Top
Best
New

Posted by Cider9986 8 hours ago

Bitwarden Dual License Model(community.bitwarden.com)
319 points | 236 commentspage 2
solarkraft 8 hours ago|
I’m willing to commit money to a project committed to release free builds without these shenanigans.
Cider9986 7 hours ago||
Bitwarden is still releasing free builds but yeah you'd need a new project with a new name to use it from the Play Store or App Store.

Turns out Keyguard, an alternative Bitwarden client is already on the Play Store.

https://github.com/AChep/keyguard-app

Edit: turns out Keyguard is source available but fully copyrighted.

alt227 7 hours ago||
So if we now have Vaultwarden + keyguard can these things move away from Bitwardens api and pursue their own?
InsideOutSanta 7 hours ago||
Is there any reason to? It's kinda nice that they all stick to the same contract. I don't really like the Bitwarden desktop app, but because there's so much code out there, it was pretty easy to have an LLM write a detailed spec for a client and then implement something that works for me.
chrismorgan 5 hours ago||
The Bitwarden web client has actively broken Vaultwarden compatibility at least once <https://github.com/dani-garcia/vaultwarden/issues/7607>. It’s reasonable to expect they’ll do so more, carelessly or deliberately. They already have features and UI that don’t make sense for Vaultwarden, and the rate of such things feels to me (as a mere user) to have increased. When Bitwarden continues in the direction they’re going, I think a hard fork of the entire ecosystem for Vaultwarden is fairly likely, and it will almost certainly be a good thing, and in hindsight we’ll probably wish the fork branched off earlier.
embedding-shape 3 hours ago||
The question is, what structure can protect this in an ongoing way? Say you setup a non-profit foundation, even those seemingly can be perverted to become for-profit businesses with corporate shenanigans (see OpenAI), so if you wanted to somehow "guarantee this group always release things this way", is there any legal structure that can enforce this somehow, "forever"?
aetherspawn 1 hour ago||
Switch to free Apple Passwords and call it a day.
Cider9986 8 hours ago||
This is enshittification but I'm not gonna drop Bitwarden unless they do something really bad. I'm already on the F-Droid version from their GitHub for my GrapheneOS phone because that one has no Google services/telemetry.

One of the family members I set up with Bitwarden has said it changed their life and they can't imagine not using it. I would guess that would apply to any crossplatform password manager but Bitwarden is quite good and the one that stuck.

I probably wouldn't move to one of these [1] because I don't like the UI of Proton Pass, the convenience of KeyPass, and 1Passsword is obvious. I'm interested in AliasVault as it seems to be a more privacy-focused password manager, which is cool, but I'd have to look more into it.

[1] https://www.privacyguides.org/en/passwords

[2] https://discuss.privacyguides.net/t/aliasvault-open-source-e...

brachkow 3 hours ago||
In case you are all-Apple, there is no reason to use either 1Password or Bitwarden – since a few years ago Apple Passwords have everything you need
mnahkies 5 hours ago||
Bitwarden is one of the few subscriptions I have in a patron sense - eg: I've never actually needed any of the premium feature's, but I chose to pay anyway as I felt that was a way to contribute to the long term viability of the project.

I'm not immediately upset about the licensing change - I get the need to protect from low effort/value add reselling and things like that. I do still worry if this is a canary for future changes that run counter to the reasons I migrated to bitwarden in the first place (open, robust, trustworthy).

Counter to many other commenters I personally prefer bitwarden over 1password, and certainly over lastpass and roboform, etc.

My only gripe is having to unlock the desktop app separately from the browser extension, which after adopting the ssh agent functionality became kinda annoying.

mindracer 7 hours ago||
This seems like the beginning of the end, what password manager is recommended now?
pprotas 7 hours ago||
KeepAssXC + SyncThing works well if you don't mind tinkering and like independence from corporations

Otherwise 1Password if you like paying money

LeBit 7 hours ago|||
Keep Ass XC? Is it a fork?
dannyw 6 hours ago||
KeePass XC :)
cricalix 6 hours ago||||
1Password has the whole thing of providing money to Omarchy's foundation. For some, that is a hard blocker.
tcfhgj 5 hours ago||||
1Password is not open source in the first place
Mashimo 7 hours ago|||
> KeepAssXC + SyncThing works

From a quick look, that seems to be Desktop only.

pprotas 7 hours ago|||
Not desktop only, KeePass uses an encrypted file, all you need is a way to decrypt it. You can store it in iCloud or whatever you like to sync files between devices.

iOS has a good open source app KeeForge to open the encryped password files. I use SyncTrain on my phone to connect to my SyncThing network.

mindracer 7 hours ago||
I use syncthing for my Linux devices but though it didn’t work on iOS. Will check out SyncTrain, thanks!
upboundspiral 7 hours ago||||
It's unfortunate that its a bit fragmented but there are Android / iOS complements as well - respectively keepassDX and keepassium.
pprotas 7 hours ago||
You can see it as fragmentation, or you can look at it as having a choice. You can pick and choose how you access your data, without any corporation screwing you over the first chance they get.
Saris 6 hours ago||||
There are several good Android Keepass clients, and Syncthing apps too.
Zambyte 6 hours ago|||
Look longer :)
aetherspawn 1 hour ago||
Apple Keychain (free Passwords app)
inexcf 8 hours ago||
Well seems like Bitwarden is dying. A clear move towards enshittification. I was fine with the premium subscription existing while i was self-hosting Vaultwarden, but now every step seems to make that worse. Now new features will be under the commercial license an everything else will be slowly neglected. Time to jump ship.
movsx 8 hours ago||
I have been eyeballing PassPony[0] as a replacement.

The fact that they still do not support Yubikeys is holding me back from switching, but I expect this to be ironed out soon.

[0]: https://passpony.app/

0l 7 hours ago||
Looks far too sloppy for me to trust this software with my passwords...
movsx 7 hours ago||
I do not like the idea of self-hosting VaultWarden because I generally do not like the idea of application software requiring so much random access memory for even the simplest tasks. So, my idea was to use something like pass[0] or passage[1] (pass[0] + age[2]) on a remote server, but the problem arises when Yubikeys come into play.

I am in no way, shape, or form, endorsing this PonyApp thingy and cannot vouch for it as I haven't audited it. But judging by what it says on the tin, it does appear like a candidate to solve the specific problem I have.

[0]: https://www.passwordstore.org/

[1]: https://github.com/FiloSottile/passage

[2]: https://github.com/FiloSottile/age

blahlabs 7 hours ago||
Any suggestions or ideas for where to?
Cider9986 6 hours ago||
https://www.privacyguides.org/en/passwords

https://discuss.privacyguides.net/t/aliasvault-open-source-e...

andrewjneumann 6 hours ago||
I get needing to price more, but it really feels like a slow shift to M&A, when they couple it with license changes and “case by case basis” to make it back to OSS.

I’m not sure why growth at all costs needs to be the business model for every company?… make a great product, if you need to charge more over time cool, but don’t rug pull.

Beijinger 5 hours ago||
I use enpass.io, the free version.

They had/have(?) cybersale recently but did not offer the lifetime version. Otherwise I would have bought it. It is not open-source but it is damn convenient.

economic9725 2 hours ago|
Don't be evil. Always.
More comments...