TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Ask HN: Alternatives to Bitwarden?

41 pointsby rossng7 months ago
I&#x27;ve been using (and paying for) Bitwarden for years now, but it appears they have recently chosen to abandon open source[1].<p>I&#x27;m not all too happy with having the rug pulled from under me. Is there an alternative that you would recommend? Preferably something that is open source, audited and has an Android client. Happy to pay a reasonable subscription.<p>[1] https:&#x2F;&#x2F;github.com&#x2F;bitwarden&#x2F;clients&#x2F;issues&#x2F;11611

15 comments

snapsnail7 months ago
Is this really that dire? Comment from the GitHub issue:<p>&quot;Thanks for sharing your concerns here. We have been progressing use of our SDK in more use cases for our clients. However, our goal is to make sure that the SDK is used in a way that maintains GPL compatibility.<p>the SDK and the client are two separate programs<p>code for each program is in separate repositories<p>the fact that the two programs communicate using standard protocols does not mean they are one program for purposes of GPLv3<p>Being able to build the app as you are trying to do here is an issue we plan to resolve and is merely a bug.&quot;
JAM19717 months ago
Isn&#x27;t VaultWarden what you want?<p><a href="https:&#x2F;&#x2F;github.com&#x2F;dani-garcia&#x2F;vaultwarden">https:&#x2F;&#x2F;github.com&#x2F;dani-garcia&#x2F;vaultwarden</a>
评论 #41906889 未加载
评论 #41906876 未加载
AntonyGarand7 months ago
Per their response to this issue, seems like this is a bug: While they do have some non-FOSS code in their `sdk` package, the client should still be buildable without the SDK:<p>&gt; Hi @brjsp, &gt; Thanks for sharing your concerns here. We have been progressing use of our SDK in more use cases for our clients. However, our goal is to make sure that the SDK is used in a way that maintains GPL compatibility. &gt; &gt; &gt; the SDK and the client are two separate programs &gt; code for each program is in separate repositories &gt; the fact that the two programs communicate using standard protocols does not mean they are one program for purposes of GPLv3 &gt; Being able to build the app as you are trying to do here is an issue we plan to resolve and is merely a bug.
评论 #41906986 未加载
gigatexal7 months ago
I drink enough of the foss koolaid to earn my community card but I’m also a nearly 40-year old realist. I just put everything in 1Password and pay them and forget about it.<p>If they do something heinous I’ll move to something else but this is not something I want to mess with.
评论 #41907785 未加载
politelemon7 months ago
I would not recommend a password manager with a cloud component dependency, that is the means by which the proverbial rugs are pulled. It&#x27;s important to be in control of the vault yourself. Any keepass variant should do such as keepass2 and keepassxc.
solardev7 months ago
Not FOSS at all, but I&#x27;ve used 1password for years and love it. It&#x27;s one of the few pieces of software that just works across my devices (Mac&#x2F;iPad&#x2F;Android phone), cloud sync is awesome, and built-in support for cloud-synced 2FA and Passkeys means I never have to worry about replacing devices.<p>I pay for a family plan and share it with family members. It&#x27;s really wonderful and something I never have to worry about.<p>It&#x27;s not the kind of thing worth wasting time self-building and hosting, IMO, especially the cloud component. I don&#x27;t want to keep up with all the latest exploits and zero-days; much rather have a commercial company taking care of it with a vested interest in keeping your data safe.<p>There are FOSS things like Keepass XC. But the overall experience just sucks compared to 1password.
ww5207 months ago
Use KeePass and its variants, for storing the encrypted data in a local file. Use any of the file sync products to sync the file across devices, e.g. Dropbox, Syncthing, etc.
评论 #41908905 未加载
评论 #41908046 未加载
jsvcycling7 months ago
I&#x27;ll likely be migrating over to Proton Pass[1] since I already have a Proton Mail subscription anyway. Seems like it meets all your criteria depending on what you consider to be a reasonable cost for a subscription.<p>[1] <a href="https:&#x2F;&#x2F;proton.me&#x2F;pass" rel="nofollow">https:&#x2F;&#x2F;proton.me&#x2F;pass</a>
评论 #41906957 未加载
gmuslera7 months ago
Don&#x27;t look forward but look back. A secure open format with many possible open source frontends (like keepass&#x2F;keepassx&#x2F;keepassxc) and maybe cloud sync.
283042834092347 months ago
Not open source, but a non-profit foundation guarding it: <a href="https:&#x2F;&#x2F;proton.me&#x2F;pass" rel="nofollow">https:&#x2F;&#x2F;proton.me&#x2F;pass</a> edit: Is open source actually: <a href="https:&#x2F;&#x2F;github.com&#x2F;protonpass&#x2F;">https:&#x2F;&#x2F;github.com&#x2F;protonpass&#x2F;</a>
teejmya7 months ago
I have been self hosting <a href="https:&#x2F;&#x2F;github.com&#x2F;dani-garcia&#x2F;vaultwarden">https:&#x2F;&#x2F;github.com&#x2F;dani-garcia&#x2F;vaultwarden</a>, it has been good to me.
rspoerri7 months ago
in response to the topic of bitwarden being vc funded i have started to migrate to keypassxc. It works pretty fine, also export &#x2F; import worked good, some minor issues with to strict db-locking policy which i think i managed to fix in the settings. It&#x27;s missing cloud sync, but i do my file sync over syncthing anyway. But i&#x27;m on osx and i havent tested on windows yet.
DrBenCarson7 months ago
Very few open source password managers that have cloud sync and modern clients on popular platforms (I honestly don’t know any that I can recommend)<p>The logic is making things open source can allow attackers to more easily identify vulnerabilities (flawed logic, but there’s some truth to it)<p>I would stick to BitWarden or consider 1Password if I were you<p>I did see <a href="https:&#x2F;&#x2F;passky.org&#x2F;" rel="nofollow">https:&#x2F;&#x2F;passky.org&#x2F;</a> sometime back, might work for you on Android
throwaway773857 months ago
Hmmm, I&#x27;ll be monitoring how this develops. I&#x27;m quite committed to Bitwarden. Let&#x27;s see where this goes.
egamirorrim7 months ago
Enpass is pretty good, store your vault in your own &lt;cloud storage&gt;