@feddit.org · 1 pts · 2d

They are nonfree.

eleijeep@piefed.social · 26 pts · 2d (1 reply)

I haven't checked but I would guess that 1password comes pre-installed in Oligarchy and they're counting every user that loads the client as a "user."

luciferofastora@feddit.org · 2 pts · 2d

I love the Oligarchy typo

roundabout@feddit.org · 6 pts · 2d (2 replies)

Probably because Omarchy is preinstalling 1password.

mcv@lemmy.zip · 7 pts · 2d (1 reply)

Isn't that a commercial product for which great open source alternatives exist? What kind of distro does that?

And don't they also preinstall Basecamp, DHH's own company's product?

Maybe it's all just a vehicle for product placement.

cley_faye@lemmy.world · 5 pts · 2d

What kind of distro does that?

One that does not care at all about having maintaining a sane and open ecosystem. Where there's money to make, they will prey down quickly. Now that people are somewhat convinced that Linux based systems can work and actually attract the general public, a whole new market is ripe for reaping.

Jiral@lemmy.world · 92 pts · 2d (6 replies)

"popular distribution"? Omarchy is neither of those two words, is it?

EatMyPixelDust@lemmy.blahaj.zone · 22 pts · 2d (3 replies)

Whatever it is, it's a stupid name, it sounds kinda like an STD.

gnuplusmatt@reddthat.com · 3 pts · 1d (1 reply)

makes me think of Orchi *perhaps NSFW depending on your workplace

EatMyPixelDust@lemmy.blahaj.zone · 1 pts · 5h

Ha! Sounds like what the maintainers of that distro need.

abc@suppo.fi · 1 pts · 1d

The basis is the japanese word "omakase".

abc@suppo.fi · 4 pts · 1d (1 reply)

https://distrowatch.com/dwres.php?resource=popularity

  • 12 mo: #21
  • 6 mo: #19
  • 3 mo: #16
  • 1 mo: #12

Obviously growing in popularity. That's what aggressive marketing usually gets you.

If you don't like that, perhaps consider stop talking about it, and him. Instead, every second week somebody writes an article about "DHH is fascist". What the fuck do they think the effect of those articles is?

Are people actually so dumb that they think accusing him of fascism will make him disappear? That's like high-octane clickbait fuel.

Same with Trump et alia. It's garmonbozia.

Jiral@lemmy.world · 1 pts · 1d

I don't write any articles on him or his dot file collection. The reach of Lemmy comments is close to zero and even more so among the red pilled who know the truth.

aarch0x40@piefed.social · 80 pts · 2d (19 replies)

I'm so glad I switched to Bitwarden. Even without the whole extreme-right angle, the distro, that I've never heard of before today, seems like total slop.

curbstickle@anarchist.nexus · 62 pts · 2d (3 replies)

Its not even a distro. Its arch with dotfiles. Literally.

No repos, no custom packages, etc. Just arch with sloppy dotfiles.

roundabout@feddit.org · 4 pts · 2d (1 reply)

They have repos now, but nothing in them is too advanced, and they absolutely do not deserve the money. GNU/Linux Mint offers THREE great desktop experiences, which are not kitsch slop (even if you don't like them, they're very high-quality) and have a much smaller budget.

abc@suppo.fi · 1 pts · 1d
[ removed ]
mayumu@ani.social · 1 pts · 1d

You can hate DHH, but that's a straight up lie. They have repos, custom packages. They have an ISO installer, mirrors, even a custom kernel. If that's not a distro then what is?

tordenflesk@lemmy.world · 24 pts · 2d (14 replies)
aarch0x40@piefed.social · 18 pts · 2d (13 replies)

Yeah but Bitwarden is forkable

Axolotl_cpp@feddit.it · 15 pts · 2d (12 replies)

There is also Vaultwarden which is basically a drop in for Bitwarden

sudoer777@lemmy.ml · 4 pts · 2d (4 replies)

now we need a fork/replacment for their shitty clients that have unreliable offline functionality and were on an EOL Electron for like 3 months, and for rbw which hasn't been updated in ages and has compatibility issues with bitwarden.com now

Axolotl_cpp@feddit.it · 2 pts · 2d (1 reply)

I hope someone makes a replacement rather than a fork, i reallly hate Electron, we need to hope for a fork of the browser extension too
(Before anyone says anything: yes i thought of making it myself but i don't really have expirience in security stuff and fluff so i'd rather wait for someone expirienced to do it)

sudoer777@lemmy.ml · 1 pts · 1d

Agreed, Electron has so much weird behavior and is a bloated slow mess. My latest annoyance with Electron is that it has the keyrings hardcoded to the desktop environment instead of going through the proper DBus APIs which of course breaks on my own desktop environment and I have to add a flag to all of my Electron apps to work around this.

bilb@lemmy.ml · 1 pts · 1d (1 reply)

There's KeyGuard, but the license is simply "All rights reserved." Source available, non foss?

https://github.com/AChep/keyguard-app?tab=License-1-ov-file

sudoer777@lemmy.ml · 1 pts · 1d

Yeah no thanks

jaygray91@piefed.zip · 1 pts · 2d (6 replies)

I must be confusing vaultwarden with another bitwarden compatible thing and thought this is the one I have to host a server myself.

