検索

返信元:

@[email protected] I personally use KeePassXC and am currently paying more for it (in a recurring monthly donation) than the family plan of #bitwarden would cost, because I also believe I'm coming out ahead for doing so since #KeePassXC very much meets my needs, it's based on an interoperable open standard, hosted and synchronized all on my own devices, and I want it to stay fully #opensource.
返信 0 · Renote 0
For the record, #Bitwarden has never been fully #opensource. They've always been an open core model, despite their marketing to the contrary. https://www.phoronix.com/news/Bitwarden-Open-Source-Concerns

There are several fully open source alternatives if this matters to you.

Bitwarden and Gitlab have both managed to convince a lot of people that their flagship products are fully open source when they are not with some very clever marketing.
返信 1 · Renote 0

返信元:

Idea: An #opensource #secrets manager, with a fancy web UI like #Hashicorp #Vault, that can organize secrets by folders and deployment target (dev, staging, prod) and the CLI tool can translate those folders, keys, and values into *structured* YAML or JSON output in addition to environment variables. Additionally, it can *import* secrets into new projects with structure YAML/JSON into the format. Something like this for the data backend: https://github.com/smithjm/etcd-export
返信 3 · Renote 0
@[email protected] what about #Bitwarden? They recently revealed a floss secret manager. Never used it, just the main product: password manager.
返信 1 · Renote 0
I heartily encourage everyone to use a #PasswordManager so they can use unique, secure passwords that you don't have to remember for all your accounts. The only password you need to remember is the Master Password to unlock the vault. In the past, I've recommended #LastPass. But last year they had a very major data breach, where the bad guys got people's vaults. And it looks like LastPass messed up much more. https://infosec.exchange/@epixoip/109585049354200263 Now, I use #1Password, and my friends use #BitWarden, both of which are much more secure. We've changed the passwords on our accounts, and things are secure for us again.

Are your passwords secure? Do you use unique, secure passwords on every website? You should.
返信 2 · Renote 4