Hacker News new | ask | show | jobs
by pcx 2779 days ago
I used Lastpass for about 5 years and moved to bitwarden a couple of years back. I never had to turn back again. The browser addons are great, but the mobile app is fantastic, simple, usable and lightweight. It's great to hear that it's pretty secure too.
2 comments

From your experiences is there any downside or drawbacks with switching? I've been considering it, particularly as Lastpass's Firefox app has been flakey and unreliable.

In general Lastpass has become less reliable since the LogMeIn take-over, and they've now added ads to the vault which bug me from a security perspective (even if I happily pay $2/month, it is the principle of putting profits over security).

I'm a former last pass user as well. I made the switch about a year ago, and haven't really looked back.

That being said, there are a few things that annoy me about bitwarden.

For some sites or apps in iOS, you can launch a password manager to retrieve your credentials. This sometimes but does not always have bitwarden available.

Sometimes when launching bitwarden from an app, it will only show you the logins associated with the URI for your current page. But if you're launching it from an app you can't search for the right login.

These are small issues, which I usually mitigate by just launching a full on session of the app and copying the password.

I had to break a habit (I guess I picked it up from last pass) with the extensions as well. If you click away from the extension box, it will lose your context, and you can't restore it. I have had to restart filling out the credentials more than once because I didn't click save. Also, I think it takes too many clicks to create a new login with a generated password and save it.

Overall, these issues are minor for a good free product, and I would recommend it. I use bitwarden on FF, Chrome, and iOS, for context.

> I think it takes too many clicks to create a new login

As a very happy BW user, this is probably its weakest point at the moment. It improves a bit if you click the "do you want Bitwarden to save these credentials" banner, but still suboptimal (the captured URL is unnecessarily precise).

I don't think they can solve this problem though, unless they get a sidebar - which may not be possible with WebExtensions (I honestly can't recall).

> Sometimes when launching bitwarden from an app, it will only show you the logins associated with the URI for your current page. But if you're launching it from an app you can't search for the right login.

This changed with the recent release of iOS 12 autofill in Bitwarden. If there is no credential found based on the app/website address you have the ability to search the vault for it.

Another LastPass user of ~5 years. I was actually dreading the switch, just because of the amount of time I had spent using it (mostly always Premium). That and I have a workflow within the family for sharing, etc.

I planned on a week long switch over to make sure things went smooth. However after switching, and validating all common accounts has been imported correctly I just never had to open LastPass again. This took all of 2 hours.

BitWarden has the upper hand in three key areas for me: Android, FireFox and CLI. The LastPass extension for FireFox has become downright useless and that was the main catalyst for me switching.

I've switched now about a month ago and can't imagine going back. It just works like you'd expect in most situations. I'm fighting it less than LastPass and my store of passwords is all cleaned up and far more sanitary. LastPass lets you make a mess far easier, so a nice side effect of BitWarden is that the structure is more prescriptive but I've been yet to bump into an area where it's blocked me from doing what I need.

Highly recommend BitWarden if you're fed up with LastPass and FireFox.

I know this is highly specific, but it's something I've struggled to find a good answer for.

Do you use Android 8+ with Firefox release and the BitWarden app?

I'm on Android 8.1, Firefox Release, and I haven't been able to get the BitWarden to pop up toast notifications and autofill in Firefox. (This does seem to work with Nightly, but that has crashed too often for me to use it regularly.)

Was there an import/export process you used to transfer your existing safe?
I don't have ads in my vault. Are you a premium user?
Great browser addon? The one I'm using (the official one) could definitely use some improvements in UX and security

- when I open it my master password is prefilled and you can just unmask it - either don't prefill it and have me enter it or log me in immediately

- when creating new credentials it defaults to master password again that you can just unmask. And the URL is empty instead of the current URL

- everytime: I open a site in bitwarden, copy the username, paste in the form field in browser, open bitwarden and it's on the login page again - why can't it remember where I left of so that I could copy the password too?

EDIT: in Firefox

Regarding your first two points, this is a long shot but maybe it will help: I had a very similar problem with LastPass where password fields in the LastPass UI kept being pre-filled with my master password, even in places where there seemingly should never be pre-filled. It turned out that I had accidentally enabled my web browser's autofill/password manager functionality, and every time I visited the LastPass extension's internal URL, my browser was autofilling every password field with the password that my browser saved.

Once I turned off the password manager feature of my browser (I didn't need it anyway since I was using LastPass) it solved the problem.

Hah that did it. I'm sorry for criticizing BitWarden when it was my own fault
Master password is never prefilled on mine. Not to log in to it or to create new credentials. I can't even see that as an option.

You don't happen to have that password set up in your browsers own password management tool do you?

Url for new credentials is always the current one as well.