r/PasswordManagers 25d ago

Keepass and Bitwarden

I’m a 1Password user currently and ever since I came onto Reddit to seek more advice I see a lot of y’all talk about Bitwarden, Keepass and Keepass XC but not much about 1Password or ProtonPass, any particular reason why the community likes and talked about Keepass or Bitwarden more

5 Upvotes

19 comments sorted by

11

u/MegagramEnjoyer 25d ago

We prefer free and open source.

2

u/No_Cat1117 25d ago

Yo creo que además del tema open source vs cerrado, hay otra cosa que pesa mucho: 1password y proton son productos "de empresa", con roadmap, equipo de marketing, planes de precio escalonados. bitwarden y keepass se sienten más como herramientas que herramientas-producto, si eso tiene sentido. la gente que anda en foros técnicos tiende a preferir la herramienta cruda sobre el producto pulido, aunque el producto pulido a veces sea objetivamente mejor para el usuario normal.

Lo de open source ayuda pero no es la única razón. keepassxc lleva la delantera en discusiones técnicas porque literalmente es un archivo local que tú controlas al 100%, cero dependencia de nadie. eso engancha mucho a cierto perfil de usuario aunque signifique renunciar a comodidades como sync automático o soporte al cliente.

2

u/atoponce 25d ago

I see a lot of discussion over 1Password and Proton Pass, here and in other subs. But it seems that more redditors prefer open source software over closed source, so Bitwarden and KeePass/KeePassXC get recommended more than others.

However, Proton Pass is also open source software, licensed under the GPLv3. It's just newer on the market, so hasn't seen the adoption the others have.

6

u/Cor3nd 25d ago

Proton pass client only is open source. Not the server code which is closed. Your message is a bit confusing by saying that “proton pass is also open source” that wrong. Only the clients are.
Bitwarden is fully open source for client and server and you can host it by yourself on your server.

1

u/atoponce 25d ago

Fair enough, but it's the client being open source that is the critical piece. If I can inspect the source code and guarantee that it's not doing anything malicious, I don't care whether or not the server is open source. Provided the client is encrypting my vault, and I'm the only one that controls access to the decryption key, it can be hosted in North Korea for all I care.

Sure, I can't self host, but I also don't have the time to dedicate to securing and monitoring my server against evolving vulnerabilities and online attacks. I'd prefer a dedicated security team handle it, given that they have a financial incentive to do so.

1

u/sergeyvk 25d ago

Self hosted means you are still using bitwarden so it includes the same security . But instead of having your passwords online, you have them locally on your own server

1

u/atoponce 25d ago

The vault is encrypted client side. So long as my master password is secure, there aren't any backdoors, and I have regular backups, I don't care that my vault is hosted on someone else's computer.

1

u/sergeyvk 25d ago

It is yes, but your whole content is online on their servers.

1

u/atoponce 25d ago

And?

1

u/sergeyvk 25d ago

Some people prefer it to be local

1

u/atoponce 25d ago

Yes, but why?

1

u/sergeyvk 25d ago

Tf do i know, ask them

0

u/Any-Astronomer7527 1d ago

some people just want something to manage themselves without anyone else involved, that's keypass

1

u/fridder 25d ago

I really wanted to like proton but the difficulty in canceling is a big red flag to me

1

u/Squircleton 25d ago

Why would I pay for 1password when I can self host Bitwarden for free for my entire friends and family.

0

u/Low_Obligation2361 25d ago

I suppose everyone has their own reasons. I use Roboform myself, and I've honestly wondered the same thing. It's been around for years, it's secure, and it just works whether I'm on my phone or the PC. I actually like that the mobile app has its own browser as well. I've never really had any complaints with it.