I would recommend one but I have always been wery about sending password data through the internet to be stored on some companies server. So I put in the effort to host my own Vaultwarden docker instance through TrueNas scale (True charts) on my home server and access it via a VPN tunnel (Wireguard). It's very complicated to setup compared to a web service but this way I own all of my password data locally. The android app (Bitwarden) works alright but sometimes it has trouble understanding what is a login screen and you have to force fill things. Vaultwarden as a docker instance works great. The only time this setup needs to be on VPN is to save a new password. Using existing passwords seem to be cached on my device.
Android
DROID DOES
Welcome to the droidymcdroidface-iest, Lemmyest (Lemmiest), test, bestest, phoniest, pluckiest, snarkiest, and spiciest Android community on Lemmy (Do not respond)! Here you can participate in amazing discussions and events relating to all things Android.
The rules for posting and commenting, besides the rules defined here for lemmy.world, are as follows:
Rules
1. All posts must be relevant to Android devices/operating system.
2. Posts cannot be illegal or NSFW material.
3. No spam, self promotion, or upvote farming. Sources engaging in these behavior will be added to the Blacklist.
4. Non-whitelisted bots will be banned.
5. Engage respectfully: Harassment, flamebaiting, bad faith engagement, or agenda posting will result in your posts being removed. Excessive violations will result in temporary or permanent ban, depending on severity.
6. Memes are not allowed to be posts, but are allowed in the comments.
7. Posts from clickbait sources are heavily discouraged. Please de-clickbait titles if it needs to be submitted.
8. Submission statements of any length composed of your own thoughts inside the post text field are mandatory for any microblog posts, and are optional but recommended for article/image/video posts.
Community Resources:
We are Android girls*,
In our Lemmy.world.
The back is plastic,
It's fantastic.
*Well, not just girls: people of all gender identities are welcomed here.
Our Partner Communities:
It is an absolute necessity if you use a computer. If you dont have a password manager your accounts are not secure, unless you can memorize randomized passwords. I personally don't like the idea of my most sensitive file (password database), being on someone elses computer. I use KeePassXC to mitigate this, but if you want cloud sync I recommend Bitwarden.
Yes, it saves on the odd site I use once a year and trying to have to remember that.
Self custody is something you need to keep in practice. I use keepassXC everywhere.
Since i started using KeypassX, My memory just got worse
Password Store + OpenKeychain with syncing using git (forgejo) works very well for me
I've used Keepass or Keepass XC for years. They are great!
And, since KP is offline, you don't have the same security risks as the cloud hosted password managers. If you were really paranoid, you could put your KP database file on a USB so it's never online.
Plus, even if someone were to somehow acquire a current version of your database file, it's heavily encrypted. By the time they crack it you should've changed your passwords anyway.
KeePassX(C?) both on Windows and Linux. I used the windows version KeePass2 but there was a recent security vulnerability in it so I switched to KeePassX. Maybe it's already patched... auto-type doesn't seem to work in KeePassX on Windows so I might switch back but it's not that critical.
Bitwarden all day
I’ve been using Bitwarden for years and also use the Apple password manager on my phone and iPad so I have a copy in case something happens.
I also keep some less sensitive work passwords on chrome because I don’t want to open Bitwarden at work.
Absolutely necessary In the current times. Be it for peace of mind or to free space in the mind. I've been using Bitwarden for over 5 years and I will never look back. The only password I know is the master password of the vault and don't have to worry about the tens of other stored in there.
The yourselves a favour and just go for it. It will be a million times better.
I've had enough friends and family members lose access to critical accounts due to things like changing phone numbers, and relying on auto-signin until their cookies get cleared, that I've begun just recommending password managers to everyone.
But alas, most don't listen.
As the rest of this thread seems to be saying, yeah Bitwarden seems to be the way to go. I've been using it for years and it's way too convenient not to have (not to mention the security benefits).
Keeper is a fantastic zero knowledge password manager. Once I started using keeper, I never looked back.
1Password all the way. Holds my passwords and all of my 2FA codes. I understand it’s a single point of failure but I’m comfortable with their architecture and I don’t feel like self hosting stuff.
I've been using Safe In Cloud since 2012. I like it a lot.
Absolutely worth it. It's the only way to actually adhere to password best practices.
I've been using Microsoft authenticator for work, and since it was there I also started using it for my personal accounts and passwords as well. It works well enough, never had any issues.
I pay for 1Password for families. Everyone except one person uses it. The person who doesn't use it is always getting locked out of his accounts....
I also use 1Password to store what information I've given a website. That's come in handy when I've needed to change my phone number, email, or credit card.
Currently a Bitwarden user at both home & at work. Picked up some Teams licenses for my department earlier this year - Password Managers are absolute essentials for next of kin & for successors at work.
Started with Bitwarden years ago, then I used 1password for a few months and now I'm using Keepassxc (Keepass2Android on my phone).
And I recommend everyone to use one. Not necessarily Keepass if they are not very tech savy (database synchronization can be a little bit tricky but not hard). Bitwarden was good too but Keepassxc supports adding ssh keys which is a big plus for me.
Adding generic attachments to a KeePass vault has come in handy.
Got a lifetime key for Enpass something like a decade ago and it's been as good as I could ever need. I still rely heavily on autofill via Android & Firefox, but I treat Enpass as the backup to the backup, the one with every last password. I'm meticulous about updating it with every account, every updated password, etc. I also manage all of my wife's passwords as a separate vault.
I use gpg to encrypt my passwords with my public key. Benefit is that adding credentials to a new file doesn't require me to type the master password (password for private key). I trust gpg the most for security.
I started with mSecure for a short time, than switched to 1Password.
Lastly, I turned to Bitwarden which is open source too. I used the free version for a while, but then I paid 10$ for the premium version (mainly to support the team).
I tried NordPass, but Bitwarden it is just objectively better and cheaper.
Now all my logins have random password, additionally I have input my DuckDuckGo API Key to generate random alias within Bitwarden.
Password managers are as important as adblockers in this day and age imo