Hi !
Enpass looks nice. It's full of features. Of course, it makes me willing to use it.
As I noticed for some software companies that spending time in developing features is a natural marketing constraint to catch more customers, it pushes security concerns to second priority.
Then, I'd like to make my mind about
and try to assess how good behaves your password generator ( that is one of the secure component that everybody can understand )
A simple test: measure the occurence of consecutive characters.
with a simple setup (only numbers) : probability of having 2 consecutive number is below 1% for length=10
but statistics (I have tried ~50 iterations ) shows 50% !
Having a long password with funny characters will not help if the sequence is generated by an algorithm that limits the statistics...
More than a bug in the randomizer, it seems to me a backdoor algorithm runs behind.
Make me change my mind please