this post was submitted on 27 Mar 2026
288 points (96.5% liked)
Technology
83126 readers
3682 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related news or articles.
- Be excellent to each other!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
- Check for duplicates before posting, duplicates may be removed
- Accounts 7 days and younger will have their posts automatically removed.
Approved Bots
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
I can't think of a reason to choose Keepass over Vaultwarden.
If you can't selfhost, then you can have your keepass file in your personal cloud. Many basic cloud services are free and the password file itself is encrypted so the cloud provider can't access your passwords.
Yeah this is true. FolderSync for cloud and Syncthing for p2p should work nicely.
(Edit - I misread as Bitwarden and went off on the wrong tangent. Vaultwarden is not centralized, and it's FOSS - my bad.)
~~The person you're replying to already gave you one: it's free.~~
~~Second: its not a prime target for attack like centralized, hosted webservices are. See: LastPass being cracked and people's login data stolen.. Twice.~~
~~Yes, it is cryptographically superior to LastPass, and attempts to design around their flaws - but the threat still exists because its a very tasty target on the open internet for cybercrime.~~
~~My little Keepass DB synched over personal VPN by Syncthing? Much harder to find a vector for attack. But it does require more moving parts and maintenance.~~
~~Each have their pros and cons.~~
I think you misread. Lastweakness was talking about Vaultwarden which is a 100% FOSS reimplementation of bitwarden that you self host.
Yeah i totally did. My bad.
🫠
Vaultwarden is open source: https://github.com/dani-garcia/vaultwarden
Every pro you listed is applicable to Vaultwarden as well. But I assume you misread it as Bitwarden.
Ah yes, I absolutely did.
My bad.
Vaultwarden, self-hosted is free as well. And since it's not using the Bitwarden infrastructure, you're only as exposed as your own network anyway.
But you can still use all the standard Bitwarden apps and extensions on any device, you just need to point it at your server. Easy to set up for friends and family as well. No need to try and teach them about VPNs, setting up syncthing, etc.
Thanks, I appreciate the clarification. I misread as Bitwarden.
Vaultwarden sounds like it resolves any concerns had about Bitwarden.
I can.
I realise now that I can think of one too. Which is that you don't need to host it anywhere if you use something like Syncthing.
Also available offline, all the time in your hands.
Bitwarden works offline. Obviously can't save to the server, but reading from what's already on your local machine works just fine.
Isn't it easier then just to use a (keepass) file? Also we carry phones around where we need secrets, too etc.
I use keepassXC for work and I only use it on one machine at a time. I don't have any experience syncing it around to multiple devices, so you might have a better perspective than I do on that.
For personal use, I self host vaultwarden and use it on my desktop and Android phone. I'm able to use the bitwarden app just fine on my phone, even when I turn on airplane mode and am unable to sync.
I set up a simple sync service with FolderSync (similar to Syncthing) on Android for my family, that preserves their mobile files on a server hosted SMB share. Haven't even looked at storage encryption though. You can't underestimate a simple yet effective solution, sometimes so simple it flies under the radar.
I can’t think of a reason to choose Bit/Vaultwarden over Keepass.
Web interface, no client software required. I can fire up a brand new machine and access my DB without installing anything.
Shared passwords
Easy to do on Keepass
Not really and not nearly at the same level
Yes and more easily
Lol, no.
The mess of databases you would need to replicate what is simple with organizations and collections is definitely not easier or more flexible.
lol yes
It’s just one database file