Another little bit of history: we discussed having a 'slider' when you set up Sync, either per-account or per-datatype:
* I prioritize recovery over security: keep my data if I reset my password (use kA) * I prioritize security over recovery (use kB) * I prioritize security over convenience (use "kC", a separate key, like Old Sync but without pairing). My point about this not being a good choice for users to make is pretty much our response to this kind of question. Imagine what you'd do faced with that question — not use Sync at all, because it's scary and there's no good choice!
_______________________________________________ Sync-dev mailing list [email protected] https://mail.mozilla.org/listinfo/sync-dev

