Live data from Hacker News

Bitwarden: Free, open-source password manager

bitwarden.com

131–140 of 242 posts

Re: Bitwarden: Free, open-source password manager

#131
post #42

I love the autofill keyboard shortcut, a real productivity boost. To auto-fill login information, use the following default shortcuts. If there are multiple Login items with the detected URI, the last-used login will be used for the auto-fill operation. You can cycle through multiple Logins by repeatedly using the keyboard shortcut: On Windows: Ctrl + Shift + L On macOS: Cmd + Shift + L On Linux: Ctrl + Shift + L

Now make this work with desktop apps, please

KeePassXC does support autofill in desktop apps

Re: Bitwarden: Free, open-source password manager

#132

I frankly thing password managers are the most stupid thing. We fake users inputing text to input boxes and spend crazy time figuring out how to do that and how to get around various sites trying to block that, so the site can still pretend it’s actual user inputting the password. Plus the manager needs to work around arbitrary password rules. Plus they usually don’t work at OS level; so you still need to remember th…

Password managers are the most stupid thing, really? What better alternative do you propose?

Re: Bitwarden: Free, open-source password manager

#133

I use Bitwarden, it's brilliant. But I wish a password manager would figure out a way to fill in passwords where they ask for 1st, 5th, 11th letters like many banks do. It doesn't need to be automated, if I can tell it which HTML element to read and parse as an index and which text elements to fill in, then that's good enough for me.

In Bitwarden you can achieve that by creating Custom Fields [1] for each letter.

[1] https://bitwarden.com/help/article/custom-fields/

Re: Bitwarden: Free, open-source password manager

#134
Since everyone's asking for a good password manager for their use-case, I may as well so the same. Thanks in advance for any replies.

I've been looking for an alternative to Enpass, which:

1) Supports using WebDAV as a backend (or an "app" exists for Nextcloud, if one exists).

2) Supports biometric authentication on Windows and Android.

3) Has a client which unlocks off the system keyring on Linux (Enpass doesn't do this).

4) Uses in-line autofill (through the Keyboard) on Android. Enpass said they'd add this month's back... but never did.

5) Has a not-ugly UI which at least partially matches GTK/Qt on Linux, Fluent on Windows, and MD2/Material You on Android.

6) Has Chrome and Firefox extensions that "take over" as Autofill like the Enpass extensions do (you can see it in Chrome Settings -> Autofill, if an extension does).

I don't mind if it's paid, as long as it isn't relatively expensive (i.e. no more than Enpass because I got that on discount).

Re: Bitwarden: Free, open-source password manager

#135
post #37

> The most trusted open source password manager for business I expected a blog article with actual feedbacks from companies and data, but ended up on bitwarden.com main page. Baseless claims can be quite common when it comes to marketing, but I'm genuinely curious: which password manager is used in your workplace, if any? I've personally never seen in my (for now short) career anything else than Keepass.

Lastpass. I didn't know it was possible to make a web page that slow.

Re: Bitwarden: Free, open-source password manager

#136
post #37

> The most trusted open source password manager for business I expected a blog article with actual feedbacks from companies and data, but ended up on bitwarden.com main page. Baseless claims can be quite common when it comes to marketing, but I'm genuinely curious: which password manager is used in your workplace, if any? I've personally never seen in my (for now short) career anything else than Keepass.

Bitwarden is open source. It is auditable. You can host it wherever you like or you can support the devs. I think it’s great.

Re: Bitwarden: Free, open-source password manager

#139
post #37

> The most trusted open source password manager for business I expected a blog article with actual feedbacks from companies and data, but ended up on bitwarden.com main page. Baseless claims can be quite common when it comes to marketing, but I'm genuinely curious: which password manager is used in your workplace, if any? I've personally never seen in my (for now short) career anything else than Keepass.

KeePassXC and Strongbox for (Apple products) personal use

Re: Bitwarden: Free, open-source password manager

#140
post #103

Earlier quoted context omitted.

1Password's servers also cannot read your data. They use a client generated secret key in addition to your usual password to encrypt your vaults. It's been detailed pretty well https://support.1password.com/secret-key-security/

Are all clients open source? If I loose all my keys is there no way to recover the data? And how does this work when I share passwords with my colleagues in a vault? They dont have my "client generated secret key", so how can they read my passwords? I know companies write stuff to sell their products, but I dont trust that, I prefer open source and the laws of logic over marketing.

If you loose bitwarden keys what will they do to recover data? They have similar security protocols so I doubt being open source would help that. It's not about being open source or not. That's just security

1Password says explicitly that you're not sharing the actual item in your vault and that it's creating a copy of it. It's probably generated client side and pushed to an external sharing service

I mean, I understand trusting open source but your statements seem like non-sequiturs. 1Password has been audited and has been an industry standard for a while. They seem to know security so at some level I don't find it difficult to trust them. Of course, I don't deny trusting open source and that's completely valid but not with these specific points

Post reply on HN