Luckily BW is open source, and VaultWarden exists. If they enshitify, all it takes is a fork of the browser extensions and apps with a rebrand.
Technology
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related news or articles.
- Be excellent to each other!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
- Check for duplicates before posting, duplicates may be removed
- Accounts 7 days and younger will have their posts automatically removed.
Approved Bots
They took the VC money
Nothing good ever lasts. Guess that's entropy for you.
From the article
Update: After publication, an employee on the Bitwarden subreddit said that “Always free” had been restored on its pricing page, calling it an “oversight” by the marketing team. The product page for Bitwarden’s personal password manager remains unchanged.
This is troubling and I am going to accelerate my migration to Vaultwarden. I'm not going to leave Bitwarden yet but I saw how this played out with LastPass, and I was a happy LastPass customer until I wasn't.
Docker and caddy make this pretty easy. Even easier if you have a static ip and go to porkbun for a domain.
And that’s only if you wanna access it outside your network. Mostly you can get away with syncing before you leave.
Or just use ZeroTier/Tailscale/NetBird/Wireguard and you can access your server from anywhere without exposing it to the imternet directly.
Yeah I know but I’d rather just expose the services I want.
And I'd rather not deal with extra, unnecessary security concerns.
Proton pass has been fine for me. I don’t care that the one Proton guy said the one thing that time, I’m out of energy and it’s good enough.
It's just annoying on Android because it often struggles if there's a "remember me" checkbox. And there aren't separate fields for username and email.
Another happy proton pass user here, i do care about what that one guy said but not enough to switch to another service. Not foss, but it's definitely a good enough thing for me.
I feel like switching to self hosted vaultwarden was one of my best moves of the year
Same. But it’s an ugly UX. I liked keepassxc UX better.
I just tried it and it took me 5 minutes, since I use yunohost Just add app, setup admin account, invite myself, then import my bitwarden.org vault (after password encrypting the json export, of course)
Been planning to do this just because; now it seems it's strictly necessary.
Gotta figure out how docker, containerization and all that jazz works. I have an account with hetzner but just web/sql hosting and a managed Nextcloud instance - no vps yet.
Seems like a Saturday project that I hope I can get round to.
I tried for it today on an LXC at home but its proving to be a pain in the ass due to my DNS provider, DreamHost. I'll figure it out later, but this isn't as turnkey as I had hoped.
This was the headline that finally prompted me to figure out why KeePass wasn't working on Librewolf.
(KeePass doesn't work with the flatpak version of Librewolf, you need to install it through terminal.)
I figured you have to layer the browser on the system. The KeePassXC can stay flatpak. That's how it worked for me. You always want to have one browser layered, anyways.
It does work with some effort, even the flatpak version. I recall finding a github issue about it and then with some trial and error, it works.
Glad I didn't let myself get talked into switching to Bitwarden from my boring KeepassXC setup...
reading this as someone who migrated the rest of the household to Bitwarden literally yesterday: 😒
It took me years after the lastpass breach to get my wife and 1/3 of my kids to switch to Bitwarden. I am not looking to having to migrate again.
but exporting is easy with bitwarden. this is annoying. after the age check laws, i have been moving off big companies because it will be bad snd i know my migration will take a bit. i finalized bitwarden a couple weeks ago and was just about to assist my family.
i would not be as upset if ram and harddtives didnt cost a mortgage right now.
It does not matter how easy exporting is, the difficulty is going someone who really does not understand why they should be using a password locker to use one, much less change to a different one.
Was good while it lasted. Thanks for getting me off LastPass. See ya
Why the fuck does everything that's good turn to shit? This world sucks. This timeline sucks.
VC ruins everything
This is literally a product where a hobbyist tried to fix a niche, and now the VCs arrive.
it's all motivated by the accumulation of wealth = capitalism
It's not a timeline. It's just the world we keep making. The only one.
Fucking shit it's time to migrate again isn't it?
“You either die the hero, or you live long enough to become the villain”
Is it that time when I say "oh shit!" and starts to look at alternatives? I've seen this scenario a hundred times already and I'm tired.
As long as they don't enshittify the mobile apps and browser extensions, I'm neither surprised nor concerned. Vaultwarden exists.
And if they do ruin the client end, I expect third-party alternative clients, or a wholly new alternative, will appear soon enough.
(Yes, yes, "b-but KeePass!" folks... I've been there.)
As long as they don’t enshittify
lol you don't know how this works yet
Its never an if, its a when. And that when is VERY soon.
I learned about alias vault recently and it seems to check all the boxes i would need. Self hostable and automatic sync and maintained with apps on all platforms https://www.aliasvault.net/
Enshitification marches on.
Where do I go if I want to move? Must have free tier and cloud sync (or when my devices are online they sync automatically). Suppose I'm gonna look into proton.
I'm happy with proton but can't tell you if the free tier is good enough for you. Worth taking into consideration for sure if you ask me.
For the last 10 years I've been using KeepassXC file + nextcloud/cloud of your choice.
Desktop and mobile apps available. Browsers have extension for it for password fill.
It's just a password-locked file that's synced between devices. Simple, not dependant on any third party services.