what do people expect? all the wrong management are attracted to security products for exactly the reasons you suspected all along.. Lock-in is profits!
what do people expect? all the wrong management are attracted to security products for exactly the reasons you suspected all along.. Lock-in is profits!
- Everything is open source - You get to self host - You get to export your database at any time - You don't even need to pay to use it if you don't want to
Are local password managers objectively more secure and reliable? Yes. Does that mean that Bitwarden is just an awful product by a money seething corporation that wants to lock you into their product and dime you till your last cent? Not so sure about that.
> With respect to the server software available under the Bitwarden License, production use requires a separate commercial agreement with Bitwarden
> The right to use the software in a production environment, or environments directly supporting production, requires a paid Bitwarden subscription
> The Bitwarden License does not qualify as an open source license under the OSI definition
[0]: https://github.com/bitwarden/server/blob/master/LICENSE_FAQ.... (permalink → https://github.com/bitwarden/server/blob/f848eb247767fbba8a4...)
Also Bitwarden's software has multiple licenses, one of them being AGPL for the server and one of them being GPL for the client. The part of the code that's under the Bitwarden license which you have to pay for is SSO, SCIM and I think FIDO2 authentication as they use some Azure tools for all of these and as such they can't run on premises
Quoting from their license FAQ [1]:
> "In your GitHub repositories, how can I determine what license applies to a given software program?"
> "Each Bitwarden repository contains a LICENSE.txt file that spells out which license applies to the code in that repository."
> "In the case of the Bitwarden server repository, the files are organized into various directories. These directories are not only used for logical code organization, but also to clearly distinguish the license that a given source file falls under. All source files under the /bitwarden_license directory at the root of the server repository are subject to the Bitwarden License. If a file is not organized under the /bitwarden_license directory, the AGPL 3.0 license applies."
Vaultwarden offers those for free if you so wish, but there are no restrictions to self hosting Bitwarden.
[0]: https://github.com/dani-garcia/vaultwarden
[1]: https://github.com/bitwarden/server/blob/master/LICENSE_FAQ....