this post was submitted on 15 Jun 2023
198 points (100.0% liked)

Privacy Guides

18894 readers
34 users here now

In the digital age, protecting your personal information might seem like an impossible task. We’re here to help.

This is a community for sharing news about privacy, posting information about cool privacy tools and services, and getting advice about your privacy journey.


You can subscribe to this community from any Kbin or Lemmy instance:

Learn more...


Check out our website at privacyguides.org before asking your questions here. We've tried answering the common questions and recommendations there!

Want to get involved? The website is open-source on GitHub, and your help would be appreciated!


This community is the "official" Privacy Guides community on Lemmy, which can be verified here. Other "Privacy Guides" communities on other Lemmy servers are not moderated by this team or associated with the website.


Moderation Rules:

  1. We prefer posting about open-source software whenever possible.
  2. This is not the place for self-promotion if you are not listed on privacyguides.org. If you want to be listed, make a suggestion on our forum first.
  3. No soliciting engagement: Don't ask for upvotes, follows, etc.
  4. Surveys, Fundraising, and Petitions must be pre-approved by the mod team.
  5. Be civil, no violence, hate speech. Assume people here are posting in good faith.
  6. Don't repost topics which have already been covered here.
  7. News posts must be related to privacy and security, and your post title must match the article headline exactly. Do not editorialize titles, you can post your opinions in the post body or a comment.
  8. Memes/images/video posts that could be summarized as text explanations should not be posted. Infographics and conference talks from reputable sources are acceptable.
  9. No help vampires: This is not a tech support subreddit, don't abuse our community's willingness to help. Questions related to privacy, security or privacy/security related software and their configurations are acceptable.
  10. No misinformation: Extraordinary claims must be matched with evidence.
  11. Do not post about VPNs or cryptocurrencies which are not listed on privacyguides.org. See Rule 2 for info on adding new recommendations to the website.
  12. General guides or software lists are not permitted. Original sources and research about specific topics are allowed as long as they are high quality and factual. We are not providing a platform for poorly-vetted, out-of-date or conflicting recommendations.

Additional Resources:

founded 2 years ago
MODERATORS
 

I'm using KeePass currently, since I don't really want to use anything publicly hosted. But I was curious to see what other people have been using!

(page 3) 50 comments
sorted by: hot top controversial new old
[–] Senseless@feddit.de 5 points 2 years ago (4 children)

I used KeepassXC and Keepass2Android but the implementation seems a bit janky at times and the need to sync it manually or let it sync via a cloud is not all that comfortable.

I switched to Bitwarden about a month ago and consider it still as a test phase for now. I'm not that happy with just having my passwords lying around on a random cloud server.

[–] kugiyasan@lemmy.one 4 points 2 years ago (1 children)

You can always self host your bitwarden instance if you want.

For me, bitwarden is a good middle ground, it's super easy to setup, works super well on desktop and android, and it's still way better than using the same 8 character password everywhere. I think it's easier to recommend as a starter to anyone that's not using a password manager.

load more comments (1 replies)
load more comments (3 replies)
[–] Docward@midwest.social 5 points 2 years ago

Self hosted vaultwarden for personal use and pass at work.

[–] bdonvr@thelemmy.club 5 points 2 years ago

Selfhosting Vaultwarden (Bitwarden)

[–] lp0101@lemmy.world 5 points 2 years ago

KeepassXC with syncthing

[–] alcasa@lemmy.sdf.org 5 points 2 years ago (1 children)

KeepassXC on desktop and Strongbox on mobile. Syncing works through any cloud provider of choice

load more comments (1 replies)
[–] malthas@kbin.social 5 points 2 years ago (3 children)

1Password because we’re an Apple household (aside from my work laptop, and even then it’s easy enough to use through the web interface). The main thing that irks me about it is that they keep offering discounts for new subscribers but longtime users have to keep paying the full price. But I’ve been considering switching to Proton for email, and they’re in the process of rolling out a password manager that seems similar so I may be switching to that sooner rather than later.

[–] QHC@kbin.social 3 points 2 years ago

Another very happy 1Password user here!

I switched my workplace to 1Password and I moved from Dashlane at the same time. One thing that's nice about 1P from that perspective is that our plan gives everyone a free personal account that they could take with them if they left the company (they'd have to pay for it themselves at that point of course).

Usability is the best of any password manager I've used, but the killer feature for us as a development team was the flexibility. Being able to assign the same credentials to multiple URLs (e.g. dev, stage, QA, prod) was just not possible with everything else we looked at the time.

load more comments (2 replies)
[–] SevFTW@feddit.de 5 points 2 years ago

+1 1Password (coming from LastPass) this manager is really great. Good mobile, desktop and browser support.

[–] Oitea@kbin.social 5 points 2 years ago (1 children)

I just use hunter2 as my password literally everywhere. Otherwise it's easy to forget if you use more than one. I also use Bitwarden to manage all those passwords. It's really easy cuz you only need to type "hunter2" only once when you log in. After that you can just click it.

load more comments (1 replies)
[–] millions@readit.buzz 5 points 2 years ago

I used to use Dashlane but when I found out bitwarden was free I just started using that

[–] argentcorvid@midwest.social 5 points 2 years ago

I've been using KeePass and KeePassdroid for at least 10 years now. "Sync" my dB through one drive, only because at one time we were allowed to use our personal one at work, but since they blocked personal folders in favor of corporate ones it is much less handy.

