GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    Hobbs (cmhobbs@pleroma.asn.mobi)'s status on Thursday, 01-Sep-2022 23:37:45 JST Hobbs Hobbs
    • Bitwarden
    Anyone have experience self hosting @bitwarden in a secure manner that's accessible for "normal" people? I really need a shared password manager for my family and passing around keepassxc files just doesn't cut it, especially because they use phones more than traditional computers. Making them all use VPNs is certainly out of the question.

    I have severe anxiety about putting all my passwords and OTP up in the cloud. I have hundreds of entries in keepassxc. That'd take days to rotate everything and even then I think some can't be saved.

    Perhaps a smoother solution is to just keep using keepassxc and then figure out something with bitwarden where only the shared and lower risk passwords are stored there?

    Advice and boosts appreciated.
    In conversation Thursday, 01-Sep-2022 23:37:45 JST from pleroma.asn.mobi permalink
    • Embed this notice
      Bitwarden (bitwarden@fosstodon.org)'s status on Thursday, 01-Sep-2022 23:37:35 JST Bitwarden Bitwarden
      in reply to
      • Thorwegian ❄️

      @thor @cmhobbs If it helps, we also partner with security researchers at HackerOne as part of a bug bounty program, and undergo regular third party audits.

      In conversation Thursday, 01-Sep-2022 23:37:35 JST permalink
    • Embed this notice
      Thorwegian ❄️ (thor@berserker.town)'s status on Thursday, 01-Sep-2022 23:37:36 JST Thorwegian ❄️ Thorwegian ❄️
      in reply to
      • Bitwarden

      @bitwarden @cmhobbs i wish i personally knew a person who actually went and checked through the source code of BitWarden. also, i am running binaries downloaded off the Chrome store. i was not able to inspect the source code. you have to take a lot of things on faith unless you go through a hell of a lot of work.

      In conversation Thursday, 01-Sep-2022 23:37:36 JST permalink
      PublicLewdness repeated this.
    • Embed this notice
      Bitwarden (bitwarden@fosstodon.org)'s status on Thursday, 01-Sep-2022 23:37:38 JST Bitwarden Bitwarden
      in reply to
      • Thorwegian ❄️

      @cmhobbs @thor To see what the Bitwarden team does to keep your information secure, check out https://bitwarden.com/tips/#can-anyone-insert-code-into-the-bitwarden-codebase

      In conversation Thursday, 01-Sep-2022 23:37:38 JST permalink

      Attachments

      1. Domain not in remote thumbnail source whitelist: bitwarden.com
        Bitwarden Tips | Bitwarden
        Bitwarden is an integrated open source password management solution for individuals, teams, and business organizations
    • Embed this notice
      Hobbs (cmhobbs@pleroma.asn.mobi)'s status on Thursday, 01-Sep-2022 23:37:43 JST Hobbs Hobbs
      in reply to
      • Thorwegian ❄️
      • Bitwarden
      @thor @bitwarden great point, thanks!
      In conversation Thursday, 01-Sep-2022 23:37:43 JST permalink
    • Embed this notice
      Thorwegian ❄️ (thor@berserker.town)'s status on Thursday, 01-Sep-2022 23:37:44 JST Thorwegian ❄️ Thorwegian ❄️
      in reply to
      • Bitwarden

      @cmhobbs @bitwarden well, if you trust their software, and you picked a good master key, the people who run that cloud server couldn't access your passwords even if the tried.

      if you don't trust their software and think it's malicious, using your own server won't help you, since the software could be sending the passwords elsewhere without your knowledge.

      In conversation Thursday, 01-Sep-2022 23:37:44 JST permalink

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.