Agentic Password Updates
Apple today announced that the Passwords app can now automatically update weak and compromised passwords using Apple Intelligence and Safari to take action on a user’s behalf.
[…]
Apple describes the system as agentic, with Apple Intelligence and Safari securely navigating through websites, signing in, and upgrading accounts to strong passwords without the user needing to intervene beyond an initial tap.
Raise your hand if you’re going to trust an AI agent with your passwords.
Maybe it’s architected so that the agent doesn’t see the actual passwords, but I find the idea of this ghost surfing through sites, logged in as me, really troubling.
I still see Safari failing to save generated passwords in some cases.
Previously:
5 Comments RSS · Twitter · Mastodon
I get why people like us are creeped out by this. But I'm thinking of all the people I know who aren't even using Passwords in the first place, don't even know what it is. These are the people who need this help.
As long as the email password reset works, and this doesn't manage to lock them out of their email account to which all their accounts are tied (probably with the same password as the email account because they don't understand the conceptual difference) then this isn't all that dangerous.
I didn't think about it, but that's a great point. Something as important as passwords is probably one of the last things AI should be touching at this point
@bart How do you know it won’t accidentally perform some other non-password-related action while logged into your account?
Everything about their approach to passwords is the opposite of what I want.
Passkeys that I don't control? Nope.
My credentials handled by anyone else, including agents? Nope.
I'd rather physically write credentials on lined paper like it's 1998 than use any of this crap. Far better than Asskeys or Agentic Passwords.