What do you prefer to use for a password manager?

How well does it work on mobile? (specifically, using autofill on android 14)

I’m currently using Vaultwarden; but the android app, which is where I’m using it 95% of the time, has always been a bit flakey getting autofill to popup. Now it’s decided to stop working entirely; so I’m going to look around at some alternatives for now.

/edit:

Well, idk what happened.

I spent about 30min trying different things: switched androids autofill settings to another app, changed them back, cleared app data, force stopped everything relevant, re-installed bitwarden, restarted the device, messed with accessibility; nothing seemed to work. Bitwarden adamantly refused to popup for autofill in anything I’d tried. (4-5 different sites in chrome, firefox, and duckduckgo. The openvpn app, Jerboa, my bank. Nothing worked. Absolutely 0 sign of autofill anywhere.)

I made this post and went for a walk.

Now suddenly autofill is working again.

I hate technology sometimes.

/edit again:

The best option I’ve seen so far: There is an ‘autofill’ QuickSettings button you can add to the notification tray that opens the vault and asks which item to fill with. (just like the ‘open vault’ inline autofill option). If inline isn’t popping up, use that.

  • keyez@lemmy.world
    link
    fedilink
    English
    arrow-up
    3
    ·
    1 hour ago

    Been selfhosting the official Bitwarden stack for the last 7 years now and it’s been running great.

  • eletes@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    6
    ·
    7 hours ago

    Vaultwarden over tailscale has been good to me.

    I do have a qualm with how easy it is to accidentally close bitwarden before saving a password and losing the password you just generated. But that’s just taught me to not zip through the process

  • irmadlad@lemmy.world
    link
    fedilink
    English
    arrow-up
    1
    ·
    9 hours ago

    I wish I had the confidence in my security provisions to self host my secrets on the internet. I do use bitwarden, but that is local to my machine. It works good for me, as my memory is shit. About the only thing I could say against Bitwarden is that the recent theme change was a huge mistake and caused a lot of people a lot of stress. Insomuch as the public outcry against the new theme was so great, they switched back to the old theme. Whoever created the new theme had to have been a sadist.

    • Darkassassin07@lemmy.caOP
      link
      fedilink
      English
      arrow-up
      2
      ·
      7 hours ago

      I keep vaultwarden behind a vpn so it’s not exposed directly to the net. You don’t need a constant connection to the server; that’s only needed to add/change vault items.

      This does require some planning though; it’s easy to lock yourself out of your accounts when you’re away, if you don’t incorporate a backdoor of some kind to let yourself in in an emergency. (lost your device while away from home for example)

      My normal vpn connection requires a private key and a password that’s stored in my vault to decrypt it. I’ve setup a method for retrieving a backup set of keys using a series of usernames, emails, passwords, and undocumented paths (these are the only passwords I actually memorize); allowing me to reach vaultwarden where I can retrieve my vault with the data needed to login to everything else properly.

      • irmadlad@lemmy.world
        link
        fedilink
        English
        arrow-up
        2
        ·
        6 hours ago

        if you don’t incorporate a backdoor

        I’ve often thought about this, and since it has come up in convo, I’ll ask: If you were to implement a backdoor to your server, how would you go about that? Currently I have 3 vps and one rack in the closet. It is the vps I’m interested in the most. Only one vps offers a rescue ssh, and yes I can confirm, if you are not exceedingly careful on my setup, you can lock yourself right out. I run tailscale on everything and I often wondered if I could incorporate tailscale as a emergency backdoor.

        • Darkassassin07@lemmy.caOP
          link
          fedilink
          English
          arrow-up
          1
          ·
          edit-2
          6 hours ago

          Most of my web services are behind my vpn, but there are a couple I expose publicly for friends/family to use. Things like emby, ombi, and some generic file sharing with file browser.

          One of these has a long custom path setup in nginx which, instead of proxying to the named service, will ask for http basic auth credentials. Use the correct host+path, then provide the correct user+pass, and you’ll be served an openvpn configuration file which includes an encrypted private key. Decrypt that and you’ve got backdoor vpn access.

