this post was submitted on 15 Jun 2023
198 points (100.0% liked)

Privacy Guides

17031 readers
217 users here now

In the digital age, protecting your personal information might seem like an impossible task. We’re here to help.

This is a community for sharing news about privacy, posting information about cool privacy tools and services, and getting advice about your privacy journey.


You can subscribe to this community from any Kbin or Lemmy instance:

Learn more...


Check out our website at privacyguides.org before asking your questions here. We've tried answering the common questions and recommendations there!

Want to get involved? The website is open-source on GitHub, and your help would be appreciated!


This community is the "official" Privacy Guides community on Lemmy, which can be verified here. Other "Privacy Guides" communities on other Lemmy servers are not moderated by this team or associated with the website.


Moderation Rules:

  1. We prefer posting about open-source software whenever possible.
  2. This is not the place for self-promotion if you are not listed on privacyguides.org. If you want to be listed, make a suggestion on our forum first.
  3. No soliciting engagement: Don't ask for upvotes, follows, etc.
  4. Surveys, Fundraising, and Petitions must be pre-approved by the mod team.
  5. Be civil, no violence, hate speech. Assume people here are posting in good faith.
  6. Don't repost topics which have already been covered here.
  7. News posts must be related to privacy and security, and your post title must match the article headline exactly. Do not editorialize titles, you can post your opinions in the post body or a comment.
  8. Memes/images/video posts that could be summarized as text explanations should not be posted. Infographics and conference talks from reputable sources are acceptable.
  9. No help vampires: This is not a tech support subreddit, don't abuse our community's willingness to help. Questions related to privacy, security or privacy/security related software and their configurations are acceptable.
  10. No misinformation: Extraordinary claims must be matched with evidence.
  11. Do not post about VPNs or cryptocurrencies which are not listed on privacyguides.org. See Rule 2 for info on adding new recommendations to the website.
  12. General guides or software lists are not permitted. Original sources and research about specific topics are allowed as long as they are high quality and factual. We are not providing a platform for poorly-vetted, out-of-date or conflicting recommendations.

Additional Resources:

founded 2 years ago
MODERATORS
 

I'm using KeePass currently, since I don't really want to use anything publicly hosted. But I was curious to see what other people have been using!

(page 3) 50 comments
sorted by: hot top controversial new old
[–] [email protected] 5 points 2 years ago (4 children)

I used KeepassXC and Keepass2Android but the implementation seems a bit janky at times and the need to sync it manually or let it sync via a cloud is not all that comfortable.

I switched to Bitwarden about a month ago and consider it still as a test phase for now. I'm not that happy with just having my passwords lying around on a random cloud server.

[–] [email protected] 4 points 2 years ago (1 children)

You can always self host your bitwarden instance if you want.

For me, bitwarden is a good middle ground, it's super easy to setup, works super well on desktop and android, and it's still way better than using the same 8 character password everywhere. I think it's easier to recommend as a starter to anyone that's not using a password manager.

load more comments (1 replies)
load more comments (3 replies)
[–] [email protected] 5 points 2 years ago

I've been using KeePass and KeePassdroid for at least 10 years now. "Sync" my dB through one drive, only because at one time we were allowed to use our personal one at work, but since they blocked personal folders in favor of corporate ones it is much less handy.

[–] [email protected] 5 points 2 years ago

Self hosted vaultwarden for personal use and pass at work.

[–] [email protected] 5 points 2 years ago

Selfhosting Vaultwarden (Bitwarden)

[–] [email protected] 5 points 2 years ago

I used to use Dashlane but when I found out bitwarden was free I just started using that

[–] [email protected] 5 points 2 years ago

Keepass and Strongbox.

I don’t like the honeypot that is anything too centralized, even if it is e2e encrypted. I’d be worried about exploits or compromised client payloads.

[–] [email protected] 5 points 2 years ago

KeepassXC with syncthing

[–] [email protected] 5 points 2 years ago (1 children)

KeepassXC on desktop and Strongbox on mobile. Syncing works through any cloud provider of choice

load more comments (1 replies)
[–] [email protected] 5 points 2 years ago (1 children)

Password managers are for suckas, I just use password123 for everything.

load more comments (1 replies)
[–] [email protected] 5 points 2 years ago (1 children)

I just use hunter2 as my password literally everywhere. Otherwise it's easy to forget if you use more than one. I also use Bitwarden to manage all those passwords. It's really easy cuz you only need to type "hunter2" only once when you log in. After that you can just click it.

load more comments (1 replies)
[–] [email protected] 4 points 2 years ago (1 children)

Dashlane here. I self host a lot and could definitely use Keypass or something locally, but the risk of losing all your passwords if I fuck something up was too great. I'll pay professionals.

load more comments (1 replies)
[–] [email protected] 4 points 2 years ago (1 children)

I use 1password, I used KeePass for years but it didn't work will on Android so I moved on.

