Does your threat model involve The Mossad? There's no way on earth that you are genuinely remembering multiple 512 byte random passwords, let alone actually taking the time to type them in.
Having a password manager, with MFA, a strong master password, and rule based device verification is ultimately more secure as you can have every password be randomized.
Best practices are best practices for a reason. I recommend you follow them.
Genuinely terrible advice. Every popularly available password manager service hashes all your passwords, if they have a data breach they have extremely strict reporting compliance and the majority of services will re-hash all your passwords. If youre so extremely concerned about that, host your own.
But what concerns me the most is
Unless they specify they only store the hash I refuse to sacrifice one of my strong passwords.
Does your threat model involve The Mossad? There's no way on earth that you are genuinely remembering multiple 512 byte random passwords, let alone actually taking the time to type them in.
Having a password manager, with MFA, a strong master password, and rule based device verification is ultimately more secure as you can have every password be randomized.
Best practices are best practices for a reason. I recommend you follow them.