this post was submitted on 18 Jul 2023
181 points (97.9% liked)

Technology

63009 readers
3364 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
 

Just wondered what people are using for their password management.

I’m currently using 1Password on a family subscription for both password management and 2FA (and then Authy for the 1Password 2FA). But I’m seeing a lot more posters — particularly since joining Lemmy — championing BitWarden (either cloud or self hosted) and Raivo OTP as a cheaper, almost-as-functional alternative.

So is it worth the switch? Will I lose out on anything by doing so?

I’m currently running BitWarden with a free account to see if I can live with it. But I must admit, 1Password is a staple app for me and one that I would say is priceless to my workflow and setup.

Just interested in your thoughts and trying to stimulate conversation!

(page 2) 50 comments
sorted by: hot top controversial new old
[–] [email protected] 4 points 2 years ago (2 children)

I'm also part of the Vaultwarden crowd. I'll never trust something that isn't open source.

[–] [email protected] 2 points 2 years ago (2 children)

Isn't Bitwarden open source?

[–] [email protected] 3 points 2 years ago (1 children)

Yes, I'm using Vaultwarden as lightweight alternative to the Bitwarden server.

I'm saying I don't trust 1Password. The OP asked for 1Password vs. Bitwarden. To me, Vaultwarden = Bitwarden and 1Password = Closed source crap.

[–] [email protected] 2 points 2 years ago

Ah makes sense

load more comments (1 replies)
load more comments (1 replies)
[–] [email protected] 4 points 2 years ago

Full disclosure: I've never used 1Password so can't really comment on it compared with others, but I'm currently running a selfhosted Bitwarden re-implementation (vaultwarden) and am generally pretty happy with it. I've only ever used LastPass as a password manager before (aside from a seeding algo back in the day), and while I really don't like their business practices or security history, their extension has or at least had a bit better consistency on Firefox than Bitwarden does, at least with regards to detecting username/password fields and detecting when a new credential is being created and asking it to be saved automatically. That being said, it's something that I can live with considering it's free software. As far as I'm aware, in terms of features all the big players in that space are pretty evenly matched, though I do remember some advanced feature that 1Password offered over others; maybe related to privilege access management in enterprise.

[–] [email protected] 4 points 2 years ago

Bitwarden gets my vote.

[–] [email protected] 4 points 2 years ago

A password journal of course.

...or maybe I just like making y'all cringe a little.

[–] [email protected] 4 points 2 years ago

I was using Bitwarden for a few years, it is a great option. Once you've adjust your workflow over to it I doubt you'd miss 1pass

I recently switched to Proton Pass as I've moved over to their ecosystem, it's it'll pretty early days and it's got it's problems but I am finding it reliable so far

[–] [email protected] 4 points 2 years ago (4 children)

Long term KeePass user here. I switched to Bitwarden last year. I'd say if you're happy with 1password then don't worry.

load more comments (4 replies)
[–] [email protected] 3 points 2 years ago (1 children)

Haven't used Bitwarden, but I've heard good things about it.

Until recently I was using Google Password manager and a half-hearted attempt a "system" for unique passwords. Luckily, I wised up and decided to raise my game... after a bit of research, I went with 1Password, and I've been very happy with it.

The integrations are okay, though not perfect. But the thing that has been most useful for me is the Watchtower stuff that basically gamified my security and forced me to change repeated or insecure passwords. I feel in much better shape now, and feel very confident in 1Password's encryption model. So, for me at least, it has been worth the money.

[–] [email protected] 3 points 2 years ago (1 children)

Boo, Google! Haha j/k, each to their own 🙂

1Password has been one of my go-to apps for years now, so I’m clearly happy to pay the $80 a year or whatever it is (I’m a Brit but I think it’s around that price). But it’s very good to know that I can get the exact same (more or less) functionality in Bitwarden for $10 a year. And I have the option to self host on my Docker stack on my NAS should the mood take me.