    • WDHPR@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      ·
      12 hours ago

      Interesting, I had not heard of Psono before, cool to see a European alternative that is fully open source. I’m currently self-hosting Vaultwarden but I might give this a try to see how it holds up.

    • catloaf@lemm.ee
      link
      fedilink
      English
      arrow-up
      3
      arrow-down
      1
      ·
      21 hours ago

      That makes sense. I’ve seen the same behavior as OP. Usually when it happens, I open the Bitwarden app manually, and naturally when I switch back the detection is working normally again.

      • Darkassassin07@lemmy.caOP
        link
        fedilink
        English
        arrow-up
        2
        ·
        19 hours ago

        Usually that does the trick for me too; but this morning it just would not cooperate no matter what I tried.

        Seems to be playing ball again, for now.

        I have a feeling this is more to do with Android/Google not wanting to give up control more than anything. If googles stuff always works, but third party stuff is mysteriously always glitchy; users are going to gravitate to google and their ever growing monopoly…

  • just_another_person@lemmy.world
    link
    fedilink
    English
    arrow-up
    58
    arrow-down
    1
    ·
    1 day ago

    Vaultwarden is pretty much the standard if you’re talking about self-hosted.

    I’ve honestly never had a single issue with the Android app, or mobile extensions for Firefox. What’s your setup, and have you tried completely evacuating local storage and redoing your login and sync from scratch? There are a lot more mobile updates that can cause locally stored versions of things to cause problems.

    • Lem453@lemmy.ca
      link
      fedilink
      English
      arrow-up
      8
      ·
      edit-2
      1 day ago

      The native rewrite of the Android app is butter smooth. I think it’s still technically in beta, but I’ve been using it for more than a year.

      Also, I don’t think I ever use the pop-up on mobile. Instead, I use the button on my keyboard. Gboard and FUTO Keyboard both show bit warden buttons at the top when I’m on a logon page

  • iii@mander.xyz
    link
    fedilink
    English
    arrow-up
    50
    arrow-down
    2
    ·
    1 day ago

    I use keepass+syncthing.

    One of those things that has been there for years, works flawless, to the point that I’ve stopped thinking about it.

    • Cenzorrll@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      2 hours ago

      I do similar, except nextcloud and backups beyond just syncing. I fear something corrupting my database and that syncing immediately through all my devices.

    • CreatingMachines@fedia.io
      link
      fedilink
      arrow-up
      10
      ·
      1 day ago

      Same here, and I don’t really suffer from the sync conflicts all that much (as I have seen someone else mention in this this thread) as I mainly make changes from a single device, with the exception of TOTPs that only let you scan a QR code.

  • neons@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    20
    arrow-down
    1
    ·
    edit-2
    1 day ago

    Depends.

    Do you want to share passwords with other users? Vaultwarden.

    Anything else? Keepass and Syncthing.

    I personally host it for my family to share the netflix password or the password for our energy provider. So I use Vaultwarden.

  • uranibaba@lemmy.world
    link
    fedilink
    English
    arrow-up
    25
    arrow-down
    1
    ·
    1 day ago

    I use KeePassXC. I have to sync it myself between devices (I use pCloud, syncthing and rclone). They have an android app that works great and there is an iOS app as wellapp, Strongbox. I’ve looked at replacing it a few times but nothing gave me the customisation Keypass offers.

  • grepe@lemmy.world
    link
    fedilink
    English
    arrow-up
    13
    arrow-down
    2
    ·
    edit-2
    1 day ago

    keepass

    it’s technically no password manager but an encrypted file format.

    there are dozens of apps that will work on any platform, including soft keyboard with “password” button for smartphone that will just work everywhere and browser extensions, static website, apps that allow you to use your yubikey to unlock and anything else. you can host your vault anywhere including a google drive or your own webdav or ftp server and keep local copies on your devices synchronized…