The Firefox Bitwarden extension displays the e-mail address of the user both when signing out, and more importantly when signing in.
This seems like a very simple security threat to fix, that should not have existed in the first place.
If users want the extension to show their e-mail address, I could see where that would be a “New Feature” request, but the way it works now is a bug/vulnerability/dangerously lazy design.
This would be a great addition. And how about some image or identifier that it is the correct account where I am typing my password in that I could verify easily without a stranger knowing what it means?
We actually did not have the email present in the UI, but the community requested it be added for clarity of the account that you are logged into.
We appreciate the feedback and will consider it a feature request to make this item a toggle, since there seems to be a great amount of energy both for and against email display.
A google is a good solution. The default can be enabled and for those that want the extra anonymity/security, they can turn it off.
I’d still like a third solution as well with an image or an emoji combination that allows the user to identify their account without the email showing up.
Thanks to OP for bringing this up. I noticed as well that I can’t “un-remember” the email address in the mobile apps, but in the browser extension. To be honest, I think it’s a minor threat (as the username + 2FA should provide the protection), but why leak information unnecessarily?
This is where somebody who could peek at my phone get some information of mine just by looking at this page over my shoulder. I don’t want my full email address shown on a page that has locked out everybody else but the user. It should read r********@domain.com (with a random number of asterisks) at the very least so that peekers can’t easily see my email address, even over my shoulder.There’s simply no good reason to show any login info on the Verify PIN page. None.
Why not just conceal part of the name and domain with asterisks when displaying the email so that both sides can get an idea of what email they are using without revealing their entire email address to onlookers?
I would consider the first and last and a priority. A separate choice of (Included | Redacted | Omitted) for the email and the host would be great for those who want to customize.
Yes, this is a security risk of showing the log in email on the screen. It should be masked. This can reduced the chance of being hacked. This applies to mobile, desktop and web access. I see my email address being displayed all over the place. This makes me very uneasy. Especially anyone in the world could have remote access every single password I ever had. The less information being shown, the better.