Probably better that I do that tbh

WhyJiffie@sh.itjust.works · 1 pts · 1d (5 replies)

that's right, vaultwarden is the server. It's not a bad idea to host it yourself, but this is kinda a critical service, and the clients are not too good in keeping the data accessible if the server goes down. so, choose wisely. there are also unofficial public bitwarden servers you can use. if that sounds better, choose one that hosts multiple services and has a community around it, those have a better chance of being kept alive.

jaygray91@piefed.zip · 1 pts · 1d (4 replies)

My thought process is that I set up the server on my home computer as the main base, and have that occasionally sync to my other devices such as phone and laptop, and sync back to it if I do any changes in those. The remote devices should have local database because my main computer will not always be online.

How feasible is that and how easy is that to set up?

Or should I just set up keepass instead since IIRC that's one of the ways it can be set up.

WhyJiffie@sh.itjust.works · 1 pts · 23h

The remote devices should have local database because my main computer will not always be online.

yeah, about that. none of the official bitwarden clients allow editing if the server is not accessible. they didn't want to have to deal with conflict resolution

Or should I just set up keepass instead since IIRC that's one of the ways it can be set up.

sounds like a better idea. but synchronization wise, conflict resolution has to happen somewhere. like when you edit an entry on two devices, and later they try to sync both changes at once. Fortunately tye keepass format has a more comprehensive entry edit history than bitwarden, so clients can figure it out.
keepassxc on linux supports something called keeshare, check how is compatibility for that with your mobile keepass app. original keepass on windows supports some kind of automatic merging on saving and loading, maybe keepassxc does that too? if you end up using synthing, conflicts could occur at that layer, which is not hard but not so straightforward to handle, but keeshare is supposed to help with that I think.

jjlinux@lemmy.zip · 75 pts · 2d (3 replies)

How the fuck is Omarchy "popular"? I've been on Linux going on a decade, give or take, and I first knew about it when someone here in Lemmy mentioned that Dell and some other shit companies were proton a few millions on it.

Marn@lemmy.dbzer0.com · 15 pts · 2d (2 replies)

It's popular to a lot of the non Foss tech job devs that want to try Linux after mostly using macOS for Dev work. It comes with keybinds they are familiar woth has a pretty UI by default and is arch base. They probably work for companies that are also right wing so it's something they don't care about as much as people in alignment with the Foss ideology.

Compared to today's mask off fascism in the states the guy behind Omarchy is pretty tame and probably less mask off evil than the people they work for

son_of_darkness@lemmy.world · 8 pts · 2d

And is being promoted by other fascists - Lex Fridman - and youtube sloppers like Primeagen. All channels highly consumed by non-techs or techs that follow the hype

roundabout@feddit.org · 3 pts · 2d

To me it isn't pretty, just kitsch.

RememberTheApollo_@lemmy.world · 68 pts · 2d (4 replies)

So YT’s algorithm is pushing right wing racist distros?

Huh. Wonder who is paying to make that algorithm work that way.

Telorand@reddthat.com · 18 pts · 2d (1 reply)

And hoo boy, you should see the bearded influencer chuds pushing this slopfest.

Sturgist@piefed.ca · 7 pts · 2d

Like NetworkChuck.

sem@piefed.blahaj.zone · 12 pts · 2d

Always has been. 🌍🧑‍🚀🔫👨‍🚀

son_of_darkness@lemmy.world · 10 pts · 2d

Lex Fridman, The Primeagen and friends are also to blame

docd@lemmy.world · 61 pts · 2d (1 reply)

1Password says "Our contribution is made to the Omacom Foundation, not to an individual" but there are many instances of their VP of product praising DHH https://x.com/jmeller/status/1971530423030387081 https://x.com/jmeller/status/2094132068342964671

teolan@lemmy.world · 4 pts · 2d

Why isn't this in the article? That's literally a journalist's job to provide that kind of context.

osanna@lemmy.vg · 54 pts · 2d

I already wasn't gonna use either, but now I'm not gonna use either even harder.

lechekaflan@lemmy.world · 46 pts · 2d (16 replies)

Why I use KeyPass -- which is FOSS -- instead of entrusting everything to a privately-run paid website which can turn against everyone at anytime.

edit: to that wiseacre below, do you think it's better to go back to passwords in a notepad? 🤣

rumba@lemmy.zip · 1 pts · 2d (1 reply)

KeePass is great, but it needs multi-user, granular permissions and conflict resolution on sync. Sharing with multiple simul users is like trying to work on stone tablets.