[–] bouncing@partizle.com 5 points 2 years ago

Keepass and Strongbox.

I don’t like the honeypot that is anything too centralized, even if it is e2e encrypted. I’d be worried about exploits or compromised client payloads.

[–] tables@kbin.social 4 points 2 years ago

Another happy KeepassXC user here! Keepass2android on Android. I keep the passwords synced with nextcloud

[–] Quereller@kbin.social 4 points 2 years ago

KeepassXC and Keepass2Android

[–] Brzz@kbin.social 4 points 2 years ago

1Password. Wasn't thrilled with their move to electron, but it hasn't been as bad as I feared, and they've earned my trust at this point

Doesn't hurt that my work now uses it, so I get the family plan for free either

[–] duncesplayed@lemmy.one 4 points 2 years ago (4 children)

I rolled my own, actually. I don't store any passwords (even encrypted). Instead, I just append the site name to my base password (which is in my head), hash it, and base-52 it. (I also start each password with the same uppercase letter, lowercase letter, punctuation mark, just to ensure it gets past any bullshit filters)

I like that there's nothing that can be leaked (except what's in my head) and nothing to be lost and nothing to back up.

[–] livixPmfOQRj@burggit.moe 4 points 2 years ago (1 children)

That's ingenious.

Can you elaborate on a detail for me?

I understood everything up to "base-52 it."

I understand how converting base-10 to base-52 works, but that doesn't include alphabetical characters. What are you converting from? Are you numbering A=1, B=2, C=3...?

[–] duncesplayed@lemmy.one 3 points 2 years ago

Sorry I just realized I should have said base 62. That's all the letters and numbers, plus digits, too.

The hashing step gives you a binary sequence, so you're actually converting from base 2, not from base 10. You treat the result of the hash as a giant binary integer and then repeatedly divide by 62, keeping track of the remainder. 0 = 0, 1 = 1, ..., 9 = 9, 10 = a, 11 = b, ..., 36 = z, 37 = A, 38 = B ..., 61 = Z

load more comments (3 replies)
[–] Evolone@kbin.social 4 points 2 years ago

1Password is a genuine life saver.

[–] wagesj45@kbin.social 4 points 2 years ago (1 children)

Dashlane here. I self host a lot and could definitely use Keypass or something locally, but the risk of losing all your passwords if I fuck something up was too great. I'll pay professionals.

load more comments (1 replies)
[–] Fermiverse@kbin.social 4 points 2 years ago (2 children)

Enpass, no puplic hosting. Clients in phone and PC. You can use your own services if you want to upload or keep it in a folder on the phone.

load more comments (2 replies)
[–] mlaga97@lemmy.mlaga97.space 4 points 2 years ago (1 children)

I used to use KeePass, but switched to https://www.passwordstore.org with a YubiKey after discovering how janky the KeePass 2FA system is designed a while back.

load more comments (1 replies)
[–] glish@localghost.org 4 points 2 years ago

KeePassXC and Keepass2Android auto-synced with my Nextcloud instance. Works great cross-platform for Linux/Windows/Android.

I know what you mean, trusting a SaaS provider with my master password list always felt like a bad plan.

[–] thanksbrother@kbin.social 4 points 2 years ago

Another vote for Bitwarden. Works on everything I use!

[–] pound_heap@lemm.ee 4 points 2 years ago* (last edited 2 years ago) (1 children)

My approach is a bit more complicated than of many commenters here: I use both Keepass and Bitwarden.

Bitawarden is for most of the passwords, and I use it to share some passwords with family.

Keepass is for the most sensitive stuff - online banking and emails. Also, I use it for non-web apps. Keepass DB is synced with Syncthing between desktop and mobile.

TOTP is handled by Aegis android app. I was thinking to move it to Keepass, but I really like interface of a dedicated app. And it's data automatically backed up to Nextcloud

load more comments (1 replies)
[–] 34@kbin.social 4 points 2 years ago (1 children)

I use 1password, I used KeePass for years but it didn't work will on Android so I moved on.

[–] grilledsausage@kbin.social 4 points 2 years ago

Also using 1Password, works great for what my family needs.

[–] thesanewriter@vlemmy.net 4 points 2 years ago

For work I use 1Password, for at home I use Bitwarden.

[–] Kranerian@kbin.social 4 points 2 years ago

Bitwarden all the way

[–] HeartyBeast@kbin.social 4 points 2 years ago (6 children)

I’m entirely in the Apple ecosystem, so I use the built in Keychain, synced across devices through iCloud.

It would be Bitwarden otherwise.

load more comments (6 replies)
[–] MargotRobbie@lemmy.world 3 points 2 years ago

Keepass on OneDrive, so I can access it from my computer and phone.

[–] Zana@kbin.social 3 points 2 years ago

Bitwarden enjoyer here

[–] Scio@kbin.social 3 points 2 years ago

Bitwarden here too

[–] 73kk13@discuss.tchncs.de 3 points 2 years ago* (last edited 2 years ago)

Vaultwarden for work, KeePass and KeePassDroid for private use.

load more comments
view more: ‹ prev next ›