I store all of my passwords in firefox’s built-in password manager. They auto-fill into websites, sync to my phone, notify me if one appears publicly, and I can generate strong new passwords conveniently. The pw vault is stored encrypted in the cloud as far as I know, but I don’t really know the technical details. I presume that it’s just as secure as using a “proper” manager.

Is there a problem with not using a dedicated password manager? I used to use LastPass but then… I stopped. And at the time I didn’t see anything wrong with just sticking with FF.

Using Firefox is fine right? If so, what’s the benefit of something like BitWarden/etc over the built-in one?

  • Nighed@feddit.uk
    link
    fedilink
    English
    arrow-up
    1
    ·
    2 days ago

    It’s good for some stuff - it means you get strong unique passwords for sites etc.

    BUT

    The fact it auto completes basically means that if someone gets access to your phone/computer while it’s logged in, they can log into anything. (A password is normally required to actually VIEW them? - maybe not on desktop!)

    I use the built in manager for most days to day stuff, but anything financial or non browser based is stored in keepass. It’s a bit annoying, but way more secure that way.