lechekaflan@lemmy.world · 2 pts · 1d

Yeah, it's good for personal use, it's indeed a reliable keyfob. But I believe there should be a version that works for your use case required for multiple users, and you can fork it then modify.

titanicx@lemmy.zip · -25 pts · 2d (13 replies)

It's funny you don't think that could happen to them too. Such confidence.

non_burglar@lemmy.world · 37 pts · 2d (11 replies)

You know keepass is a local keystore, right? There is no "them".

titanicx@lemmy.zip · -24 pts · 2d (10 replies)

Unless you're the one literally writing the program. It is being developed by other people who at any point in time could have issues. Just saying not saying they do now but it can certainly happen.

fake@sh.itjust.works · 27 pts · 2d (2 replies)

Well you better not use any software ever then, never know what 'can certainly happen'. Get a grip.

Its GPL licensed, there'll be a dozen different forks before you know it.

mcv@lemmy.zip · 7 pts · 2d (1 reply)

there'll be a dozen different forks before you know it.

Aren't there already?

grue@lemmy.world · 2 pts · 2d

Yep. When I say "I use Keepass" what I actually mean is "I use KeepassXC, Macpass, KeepassDX, etc. depending on which OS I'm on at the time" and AFAIK none of those are actually made by the original Keepass developer.

InFerNo@lemmy.ml · 11 pts · 2d

The passwords are saved into a vault file. You can choose a different software that is capable of opening the vault. I use keepassXC for example. there's some variety of programs that can open this filetype, on many different platforms.

notSys@lemmy.cafe · 8 pts · 2d (1 reply)

You can fork it

teslekova@lemmy.ml · 1 pts · 1d

Why I never, such language....

cley_faye@lemmy.world · 8 pts · 2d

You think if the developer bails out, the software will magically disappear from everywhere, leaving you with no way of recovery whatsoever?

Let's say they decide to pull the plug. Everything you have that's already running will keep running. Code can be forked (in fact with keepass, it already happened). Data can be exported after the fact. Other software can actually open keepass database file.

You really don't see the difference between this and "the server stopped sending you your own data, oops"?

HertzDentalBar@lemmy.blahaj.zone · 1 pts · 2d (1 reply)

You don't auto update it, and you store the keys locally, and if you need passwords on a device you use a VPN to access them, I'm not to concerned about updating my manager I'm more concerned about my VPN 😂

But I get what your saying.

NoodlePoint@lemmy.world · 2 pts · 2d

They distrust anyone to keep their passwords except to write their own program to manage theirs, or happen to take blind pride in supposed eidetic memory.

teslekova@lemmy.ml · 0 pts · 1d

... Do you ever check for contact poisons soaked into your undies?

IllNess@infosec.pub · 12 pts · 2d

1Password is a paid service. The money given to for the service can go to organizations the user doesn't agree with.

KeePass is free.

How is it the same?

homesweethomeMrL@lemmy.world · 46 pts · 2d (3 replies)

The backlash to 1Password’s funding should have been predictable

Managers don’t know shit

ryper@lemmy.ca · 15 pts · 2d (2 replies)

The worst part is, giving money to a Linux distro isn't likely to have any real return on investment, so why is it even worth a risk of backlash?

homesweethomeMrL@lemmy.world · 8 pts · 2d

Indeed. Maybe nazi?

roundabout@feddit.org · 3 pts · 2d

It preinstalls their app.

Axolotl_cpp@feddit.it · 44 pts · 2d (6 replies)

Wasn't Omarchy literally just a couple of dotfiles for Arch and a easy Installer?

Telorand@reddthat.com · 71 pts · 2d (1 reply)

It is currently more than that, and it even has its own repos/mirrors, but the fact that basically every rich person is throwing money at this project should be a huge warning sign to everyone to avoid this.

But at the end of the day, it's nothing revolutionary. It's customized Linux with a tiling window manager, all funded by billionaires and developed by a turbo racist.

cley_faye@lemmy.world · 3 pts · 2d

Except for the very last part (I hope…), it's the case of most "funky crazy distro" out there.

x00z@lemmy.world · 1 pts · 2d (3 replies)

It also has a few native apps now.

Axolotl_cpp@feddit.it · 9 pts · 2d

"Beautiful, fun and agentic linux" I bet they vibe coded all of them lol, this is a HUGE red flag Screenshot of the Omarchy website's home page

roundabout@feddit.org · 6 pts · 2d (1 reply)

Which are slop.

x00z@lemmy.world · 1 pts · 2d

Wouldn't put it past them.

panda_abyss@lemmy.ca · 38 pts · 2d (5 replies)

Why does Omarchy even need this money when it’s run by a billionaire?

