How save is Yojimbo Sidekick encryption?

38 views
Skip to first unread message

Eelco Deuling

unread,
May 17, 2012, 4:45:06 AM5/17/12
to Yojimbo Talk
I use Yojimbo sidekick for all of my notes so I can view this
information on my iPhone.
All my bank accounts and online passwords are in encrypted notes, so
they are not exported to sidekick.
I would like to view some of these items (not my bank accounts!), so I
was thinking about switching them to Passwords that are exported to
sidekick, but I have no idea how safe this would be: I am no
encryption expert.
Can someone ease my thoughts (or stop me from doing something foolish)?

Kerri Hicks

unread,
May 17, 2012, 8:34:15 AM5/17/12
to yojimb...@googlegroups.com
On Thu, May 17, 2012 at 4:45 AM, Eelco Deuling <deulin...@gmail.com> wrote:
I use Yojimbo sidekick for all of my notes so I can view this
information on my iPhone.
 
I have no idea how safe this would be: I am no

encryption expert.
Can someone ease my thoughts (or stop me from doing something foolish)?


This is the first place you should look to get an answer...


--Kerri
 

Eelco Deuling

unread,
May 17, 2012, 2:03:23 PM5/17/12
to Yojimbo Talk
Hello Kerri,

Thank you for your reply: I had read this, but I did get the
impression this article is about the encryption of Yojimbo data on the
Mac, and not the encryption used in sidekick?

Steve Kalkwarf

unread,
May 17, 2012, 4:12:35 PM5/17/12
to yojimb...@googlegroups.com
Correct. Both the Help Book, and the page here:

http://www.barebones.com/products/yojimbo/tour-sidekick.html

mention that Sidekick uses symmetric encryption:

http://en.wikipedia.org/wiki/Symmetric_encryption

The specific implementation we use is based upon this:

http://pajhome.org.uk/crypt/md5/md5.html

and can be viewed (compressed, unfortunately) at:

/Applications/Yojimbo.app/Contents/Resources/English.lproj/OGWebsiteExporterSiteContent/js/sda.js

In plain English, the generated webpage does not contain your Sidekick passphrase, but instead, the passphrase and the page content are used together to reconstitute the original password.

Steve

Eelco Deuling

unread,
May 18, 2012, 3:54:18 AM5/18/12
to Yojimbo Talk
Thanks!

…the help viewer in OSX is quite annoying when you look for something:
I didn't find this page and though I cannot say I understand it
completely (yet…) it is very helpful.
Reply all
Reply to author
Forward
0 new messages