My favorite password manager is KeypassDx. I also use proton pass. What do you use and why?

  • shapis@lemmy.ml
    link
    fedilink
    English
    arrow-up
    0
    ·
    3 hours ago

    Proton pass.

    Used bitwarden for a long time til I lost my 2fa and lost the account. I also lost proton’s 2fa and they helped me get the account back. Been a customer since.

  • SuperFola@programming.dev
    link
    fedilink
    English
    arrow-up
    0
    ·
    19 hours ago

    Self hosted Bitwarden. It has been awesome for three years, never had any problems when switching from windows to Mac and then my phone from android to iPhone.

    Better than keeper and last pass. Good synchronization and more options to share passwords or notes with friends compared to Firefox password store.

  • fancy_coffeetable@feddit.org
    link
    fedilink
    English
    arrow-up
    0
    ·
    19 hours ago

    I’ve used 1password for more years I can count on my hands, and am satisfied with it. I share vaults with family members which is extremely handy with my aging parents.

    I haven’t really tried much else. I see no reason to switch.

    • ILikePigeons@lemmy.ml
      link
      fedilink
      English
      arrow-up
      0
      ·
      19 hours ago

      Same, I do however also write all of my password in a notebook, so I don’t lose them if anything bad happens.

  • redxef@feddit.org
    link
    fedilink
    English
    arrow-up
    1
    ·
    2 days ago

    pass.

    It’s simple and has frontends for all my usecases. It’s so simple, that you can extend it’s functionality yourself if you wish.

    Synchronizing works by just synchronizing the folder where the data lives, so syncthing, git, dropbox, ftp. Whatever you like.

  • 4am@lemm.ee
    link
    fedilink
    English
    arrow-up
    0
    ·
    1 day ago

    I notice there aren’t a lot of Dashlane fans. (I use Bitwarden myself.)

    Is there something wrong with them?

  • absGeekNZ@lemmy.nz
    link
    fedilink
    English
    arrow-up
    0
    ·
    1 day ago

    KeePassXC + Keepass2Andriod, keep it all synced using Syncthing. Desktop/Laptop/Phone all have the passwords synchronized, it is super convenient.

    I have been doing it this way for years, never had any issues; just starting to investigate using passkeys where I can. So that is a new adventure; I’ll see how it goes with my current workflow.

  • node815@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    1 day ago

    Hands down, Bitwarden app on phone and in browser. Vaultwarden self hosted. Since I host it at home, I know it’s always in my server. The winning thing for me is that Bitwarden Supports Webuathn now, you can use it as it’s own webuathn key you authorize to log in with, so basically go the site you want to login with and when it asks for the webuathn, you can either have Bitwarden use the credentials you stored for it or your own biometric or hardware key instead.

    With this, I sign into Authentik for my SSO just by clicking one link, and Bitwarden prompts to log in and I click the option. I’m auto logged into my server and no UN/PW passed to it.

    I’ve tested others and nothing quite comes close except for KeepassXC, but for me, it’s a matter of personal preference on my side. I’ve been with Bitwarden since the early days.

      • leftzero@lemmynsfw.com
        link
        fedilink
        English
        arrow-up
        0
        ·
        1 day ago

        This assumes a) passwords, and b) poor passwords at that.

        Passphrases are easy to remember, extremely hard to crack, and easily customisable for every site, and you don’t need no fucking password manager to store them.

        Though I’ll give you this: password managers are not, after all, necessarily single points of failure.

        If you need a password manager to manage your passwords you’re a much more vulnerable point of failure than your password management bloatware itself.

        correct horse battery staple

        • Communist@lemmy.frozeninferno.xyz
          link
          fedilink
          English
          arrow-up
          0
          ·
          1 day ago

          Or you could not have to remember all of that, have vastly more complex passwords, have it be significantly more convenient.

          I currently have 100+ passwords stored in my password manager, do you actually expect people to remember 100+ unique phrases?

          • leftzero@lemmynsfw.com
            link
            fedilink
            English
            arrow-up
            0
            ·
            1 day ago

            vastly more complex passwords

            Complexity is practically irrelevant when compared to length when it comes to passwords. That’s the point of passphrases.

            do you actually expect people to remember 100+ unique phrases

            You can have a small number of passphrases and simply choose one and add a word or two based on the site. It’s trivial to “remember” an infinite number of unique passphrases if you’ve got an algorithm. 🤷‍♂️

            • Communist@lemmy.frozeninferno.xyz
              link
              fedilink
              English
              arrow-up
              0
              ·
              edit-2
              1 day ago

              Complexity is practically irrelevant when compared to length when it comes to passwords. That’s the point of passphrases.

              are you trolling me? I can have 20,000 character long passwords with a password manager. Length is just an aspect of complexity…

              You can have a small number of passphrases and simply choose one and add a word or two based on the site. It’s trivial to “remember” an infinite number of unique passphrases if you’ve got an algorithm. 🤷‍♂️

              …that makes it significantly less secure and almost defeats the purpose of unique passwords, I could have 20,000 character completely unique passwords with a password manager.

              • leftzero@lemmynsfw.com
                link
                fedilink
                English
                arrow-up
                0
                ·
                1 day ago

                I can have 20,000 character long passwords with a password manager

                Sure. Most websites will either truncate them or outright reject them due to being too long, but sure.

                Most users, however, will use the 12 to 16 characters auto-generated ones, though, which are sufficiently hard to crack (though not as much as an easy to remember passphrase, not that it matters; the easy to remember part is what matters about passphrases).

                that makes it significantly less secure

                No it doesn’t. Even if a few of the passphrases leak, your algorithm, if well chosen, shouldn’t be easy to reverse engineer… and unless someone is specifically targeting you (and has access to enough of your passphrases) there’s much easier fish to catch; if a leaked passphrase doesn’t work in other sites, no one will waste time trying to figure out if it has some logic to it.

                I could have 20,000 character completely unique passwords with a password manager

                No you couldn’t. You’d have one password and one password manager (which would have all “your” other passwords; as would anyone else with access to your password manager).

                Until you lose access to your password manager, of course… which is bound to eventually happen, due to hardware or software issues or loss of the device if it’s local, or due to network issues, the provider discontinuing the service, or inevitable enshittification if it’s online.

                And, of course, you’ll have a single point of attack from which your password can be leaked (or sold, if it’s an online service) or stolen.

                • Communist@lemmy.frozeninferno.xyz
                  link
                  fedilink
                  English
                  arrow-up
                  0
                  ·
                  edit-2
                  21 hours ago

                  Until you lose access to your password manager, of course… which is bound to eventually happen, due to hardware or software issues or loss of the device if it’s local, or due to network issues, the provider discontinuing the service, or inevitable enshittification if it’s online.

                  It has never happened to me and is absolutely not bound to happen, especially if it’s local and backed up…

                  I’d rather remember one REALLY secure password than 100+ bad ones.

  • Case@lemmynsfw.com
    link
    fedilink
    English
    arrow-up
    0
    ·
    1 day ago

    I use proton pass currently.

    My life is changing in less than two weeks.

    I have an enterprise grade server that I can’t run for a variety of home reasons.

    When me and the wife… for lack of a better term, escape, our situation, I’ll be able to self host. I know its gonna be a struggle, I have things to learn, and that is why I’m so excited.