This song have just been sent to Arch or some Linux foundations.

lath@lemmy.world · 27 pts · 2d (3 replies)

Because there are multiple Linux options, once the commercial versions flood in, the most marketed will grab the biggest share of the uninformed populace. So obviously the billionaires want to wrestle control over it.

roundabout@feddit.org · 2 pts · 2d (2 replies)

Thankfully it looks so unserious that it will not capture anyone except 'windows/mac power users'.

teslekova@lemmy.ml · 1 pts · 1d (1 reply)

So the majority of people.

roundabout@feddit.org · 1 pts · 13h

Most people do not think of them as 'windows power users'.

abc@suppo.fi · 1 pts · 1d
[ removed ]
Mwa@thelemmy.club · 37 pts · 2d (8 replies)
ryper@lemmy.ca · 5 pts · 2d

I vaguely remember hearing about that, but when I searched the community to see what other people use the first link I found was archive.is. Replacing that archive doesn't really seem to have taken off.

thatsTheCatch@lemmy.nz · -3 pts · 2d (6 replies)

Your link is broken btw

boonhet@sopuli.xyz · 25 pts · 2d (2 replies)

I'll just copy-paste the first paragraph in case you or anyone else can't open it:

The English Wikipedia has decided to stop using archive.today and its related websites. This decision was agreed on after a request for comment with more than 200 participants concluded in February 2026, and is due to multiple concerns, including the site using editors' and readers' computers to run a denial-of-service attack and evidence that the website has tampered with some archived pages.

And the story on the DoS script itself:

https://gyrovague.com/2026/02/01/archive-today-is-directing-a-ddos-attack-against-my-blog/

Mwa@thelemmy.club · 1 pts · 2d

alr thanks

teslekova@lemmy.ml · 1 pts · 1d

Good work thx mate, will avoid.

Mwa@thelemmy.club · 1 pts · 2d (2 replies)

???

Armok_the_bunny@lemmy.world · 1 pts · 2d (1 reply)

For some reason it's including the period at the end as part of the link, which breaks it.

Mwa@thelemmy.club · 1 pts · 2d

ohhh

greybeard@feddit.online · 35 pts · 2d (2 replies)

Youtube has been feeding me Omarchy video lately, it seems like every single one I tried to watch brought up using Grok. I don't know anything about Omarchy, but it was enough to give me the feeling something wasn't right.

lenabee@lemmy.blahaj.zone · 33 pts · 2d

It's Arch Linux by and for white supremacists.

jaygray91@piefed.zip · 12 pts · 2d

But there is something right. The far right.

I'll see myself out

acockworkorange@mander.xyz · 33 pts · 1d (2 replies)

of Omacom, the nonprofit foundation that oversees a popular Linux distribution known as Omarchy.

popular?! According to whom?

Nurgus@lemmy.world · 13 pts · 1d

All seven users.

Siegfried@lemmy.world · 8 pts · 1d

From Omarchy's site:

malleable OS for the age of agents. Where you can vibe your way through every alteration, tweak, and desire. Be the Omarch and command your agent!

Wtf

prole@lemmy.blahaj.zone · 31 pts · 1d (2 replies)

As bad as the "Nazi bar" problem seems to be in FOSS at the moment, it is definitely heartening to consistently see how immediate and overwhelming the pushback has been. I think it says a lot about the community, and it's a good thing.

Funkt4st1c@lemmy.world · 2 pts · 14h (1 reply)

Out of the loop... "Nazi bar"?

prole@lemmy.blahaj.zone · 2 pts · 5h

Dunno if this is the best source but

https://en.wiktionary.org/wiki/Nazi_bar

nil@piefed.ca · 26 pts · 2d (15 replies)

I literally didn't know this, but I've switched from 1Password to KeePassXC few days ago because its Android client stopped working. Wth?

KullumDaue@lemmy.world · 1 pts · 2d (14 replies)

shouldn't you have switched to Bitwarden?

i am on bitwarden, and i want to switch to keepass, but i am dreading syncing the database between my phone and my PC.

Killercat103@slrpnk.net · 14 pts · 2d (2 replies)

You can use Syncthing to synchronize the database file between your devices. It's kinda neat tbh.

rumba@lemmy.zip · 7 pts · 2d

Note, this works super well for single-tenant Obsidian as well.

KullumDaue@lemmy.world · 1 pts · 2d

i never heard about it. but i will definitely look into it, thanks ❤️

rumba@lemmy.zip · 10 pts · 2d (2 replies)

Unfortunately Bitwarden might not be as super of a choice as it was https://howmation.com/en_US/blog/article/bitwarden-2026-what-really-changes they're slipping into private equity.

At some point they'll stop supporting Vaultwarden, at that point anyone with skin in the game should 100% get out.

matlag@sh.itjust.works · 4 pts · 2d (1 reply)

Vaultwarden can probably keep going without BW. The main issue is maintaining the clients.

rumba@lemmy.zip · 2 pts · 2d

100%

And FOSS clients wouldn't be a showstopper, but they are going to be absolute upkeep hogs.

grue@lemmy.world · 5 pts · 2d (1 reply)

No, he shouldn't have switched to Bitwarden. Why the fuck do people keep recommending cloud shit instead of Keepass?

