Hacker News new | past | comments | ask | show | jobs | submit login
Bitwarden (github.com/bitwarden)
66 points by lovestaco 64 days ago | hide | past | favorite | 29 comments



To people who want to self-host this, look at Vaultwarden which is a fully compatible alternate server with even more features:

https://github.com/dani-garcia/vaultwarden

Been running it for a year with 0 issues.


+1. Been running for a year or two as well and I don’t even have to think about it.


Better part of it is it requires far less resource to run.


The UI side is clamping down on features,

The browser extension requires you to pay to use TOTP and so on.


> down on features, The browser extension requires you to pay to use TOTP and so on

No, if you self host vaultwarden and not the bitwarden server you don't have to pay. And in both cases you can use bitwarden clients. However I would still pay the $10 as way of supporting this project.


Just want to add for clarity to others that that's $10 for the whole year.


I doubt that the price will stay that low. Bitwarden has taken a lot of venture capital and someday the investors want to earn some money ...

https://bitwarden.com/blog/accelerating-value-for-bitwarden-...


Their free tier is extremely reasonable. Storing TOTPs in your password manager is a niche use case that I think should be entirely avoided unless you're working with a team.


I like Bitwarden but I just find the UI so clunky.

The option to add save or update a password after a successful login just seems to flash so quickly, it's hard to catch it - Fedora/Fx. The icons in the browser extension - why is a key icon for 'copy'? Why is 'edit' all the way at the top in the same colour/font as body text?

It seems to be the best of the bunch when it comes to password managers but I do find the UI a pain.


Coming from 1password its often painful.

Start editing an entry, click outside the bitwarden extension window to go copy something you want to save and bam, windows is gone with your data. I don’t remember how 1password was dealing with that, but I never had issues like that with it.

View/Edit page look the same. How many times I have been clicking on the fields trying to edit them to realize I’m in view mode.

Create a custom fields hidden type, want to generate a password? Well, you can’t. You need to close what you are doing (don’t just click outside the window) save, go generate the password. Copy, search, view, don’t forget to edit, paste your password.

There is so many things like that. I hate bitwarden.


I came from 1password and bitwarden was leagues better than it. I still don't like the browser addon but anything beat 1password


> why is a key icon for 'copy'?

Because that copies the password. The icons next to it copy either the username or the TOTP if configured.


I agree. Injecting UI into the DOM is just a clunky, shitty method.

Is there a better way for extensions to create pop ups for the save/update interface? I pretty much do all the saving and updating manually in the extension dialog.


I think this is relative. It is certainly not perfect, but I like the UI better than anything LastPass has come up with.


I really liked Bitwarden but the incredibly delayed Passkey support that hasn't even reached mobile yet left me worried about the future development of core Bitwarden.

Something else that I can't really understand but that does not affect only Bitwarden but most password managers: File attachments are handled incredibly badly. Even just the UI to manage & upload new files in Bitwarden is strange and unintuitive and that vault exports/backups do not include the files at all is really bad. I hope Bitwarden and the whole field for that matter improves a lot in this regard.


> I really liked Bitwarden but the incredibly delayed Passkey support that hasn't even reached mobile yet left me worried about the future development of core Bitwarden.

According to the developer of Bitwarden[0], part of the reason passkeys haven't been supported yet on mobile is due to the use of the Xamarin framework, which doesn't have cutting edge features. They're about to release new versions of the mobile apps, part of which is upgrading to the MAUI framework. This will provide a stopgap to allow passkeys until full native apps are available. They're developing the MAUI and native versions in parallel.

[0]: https://www.reddit.com/r/Bitwarden/comments/1b32bbz/going_na...


Thanks a lot for the link great to finally see a clearer statement. I am looking forward to a new app that hopefully does not crash on open as often. As a simple user it's just been so many delays :(


Never had it crash once, face recognition has worked on iOS flawlessly for years.. by far the most used app on my phone and favorite.


On my iPhone it crashes about 50% of the times when I use it a while, then it‘s in the background for quite a while and when I then switch to it… crash.


same here.


Their migration path from US to their new EU cloud suffers from this too. You're supposed to export your vault, then import it on a new EU account. This much is fine, but for file attachments they want you to individually download every single one by hand and then upload them again in your new account.

File attachments seem more like an afterthought that was quickly added on due to demand as a MVP and then abandoned.


Yeah the split between EU & US has been painful. I also completed my migration just a few months ago. I found https://github.com/vwxyzjn/portwarden to work very well for the migration, which works around the file export issue by retrieving them one by one and re-uploading them.


My one single gripe these days is that I wish the client would either allow customising fonts (since they already allow custom colour schemes), or that they'd use the native system font stack instead of Open Sans.

I forked Bitwarden and built a copy using the system font stack for myself, and it ended up looking far more palatable. I would have used it as my main password manager if I had the patience to figure out Touch ID support.


Very nice product, I used it for years before I really ramped up my efforts to simplify my personal tech use.

It's just very slightly behind Google's built-in management, or was last I used it. Occasionally it won't auto detect when it should be asking if you want a generated password, or it won't auto fill, or will have some trivial annoyance like that.

I really like the secure notes feature though.


Love Bitwarden, I moved our whole company away from Last pass and onto Bitwarden, they've constantly added features and are looking more enterprise ready with features such as SAML, Master password reset enrollment and policies for password generation etc.


My biggest gripe with bitwarden is you can't enforce a basic idle lock timer on end users. Each user has the option to have their vault access auto lock, but there's no way to set and require that setting for users, and it isn't turned on by default.


I am a current Bitwarden customer. My largest complaint is that their CLI and Linux integration is absolutely atrocious. 1Password is eating their lunch. I use 1Password for work, and it really feels so much better to use. 1Password has SSH integration, automatic syncing between the CLI and the GUI, and Linux package repositories.

I'm tempted to switch to 1Password, but since I am a Proton customer, I am just going to wait to see if Proton Pass ever gets a good CLI.


Has 1password stepped up their game recently? They were significantly worse every time I've tried them. They've lost me and I'm not willing to try again anytime soon, but I do wonder.


No idea, but I think their product is good.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: