Hacker News new | ask | show | jobs
by Cyan488 27 days ago
You're right, though the friends and family that I would feel the need to recommend a password manager to aren't the type that would self-host their own servers.
1 comments

So what would you recommend to your friends and family that need a password manager? Genuinely curious.

I pay for a service for my family because I need reliable and easy for my wife and daughter to use it.

  - KeePass files synced between laptop and phone on OneDrive, DropBox, etc
  - KeePassXC on Windows and Mac
  - Keepass2Android mobile client
  - Browser integration on mobile. 
  - On laptop, I prefer no browser integration; Copy username and password with Ctrl+B and Ctrl+C
Ctrl+B? Tmux or screen or something like that?
Seconding this. I use KeePassXC on my PC, KeePassDX on Android (available on F-Droid), synced with Syncthing. Works very well.
Slightly off topic, I use KeePassXC on Mac and browser integration almost never works for me. It never picks up the usernames, passwords for me, even if the entry has the url in it.
A small notebook.

Unhackable. Yours forever.

Use words based passwords to make entry easier.

Suffers from physical presence security hacks. I argue those are far less frequent than online hacks.

Wouldn’t recommend for people who are comfortable with Password managers.

It is super easy to explain to people how to use it. And some security is better than none.

Extremely hackable on travel.
Shoot. I didn’t think of the TSA.

And wow… just even the cops.

I am more worried about “lawful” “government” “agencies” stealing my crap than actual criminals. And that makes me sad.

I've paid for and recommended Bitwarden. For years it's operated along a stable trajectory. I was confident in its security record. Vaultwarden is an escape hatch I'm in a position to set up for my family as a last resort. Almost any reputable password manager is more secure than reusing the same passwords or storing everything in a note file.

What I stopped doing so frequently could be described as "evangelizing" or "endorsing". I no longer actively tell people that I think they should use X, instead, if someone asks, I say "I use X, and it's worked for me so far".