I don't know where this weird trope of thinking Keepass is somehow obsolete or inferior came from, because it isn't.

rumba@lemmy.zip · 10 pts · 2d

Keepass is great it if's just you. If you're sharing with a family, it's ill-equipped.

Sharing = putting the file on shared storage (Syncthing, Nextcloud, SMB, Git, etc.)

No per‑item permissions

No audit logs

No user roles

No built‑in conflict resolution

Sxan@piefed.zip · 5 pts · 2d

Don't fear it. Syncing is easy. Keepass, in its various forms, has great merging support.

captcha_incorrect@lemmy.world · 2 pts · 2d (3 replies)

Can't you just do an export from BitWarden and import into KeePass?

KullumDaue@lemmy.world · 1 pts · 2d (2 replies)

what i meant was syncing my phone and my pcs keepass databases.

i used to use google drive for that (storing the database on the drive), but i didn't like it.

captcha_incorrect@lemmy.world · 2 pts · 2d

I've had success on android with Syncthing. I had it installed on every device I needed the DB on and then a server that was always online to make sure each device had the latest version.

I have an iPhone now and Möbius Sync does not work as well (I think iOS limits background activity). My solution was to access access my DB via ssh (Strongbox has an option for this, Strongbox is KeepassXC but for Apple).

teslekova@lemmy.ml · 1 pts · 1d

Oh yeah? What was the issue with the google drive?

InternetCitizen2@lemmy.world · 1 pts · 1d

but i am dreading syncing the database between my phone and my PC.

Fair, but many of us here have a homelab to help with that. Once I had my next cloud running getting other things going was easy.

Avicenna@programming.dev · 24 pts · 2d (1 reply)

I wouldn't have heard of Omarchy if not for the controversies of its creator. So yeah that is one way to become popular.

anarchy79@lemmy.world · 5 pts · 2d

Controversy? Never.

Sick thing is, you can say the most outrageous shit, and since you have a direct pipeline to billions of people online, you'll always find some fumb ducks to pay you.

Welcome to the post-MLM economy! You don't even influence people, you just say what they want to hear, and they'll influence others for you! Jesus christ.

k0e3@lemmy.ca · 18 pts · 2d (2 replies)

Aw man, I use them because they're Canadian but fuck them, I guess. I wonder how hard it is to switch to another password manager. I'm especially concerned with how passkeys work.

db_null@lemmy.dbzer0.com · 28 pts · 2d (1 reply)

Very easy. You should be able to export your passwords as .csv and import it into a new manager.

This should help: https://di.day/en/digital-switch-recipes/passwords

k0e3@lemmy.ca · 4 pts · 2d

Yay, thanks!

billwashere@lemmy.world · 16 pts · 2d (2 replies)

I don’t understand all the hype for Omarchy. It’s not really that groundbreaking or awesome.

sunnyjim@lemmy.zip · 6 pts · 2d (1 reply)

AFAIK it's just Arch with Hyprland and some configs. Don't get the hype at all...

abc@suppo.fi · 1 pts · 1d

Configuring a tiling wm is beyond the skills of most people, and of the people who would be capable of configuring it, only a small minority would bother. So there's some value in bundling all of that into a coherent package.

Things don't have to be groundbreaking for someone to do it the first time.

Smoogs@lemmy.world · 16 pts · 2d (2 replies)

popular? among who?

never heard of it.

abc@suppo.fi · -2 pts · 1d (1 reply)

Sure. And I never understood why people keep capitalizing the word "windows". That's just, like, incorrect.

Syltti@lemmy.world · 1 pts · 1d

You don't capitalize "windows" unless it's the first word in a sentence. You capitalize "Windows" because it's the name of a product. Just like how you capitalize "Apple" because it's the name of a company.

zen@lemmy.zip · 12 pts · 1d (1 reply)

I've emailed their customer service explaining why I'll be dropping them as soon as my subscription renews.

AustralianSimon@lemmy.world · 1 pts · 1d
[ removed ]
HostilePasta@lemmy.ml · 11 pts · 1d (15 replies)

Well damn, guess I'll be cancelling and switching when my subscription renews. Suggestions for replacement?

GolfFoxtrotLima@sh.itjust.works · 16 pts · 1d (2 replies)

Bitwarden

Joelk111@lemmy.world · 12 pts · 1d

Vault Warden if they're interested in self hosting.

AustralianSimon@lemmy.world · 1 pts · 1d

Like $10/year... Stupid cheap for piece of mind and haven't had a data breach yet.

Takeshidude@lemmy.world · 14 pts · 1d (6 replies)

KeePass + Syncthing

Completely local vault in sync with however many endpoints you need

HostilePasta@lemmy.ml · 3 pts · 1d (3 replies)

Is that a FOSS thing? Never done that before. Are there decent guides for getting it set up?