[–] [email protected] 4 points 2 years ago

Also using 1Password, works great for what my family needs.

[–] [email protected] 4 points 2 years ago

KeepassXC and Keepass2Android

[–] [email protected] 4 points 2 years ago

Bitwarden all the way

[–] [email protected] 4 points 2 years ago

1Password is a genuine life saver.

[–] [email protected] 4 points 2 years ago (1 children)

I used to use KeePass, but switched to https://www.passwordstore.org with a YubiKey after discovering how janky the KeePass 2FA system is designed a while back.

load more comments (1 replies)
[–] [email protected] 4 points 2 years ago (2 children)

I rolled my own, actually. I don't store any passwords (even encrypted). Instead, I just append the site name to my base password (which is in my head), hash it, and base-52 it. (I also start each password with the same uppercase letter, lowercase letter, punctuation mark, just to ensure it gets past any bullshit filters)

I like that there's nothing that can be leaked (except what's in my head) and nothing to be lost and nothing to back up.

[–] [email protected] 5 points 2 years ago* (last edited 2 years ago) (2 children)

Can you please elaborate on each step. I'm not sure on the hash and base52 - do you use a program you're written to do that for you? A simple example would be fantastic.

load more comments (2 replies)
[–] [email protected] 4 points 2 years ago (1 children)

That's ingenious.

Can you elaborate on a detail for me?

I understood everything up to "base-52 it."

I understand how converting base-10 to base-52 works, but that doesn't include alphabetical characters. What are you converting from? Are you numbering A=1, B=2, C=3...?

load more comments (1 replies)
[–] [email protected] 4 points 2 years ago

1Password. Wasn't thrilled with their move to electron, but it hasn't been as bad as I feared, and they've earned my trust at this point

Doesn't hurt that my work now uses it, so I get the family plan for free either

[–] [email protected] 4 points 2 years ago (6 children)

I’m entirely in the Apple ecosystem, so I use the built in Keychain, synced across devices through iCloud.

It would be Bitwarden otherwise.

load more comments (6 replies)
[–] [email protected] 4 points 2 years ago (2 children)

Enpass, no puplic hosting. Clients in phone and PC. You can use your own services if you want to upload or keep it in a folder on the phone.

load more comments (2 replies)
[–] [email protected] 4 points 2 years ago

+1 1Password (coming from LastPass) this manager is really great. Good mobile, desktop and browser support.

[–] [email protected] 4 points 2 years ago* (last edited 2 years ago) (1 children)

My approach is a bit more complicated than of many commenters here: I use both Keepass and Bitwarden.

Bitawarden is for most of the passwords, and I use it to share some passwords with family.

Keepass is for the most sensitive stuff - online banking and emails. Also, I use it for non-web apps. Keepass DB is synced with Syncthing between desktop and mobile.

TOTP is handled by Aegis android app. I was thinking to move it to Keepass, but I really like interface of a dedicated app. And it's data automatically backed up to Nextcloud

load more comments (1 replies)
[–] [email protected] 4 points 2 years ago

For work I use 1Password, for at home I use Bitwarden.

[–] [email protected] 4 points 2 years ago

Another vote for Bitwarden. Works on everything I use!

[–] [email protected] 4 points 2 years ago

Another happy KeepassXC user here! Keepass2android on Android. I keep the passwords synced with nextcloud

[–] [email protected] 4 points 2 years ago

KeePassXC and Keepass2Android auto-synced with my Nextcloud instance. Works great cross-platform for Linux/Windows/Android.

I know what you mean, trusting a SaaS provider with my master password list always felt like a bad plan.

[–] [email protected] 3 points 2 years ago (1 children)

I use OneNote, with a bunch of coded words that mean other things and mix and match those to make longer passwords that are all different. Because I'm too lazy for a real app, and this is secure enough and useful enough.

load more comments (1 replies)
[–] [email protected] 3 points 2 years ago

Bitwarden enjoyer here

[–] [email protected] 3 points 2 years ago

Bitwarden here too

[–] [email protected] 3 points 2 years ago

Bitwarden, easily. You can self host if you want to for added privacy. I don't, but the option is there.

[–] [email protected] 3 points 2 years ago (3 children)

I simply use Google/Chrome

load more comments (3 replies)
load more comments
view more: ‹ prev next ›