Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.
Would a Yubico key solve an issue with 1Password, Bitwarden, etc hosting a vault on their servers?
 
What about: https://www.passwordstore.org ?

I'm not trying yet but I like use pure command line programs.


I am not a fan of command line programs especially that I believe most people will use their passwords with a GUI interface like websites, but I also know that some people live in the terminal so thats probably a great choice for them.

great and different suggestion! Albeit I do not use/trust random scripts/apps from the internet especially 1-man efforts. I try to look for something that has a huge community behind that way I know there will be sustainability and the code is reliable
 
Not that I am aware.

Pardon my ignorance, but what exactly is the issue with Bitwarden hosting the vault? My understanding is that it's encrypted on my device prior to sending it to any hosting server. It seems that a potential issue might arise during a login authentication, which is where an extra layer of security is provided by a Yubico key.

What am I missing?

Appreciate your help.
 
Pardon my ignorance, but what exactly is the issue with Bitwarden hosting the vault? My understanding is that it's encrypted on my device prior to sending it to any hosting server. It seems that a potential issue might arise during a login authentication, which is where an extra layer of security is provided by a Yubico key.

What am I missing?

Appreciate your help.

See the aforementioned 3rd party issues in relation to subpoenas and warrants in relation to the 4th Amendment and relevant laws in other countries, if they will indeed wipe your data should you request that they delete it, what they will do with your data should BitWarden cease operations, etc., already mentioned numerous times in this thread.

That isn’t just an issue for BitWarden, but for every SaaS entity.

BL.
 
New contender (cloud based one) , I stumbled upon this one:-

If any one brave enough to use it or have past experience would like to hear his opinion on it
 
@MisterSavage how do you feel about Bitwarden's autofill? I am using Enpass and its doing a lot of dumb actions like suggesting identities in Credit Card # fields . The app is in the right path it just needs fixing and improvement and I am not sure if I should wait on it or abandon it.
 
@MisterSavage how do you feel about Bitwarden's autofill? I am using Enpass and its doing a lot of dumb actions like suggesting identities in Credit Card # fields . The app is in the right path it just needs fixing and improvement and I am not sure if I should wait on it or abandon it.

I love it. I use it all the time for passwords, my address, and credit card details. The credit card part sometimes doesn't fully work with some sites. They also go over how you can autofill pesky fields that you deal with a lot, such as mileage account numbers.

 
I used Dashlane and I like it can work on different devices. Now I use it as a web app which I can use almost anywhere
 
Has anyone any experience of this http://minimalistpassword.com/
Looks mac orientated, 1Password import feature, buy once pricing.
I've just downloaded and imported 1Password 7 (didn't pay for it yet). It looks pretty darn good, with few notable missing features.
  • No keyboard shortcut, no menubar app.
  • On the Mac, categories are dropdown-based. I prefer the sidebar.
  • True to its name, the UI is very minimalist. No website icons.
  • No multiple vaults.
 
I love it. I use it all the time for passwords, my address, and credit card details. The credit card part sometimes doesn't fully work with some sites. They also go over how you can autofill pesky fields that you deal with a lot, such as mileage account numbers.


Thank you. I am thinking of switching, Enpass is like the perfect 1password alternative but it has pesky issues and bugs and the team behind it seems small and biting more than they can chew. Its not "polished" .

How did Bitwarden import 1password? Enpass imported flawlessly it even imported the password history which saved me at one point!

I used Dashlane and I like it can work on different devices. Now I use it as a web app which I can use almost anywhere

Dashlane has the same issues we are trying to avoid with 1password which is subscription service and cloud storage. But its good to have multiple competitors alive instead of everyone using the same service.

Has anyone any experience of this http://minimalistpassword.com/
Looks mac orientated, 1Password import feature, buy once pricing.

previously some people here mentioned they liked it and works well but personally I do not like to rely on more obscure software with 1 developer behind it. The choice is yours.
 
I dropped usage of a third party password manager for iCloud Keychain.. now it's become something I don't think about. nothing to install on new devices, etc.
 
How did Bitwarden import 1password? Enpass imported flawlessly it even imported the password history which saved me at one point!

To be honest, it was a mixed bag. Standard stuff such as userid/passwords generally imported just fine. I had a lot of "categories", such as software licenses, wireless routers, etc and that was a mess I needed to clean up because BW doesn't have those yet.