ExLisper@lemmy.curiana.net · 1 pts · 1d (2 replies)

It's FOSS and easy to set up. KeePass simply stores everything in a file and you use Syncthing to sync this file between devices. Syncing is optional, if you just need you password on desktop you don't need it.

KeePass has pretty bad UX when compared with Bitwarden though. Bitwarden/Vaulwarden is the best solution IMHO but it's really difficult to set up.

BlindPenguin@lemmy.world · 1 pts · 1d

Syncthing is great, but can be a bit of a pain in the ass to set up. I wish they'd make that process easier, and maybe also support sharing the ignore file between the hosts...

HostilePasta@lemmy.ml · 1 pts · 1d

Thanks for the overview; I've got some research to do it looks like.

timewarp@lemmy.world · 1 pts · 23h

KeePass honestly sucks for the most part. I love local vault and hope something better comes along, but KeePass UI constantly gives me issues. I've tried KeePassXC and that is what I use still, but being limited to opening a single entry at a time. Additional properties are a pain. It's author not even understanding the need for using the desktop session for the CLI (requires passing password via the terminal to or having separate key file). KeeShare not working on Android. So many things that Bitwarden/Vaultwarden solves much better and quicker. Sad that Bitwarden/Vaultwarden didn't make a local SQLite client that doesn't rely on a server.

arschflugkoerper@feddit.org · 1 pts · 1d
[ removed ]
deft@lemmy.wtf · -2 pts · 1d (4 replies)

Why do you even use these? I never understood the point.

t3rminus@lemmy.world · 5 pts · 1d

So that every service I use can have a randomly generated, unique password. Therefore if one of them gets hacked and my password leaked, brute-forced, or decrypted, it won’t affect any other service.

Plus it stores passkeys and handles 2fa code generation, keeping them synced on all my devices, and ensures I never have to remember specific passwords because they’re all safely stored in heavily encrypted vaults guarded by the only single password I do have to remember. Also it notifies me if any of my information is in any breaches, or if I could do better to secure my account.

Trust me when I say, it’s safer, simpler, and smoother way to manage things.

AustralianSimon@lemmy.world · 4 pts · 1d

Unique passwords and MFA in the one package. Cross platform so I can use on phone and PC. Costs like $10/year. Also locks the credential and passkey to set URLs so phishing attacks are harder.

stoicmaverick@lemmy.world · 2 pts · 1d (1 reply)

It's so that you can have unique, randomized, rotating passwords for every service you have. Also, they auto fill fields for you, and can save you from spoofed URLs if you're not paying attention. Highly recommend getting one. Bitwarden is good.

Appoxo@lemmy.dbzer0.com · 2 pts · 1d

And they help you remember a shop if you forgot it.
Good for digital hygiene.

sns@lemmy.dbzer0.com · 11 pts · 2d

Popular?

Sure Jan...

Suavevillain@lemmy.world · 9 pts · 1d

I never expected a mid hyprland preconfig to be tied to a person with Nazi views and cause this much issues.

KeenFlame@feddit.nu · 8 pts · 2d (9 replies)

I know about omarchy and seen that guy interviewed a couple of times. How the fuck am I just now aware he is a nazi? He seemed egotistical for sure, and his contribution to open source is .. basically his personal dotfiles? I think that this shit was still completely devoid of extermination of minorities manifestos and hatespeech. But seriously how do you know if someone wants to kill refugees? why doesn't he say so in the interviews or in the source code so we can know? This is fucked up. A faschist idea would be to keep a list. But omg, if you want to exterminate children that fled from war, please just say so in your dotfiles! Idk why this bothers me so.. I really do care if my config was made by a hateful hand even if it doesn't show

beernutz@lemmy.zip · 10 pts · 2d (7 replies)

Completely agreed. Unfortunately he was also the "Ruby on Rails" guy, so for a long time he had serious developer cred. It is really sad to see.

anarchy79@lemmy.world · 9 pts · 2d (5 replies)

It's like one of the founders of Mullvad VPN (very very rich OG Swedish hacker from way back when) came out as supporting a serious right wing nationalist party in Sweden a couple months back, he paid them like $500K to make sure they stayed in politics and won.

They are the best VPN, but I'm not coming back once my subscription expires.

What is even happening? Are we seeing something like a return to lead poisoning, but there some chemical in our environment that's rotting people's brains the same way but we don't know about it just like we didn't know about lead at first?

theneverfox@pawb.social · 5 pts · 2d

It's the corrosive force of capital

We have too many people gaining power divorced from consequences

plsnerf7@lemmy.world · 2 pts · 2d (3 replies)

My mullvad account has only 15 days left, but i already switch to windscribe vpn. Did my research so far so good... https://kumu.io/Windscribe/vpn-relationships#vpn-company-relationships

anarchy79@lemmy.world · 2 pts · 2d (2 replies)

All right windscribe.