I absolutely wholeheartedly agree about Watchtower — that’s a nice little piece of functionality. I saw Bitwarden can check if your passwords have been involved in a data breach, but nowhere near as many little add-ins as Watchtower. It feels like a credit score for your passwords 🙂

load more comments (1 replies)
[–] [email protected] 3 points 2 years ago (1 children)

My work uses 1 Password. It feels relatively safe. They claim that if you don't have your master key they can't restore your passwords. Can not ensure the validity of that claim.

Personally I use Bitwarden and KeePass for my passwords. They are both open source and audited by 3rd parties. I trust them.

load more comments (1 replies)
[–] [email protected] 3 points 2 years ago

I've been using (and paying for) Bitwarden for a few years now. There are slicker solutions but it does the job for me and I don't really see any need to change.

[–] [email protected] 3 points 2 years ago

I'm on the 1password train. I like it, they're professional, and their extension works much better than lastpass

[–] [email protected] 3 points 2 years ago* (last edited 2 years ago) (2 children)

Edit: apparently that’s no longer true and I just didn’t notice: https://support.1password.com/autofill-behavior/

~I use 1Password, and I’m generally satisfied, but what really really sucks is that it only works with domains, but neither subdomains nor ports.~

~So if you’re running your own server that gets annoying extremely fast, because you will have a very long list of suggestions to wade through.~

With Bitwarden (IIRC) one issue is that you cannot save a password when you’re offline, and – again IIRC – it doesn’t even drop a warning about that.

[–] [email protected] 3 points 2 years ago (1 children)
[–] [email protected] 2 points 2 years ago

Huh, I haven’t noticed that, good to know, thx!

[–] [email protected] 2 points 2 years ago (2 children)

Also good to know, thanks.

I feel your pain with the subdomains - I have a load of Docker containers that I access via reverse proxy and I get a list of every container’s credentials and have to scroll through and select them. Not the end of the world, but annoying for sure.

[–] [email protected] 2 points 2 years ago* (last edited 2 years ago)

Yeah, I have a vaultwarden docker just to store the PW for all the other services there… 😂

load more comments (1 replies)
[–] [email protected] 3 points 2 years ago

I'm using bitwarden. The free version has everything I need, but I pay for the premium because I want them to continue.

[–] [email protected] 3 points 2 years ago* (last edited 2 years ago)

I have no experience with BitWarden, but I do like 1Password. I previously used LastPass, and 1Password has much better browser/device integration, in my experience. I've been happy with it and intend to keep my family subscription.

[–] [email protected] 2 points 2 years ago (2 children)

There's no point switching if you are using either of these two, so I'd just keep 1Password.

load more comments (2 replies)
[–] [email protected] 2 points 2 years ago* (last edited 2 years ago)

KeepassXC, synced with Nextcloud to all my devices. Browser plugins and android app. Diceware master pass phrase.

[–] [email protected] 2 points 2 years ago (1 children)

Are you only interested in hosted applications? I've been using Keepass for years without any complaints. Though now that I'm seeing this thread filled with selfhosted vaultwarden comments, I might look into that though.

load more comments (1 replies)
[–] [email protected] 2 points 2 years ago

I used 1Pass and really enjoyed the native app for a while until they forced everyone to a monthly subscription. Then they moved to electron for the MacOS app and I dropped them. Bitwarden has everything that 1Pass did for me and it’s free. The only thing that Bitwarden lacks is CoreUI animations and fluid transitions (everything is instant when you click it).

Highly recommend Bitwarden.

[–] [email protected] 2 points 2 years ago

Bitwarden is very good, but if you are already comfortable with 1Password I don't think it is worth the switch. A lot of people (myself included) just recently switched from LastPass to Bitwarden due to LPs issues and breaches. But 1Password is still very solid and highly recommended.

[–] [email protected] 2 points 2 years ago

I moved from 1Password to Bitwarden because I was struggling to pirate the former.

NGL, I think it is kinda stupid to use a hacked software as important as a password manager, same as with an antivirus, so for me the way to go has been to selfhost Bitwarden, haven't looked back since that.

[–] [email protected] 2 points 2 years ago

I used LastPass Families for a few years, switched to 1Password for one year, and am now on Bitwarden. For me, it was the native MacOS app, so I can auto-fill apps besides just the browser (e.g. game and productivity software logins).

load more comments
view more: ‹ prev next ›