I just looked at one of my entries and it appears that my password history was retained and is viewable in BW.

Doing an export/import of my data revealed that 1Password had stored some sensitive data I had entered (parts of SSN, phone numbers, etc) that it stored but did not display. I was not happy about that and was glad I was deleting it in my BW vault.
 
  • Like
Reactions: MacBH928
I dropped usage of a third party password manager for iCloud Keychain.. now it's become something I don't think about. nothing to install on new devices, etc.

Until one needs to have access to their passwords and other credentials that are not on another Mac or iDevice. Then they are stuck.

BL.
 
  • Like
Reactions: max2 and MacBH928
@MisterSavage

I have followed the tutorial you mentioned and I have successfully filled a custom form! As a more experienced Bitwarden user I have a few questions if you do not mind

1-How do I disable Bitwarden alerts and notifications about user logins from new devices and other alerts?

2-Is there a mini-assistant that I can use similar to 1password? that is always useful for me to call on the app and retrieve information I need outside the browser.

3-Is there a way to enable a list to choose from if I have multiple accounts on the same site? Currently Bitwarden choose the top one and autofills it but Enpass and 1password gives you a drop down menu to choose which user you want to login with.

4-If I lose internet connection will I be able to retain the info my device or do I have to be online to access the data? I am assuming I will have access to a local backup

I was upset to know that I could not use the " \ " as my shotcut , even cmd+shift+\ won't work. Thats the autofill shortcut engrained in my head. I have to adapt for cmd+shift+L
 
@MisterSavage
1-How do I disable Bitwarden alerts and notifications about user logins from new devices and other alerts?
I've never looked into doing that because I consider them a huge benefit. I don't see them in day-to-do usage after everything is set up and I'll know if someone new logged in with my credentials.

2-Is there a mini-assistant that I can use similar to 1password? that is always useful for me to call on the app and retrieve information I need outside the browser.

I don't think so. I think you'd need to launch the desktop client where unfortunately you'd have to enter your master pw again.
3-Is there a way to enable a list to choose from if I have multiple accounts on the same site? Currently Bitwarden choose the top one and autofills it but Enpass and 1password gives you a drop down menu to choose which user you want to login with.

If it didn't autofill the right one you can enter the keyboard shortcut again and it will autofill the next match for that site. You could also click on the browser extension and it will show you the choices for that site you can choose from.
4-If I lose internet connection will I be able to retain the info my device or do I have to be online to access the data? I am assuming I will have access to a local backup

If you've unlocked your vault you can use it offline but can't edit it until you're online.


I was upset to know that I could not use the " \ " as my shotcut , even cmd+shift+\ won't work.

Oh I remember. :)
 
  • Like
Reactions: MacBH928
I've never looked into doing that because I consider them a huge benefit. I don't see them in day-to-do usage after everything is set up and I'll know if someone new logged in with my credentials.



I don't think so. I think you'd need to launch the desktop client where unfortunately you'd have to enter your master pw again.


If it didn't autofill the right one you can enter the keyboard shortcut again and it will autofill the next match for that site. You could also click on the browser extension and it will show you the choices for that site you can choose from.


If you've unlocked your vault you can use it offline but can't edit it until you're online.




Oh I remember. :)

thanks nice tip on the multiple logins

first comment, lol :
 

Attachments

  • fffs.jpg
    fffs.jpg
    268.9 KB · Views: 135
Last edited:
  • Like
Reactions: max2
thanks nice tip on the multiple logins
np. what's nice if that you hit the keyboard shortcut a second time to go to the next entry it will put the TOTP code for that second entry in your buffer so that you can paste it if you're prompted for 2FA. You have to have premium to be able to generate TOTP codes.
 
  • Like
Reactions: MacBH928 and max2
Just found this thread. Read quite a lot of it, but not found a simple answer to what I am looking for:

Which alternative Password managers will import reliably from a 1Password 8 exported 1PUX file?

At the moment I am OK with everything about 1Password 8, but I don't want to feel that I am locked in for ever. I want to keep a regular 1PUX exported file (in an encrypted dmg) that would enable me to switch at any time.

I don't have special requirements about local vs cloud, sub vs OTP, etc, just want to know what my options are for switching.

Thanks
 
  • Like
Reactions: max2
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.