Thing is with Mullvad is that I know for a fact that they don't keep logs. The cops raided their place twice and they learned after that that there's no point. They let them in and do whatever they wanted- they knew they wouldn't find anything.

That type of trust is hard to come by.

Fuck nazis man, they infect the best of us. Such a copout. I suppose it's something about... They get sentimental in their old years and remember a country that is no longer there- I feel that shit too, but I don't get caught up in nationalist cosplay and LARP parties about it, shit changes, we need to fight for it without being fucking nazis. There's a middle road here I feel.

Sorry, I just got rambling, didn't mean to, but damn.

plsnerf7@lemmy.world · 2 pts · 1d (1 reply)

Nah no rant at all. I'm with you, feels like running away from nazis, ai slop, enshittification... Now days.

anarchy79@lemmy.world · 1 pts · 1d

It's overwhelming and keeps me up at night.

I'm more than prepared to fight it. Just awaiting orders.

Meh I'm being dramatic. Sort of. I fight, we all fight.

What is that quote, under tyranny every democratic act is an act of rebellion? I paraphrase.

BlindPenguin@lemmy.world · 1 pts · 1d

Did they finally boot him off the project? Or is most of the rails community still ignoring the problem?

Hugh@programming.dev · 8 pts · 2d

I partially blame people with big audiences that keep hyping him up and platforming him. Primeagen interviewed him on YouTube and was worshipping him the entire video. Embarrassing display.

rageagainstthemachine@lemmy.dbzer0.com · 6 pts · 1d (1 reply)

When/how/why did DHH fall off so bad? There was a time when he was (at least vocally) shitting on Jeff Bezos, Chamath, and a few other "friends"

t3rminus@lemmy.world · 18 pts · 1d

Probably around the time he started writing blog posts about how there’s too many brown people in London, or comparing Romani to invasive predator species?

Being against a few horrible people doesn’t automatically make you a good guy…

BadFanFiction@lemmy.world · 5 pts · 23h (1 reply)

Damnit. I just found out about Omarchy and was thinking about trying it out. Not anymore.

Funkt4st1c@lemmy.world · 1 pts · 14h

Cachyos will forever be the ideal Arch distro for nerds who want the benefits of Arch without the hassle of Arch (until they support some giant racist or soemthing)

crakila@lemmy.world · 5 pts · 1d

Maybe I should sell my dotfiles? 🤔

boaratio@lemmy.world · 2 pts · 1d

They're currently in the finding out phase.

MonkderVierte@lemmy.zip · 1 pts · 2d
[ removed ]
SquareScarletCougar@lemmy.world · 1 pts · 1d (1 reply)

He got a recent interview with one of the YouTubers I follow and I'm must say I'm a bit sad to not see people calling him out https://youtu.be/_CuibYl_Fh0?is=f6p3aQv4iPmdqiH1

AustralianSimon@lemmy.world · 2 pts · 1d

It was probably a condition of the interview. :(

jenings@lemmy.world · 1 pts · 1d

I cancelled my 1password sub after their absurd price hike late last year

MrRandom@lemmy.zip · -3 pts · 2d (2 replies)

did they do a Proton?

myrmidex@belgae.social · 19 pts · 2d

Seems closer to a Mullvad

antianarchist@sopuli.xyz · 8 pts · 2d

I think proton dodged a bullet as the comment of the CEO was only not okay, but not like super bad. But if you funnel 300k to a openly racist idiot, that’s super bad. Same with Mullvad. As soon as money flows, you are immediately batshit crazy.

Moztako@lemmus.org · -8 pts · 1d (3 replies)

Interesting case of how funding decisions can quickly become part of a much bigger conversation around tech, politics, and community trust. It will be interesting to see how this develops.

ddplf@szmer.info · 9 pts · 1d (2 replies)

^ This is a bot

Moztako@lemmus.org · 0 pts · 1d (1 reply)

😂 No bot, it’s really me. I just tried to write a thoughtful comment that adds something to the discussion

Moztako@lemmus.org · 0 pts · 1d

kkkk

xelar@lemmy.ml · -10 pts · 1d (2 replies)

Keep in mind that internal fights among community discourage users from shifting and benefit Microsoft. I would not be surprised if the smear campaign is a big tech initative.

SquareScarletCougar@lemmy.world · 7 pts · 1d

That's right. But are you suggesting we just sweep it under the rug and ignore the support of racist people? Because that is what big tech does and not a lot of people like it

TheDingNoiseInToolSongs@eviltoast.org · 4 pts · 1d

DHH is bell end, maybe a good developer, but a bad human being. And there are other distros out there.

jumping_redditor@sh.itjust.works · -11 pts · 2d (2 replies)

morals should stay out of software,the ability to use the software to do anything is one of the benefits of open source licenses even if the creator doesn't approve of using it to bombpesky former land occupiers.

teslekova@lemmy.ml · 2 pts · 1d

Ideally, yes, and I would never promote banning Nazis from posting their code. In practice, however, it is usually less bother to go with a creator following an ideology not historically prone to slipping nasty surprises into their products.

