Password Sharing with Organizations
blog.bitwarden.com
blog.bitwarden.com
I was looking at the FAQ[1] and on a small paragraph they manage to put 3 spelling mistakes. This might be unjustified but I'm less inclined to trust a product with this, even less one that manages sensitive secrets.
> Since your data is fully encrypted and/or hashed before ever leaving your local device, noone from the bitwarden team can ever see, read, or reverse engineer to get to your real data. bitwarden servers only store encypted and hashed data. This is an important step that bitwarden takes to protect you.
> You can read more about how your data is encrypted and trasmitted here.
Many FAQ questions have at least one spelling mistake, and it's not the same every time, so it's not due to a foreign speaker's mistake. "trasmitted", "sensative data", etc.
[1] https://help.bitwarden.com/security/can-bitwarden-see-my-pas...
A real shame, as BitWarden looks like a solid project.
Also, I am not a .NET dev, but if you take a look at the code it's one of the cleaner projects I've seen.
https://discussions.agilebits.com/discussion/2846/new-produc...
At home where it's just me using the passwords across a couple of devices I just use KeePass with the database stored on dropbox.
However, I think the main advantage many password managers bring is cross-platform compatibility, specifically all of:
- Windows
- Mac
- Linux
- Android
- iOS
This can be a killer feature (or a blocker) for adoption, and would fall under "convenience" above.
Though I have to say, I haven't trusted password managers which sync online since the beginning. Just doesn't feel right. And the various hacks over the past few years seem to validate that.
Could this sentiment be any less specific?
"Password Sharing with Organizations" or "Password Sharing with Organizations – bitwarden blog"
[1] https://github.com/bitwarden/core/blob/master/LICENSE.txt