I never get this excuse except for ignorance (not being mean to you)—you can export your entire db as a text file then encrypt it if you wanted. Also, if your server goes offline its offline first on all devices
Comment on Bitwarden 100% price increase
guy@piefed.social 14 hours agoWould love to selfhost. However, I have no trust in my skills to secure my device in the same manner as a provider, and I do not wish my database to be compromised.
ComradeMiao@lemmy.world 14 hours ago
guy@piefed.social 14 hours ago
I mean that I don’t have the necessary knowledge to make sure no one can get into my network and server, and having my entire life thus possibly vulnerable is too risky. Heck, I can’t even get Caddy to work properly.
AvocadoSandwich@eviltoast.org 14 hours ago
My view on this is that I also do not trust a company to properly secure something so if it’s going to be a hack job I might as well attempt it myself!
guy@piefed.social 12 hours ago
Understandable! However I’d rather have the provider tell me that they were hacked and my data compromised than me being hacked and never finding out because I have no clue to look 😆
communism@lemmy.ml 12 hours ago
I’ve had my VPS exposed to the internet for a while and never been pwned. No professional experience. Use SSH keys, not password authentication. Use FDE if physical access is in your threat model. Use a firewall to prevent connection on internal-only ports.
Vaultwarden will store your passwords encrypted (obviously) so even if your database does get stolen, the attacker shouldn’t be able to read your passwords without your master password.
grue@lemmy.world 14 hours ago
Then use Keepass, which is literally just a local app.
guy@piefed.social 12 hours ago
I have used KeePass, but Bitwarden is far more convenient when you have different devices