Sure, those nasty surprises will be found, it's the entire point of FOSS, but it always takes time.

nullspace@lemmy.world · 1 pts · 2d

Make a fork.

BrickEater@lemmy.world · -15 pts · 1d (11 replies)

... Can we not just write shit down?

I don't understand the need for this password keeper shit outside of a work/corporate environment.

Edit: the concept of writing really pissed you nerds off...

Alfredolin@sopuli.xyz · 14 pts · 1d (1 reply)

I have more than 300 logins. My password manager handles passkeys, 2FA and has integretad alias creation.

At some point you just can't compare.

BrickEater@lemmy.world · 0 pts · 20h

That feels excessive and I genuinely think y'all are paranoid about how often people are trying to hack you. Been running the same few for like a decade with no issues. Now I have a relatively low online footprint but still, the tech world in general is starting to feel like a form of psychosis.

SlimePirate@lemmy.dbzer0.com · 8 pts · 1d (2 replies)

The hard password you think of are actually very low entropy and easy to crack, the only good ones are random ones, which are hard to remember (except for the random words ones). It's impossible to remember 200+ totally random password for a regular human

BrickEater@lemmy.world · 0 pts · 21h (1 reply)

That's why you write them down.

SlimePirate@lemmy.dbzer0.com · 2 pts · 8h

Yes and the password managers automate it such that you don't have to write 20+ long random characters multiple times a day

TimeNaan@lemmy.world · 5 pts · 1d

You can't just write down a secure password. It should be long enough to not be practical to write down on paper.

Joelk111@lemmy.world · 4 pts · 1d

I do write stuff down. In my password manager so it's always with me all the time and is much more difficult to gain access to than if I were carrying around a notepad. Also, I ain't got pockets for that, and I'm not buying a wardrobe of cargo pants.

AustralianSimon@lemmy.world · 2 pts · 1d

Write that shit down.

Ok Grandma and her password book.

The point:

Application unique passwords and MFA in the one package. Cross platform so I can use on phone and PC. Costs like $10/year. Also locks the credential and passkey to set URLs so phishing attacks are harder.

prole@lemmy.blahaj.zone · 1 pts · 1d (2 replies)

Write down passwords? The fuck are you talking about??

BrickEater@lemmy.world · 1 pts · 21h (1 reply)

A fucking notebook you keep with password info at home? Like what is confusing about that.

prole@lemmy.blahaj.zone · 1 pts · 5h

The object itself isn't confusing, it's why someone would ever choose to do it

keropoktasen@lemmy.world · -16 pts · 1d

I can see why the left is so messed up now.

FiniteBanjo@feddit.online · -24 pts · 2d (9 replies)

I don't use password managers and I've never been exposed.

If your password is 16 characters with a letter, number, symbol, and is more than 1 word it will take millions of years to brute force. Just use multiple passwords and change the important ones every few months in case of data breach and you're golden.

Forgot your password? If you have access to an email with multiple 2-factor you can recover any account in about a minute.

Axolotl_cpp@feddit.it · 9 pts · 2d (8 replies)

Then you forgot the whole point of password managers which is having a place to store all your credentials, what you said are not reasons to not use a password manager but rather some good practices that you can use alongside a password manager lol

FiniteBanjo@feddit.online · -6 pts · 2d (7 replies)

Having all of your credentials stored sounds like a detriment and a pointless amount of trust for a shady group like 1Password who conspire with literal fascists.

Axolotl_cpp@feddit.it · 2 pts · 2d

I literally never talked about 1password, they aren't the only password managers nor you need a password manager on the cloud (look at KeePassXC), I currently use Bitwarden because i need to be able to sync the password on multiple devices but in the light of what they are doing, I probably need to start hosting a Vaultwarden instance...

Couldbealeotard@lemmy.world · 0 pts · 2d (5 replies)

This is why I've not used one. The whole point of passwords is privacy, yet people put them all in one place controlled by someone else where you have no way to verify how secure they actually are. And you need a password to get into it, so now there's one password that could be breached to gain access to everything.

roundabout@feddit.org · 4 pts · 2d (3 replies)

You could probably use a local password file like Keepass.

FiniteBanjo@feddit.online · 0 pts · 2d (2 replies)

But why? The user said it was stupid to keep them all in one place controlled by somebody else, and if keepass never updates then that is its own can of worms. You would literally be better off with sticky notes than that because then at least attackers have to be present locally.

roundabout@feddit.org · 0 pts · 13h (1 reply)

It is encrypted.

FiniteBanjo@feddit.online · 1 pts · 12h

"It's fine because I store it in a safe right next to the key."

Axolotl_cpp@feddit.it · 3 pts · 2d

Local password managers exist too, look at KeePassXC