Live data from Hacker News

Ask HN: 1Password vs. LastPass vs. Bitwarden for teams ?

news.ycombinator.com

31–40 of 48 posts

Re: Ask HN: 1Password vs. LastPass vs. Bitwarden for teams ?

#33
I use BitWarden and run my own vaults. Pretty easy to set up using docker on a Linux machine.

I've had some trouble with the BitWarden anrdoid app not wanting to help fill in login information, but I put that down to user error - it's close enough I just can't be bothered to dig deeper.

Re: Ask HN: 1Password vs. LastPass vs. Bitwarden for teams ?

#34
post #6

Earlier quoted context omitted.

I have bitwarden self hosted. I'm using bitwarden_rs and it's really really good.

Have you had any trouble with the extension unlocking the vault? I had to switch back to the standard bitwarden, but I'd love to switch back.

It might be this issue, fixed 10th October: https://github.com/dani-garcia/bitwarden_rs/issues/1162

Re: Ask HN: 1Password vs. LastPass vs. Bitwarden for teams ?

#35
post #29

keepassxc makes my life easier.

The only thing I don’t like about it is that I can’t figure out how to set a global hotkey on OS X.

I have had a pretty good time with MacPass [1]. It is not just fully KeePass compatible but also adds a nice native macOS flavor to the game.

[1] https://macpassapp.org/

Re: Ask HN: 1Password vs. LastPass vs. Bitwarden for teams ?

#37
post #8

I use the built in Apple one, works great but now I'm trapped. Not sad about it yet.

Good luck migrating your credentials out of apple keychain. I had to do it one by one. Never again.

I wrote an AppleScript to do it.

Good time to remind others to export your google Authenticator if you change phones and do the backup keys.

Re: Ask HN: 1Password vs. LastPass vs. Bitwarden for teams ?

#39
post #25
post #20

All three of these expose your entire password database to system memory every time you decrypt a single secret giving you no reasonable defense against malware. LastPass, 1pass, BitWarden, and most other password managers doubled down on good UX, but the security is pretty terrible. They help users avoid using the same password for every site, granted, but is that really good enough? Consider that every time you go…

You mentioned mobile at the end of your comment, and I'm wondering how this works. Isn't it very cumbersome to attach a hardware device to your phone each time you need to login somewhere?

Not OP but there are keys like the YubiKey 5C Nano. Combined with Qi charging, you could stick them permanently in your phone. Note that I can't comment whether this is wise.
Post reply on HN