I store all of my passwords in firefox’s built-in password manager. They auto-fill into websites, sync to my phone, notify me if one appears publicly, and I can generate strong new passwords conveniently. The pw vault is stored encrypted in the cloud as far as I know, but I don’t really know the technical details. I presume that it’s just as secure as using a “proper” manager.
Is there a problem with not using a dedicated password manager? I used to use LastPass but then… I stopped. And at the time I didn’t see anything wrong with just sticking with FF.
Using Firefox is fine right? If so, what’s the benefit of something like BitWarden/etc over the built-in one?


It’s good for some stuff - it means you get strong unique passwords for sites etc.
BUT
The fact it auto completes basically means that if someone gets access to your phone/computer while it’s logged in, they can log into anything. (A password is normally required to actually VIEW them? - maybe not on desktop!)
I use the built in manager for most days to day stuff, but anything financial or non browser based is stored in keepass. It’s a bit annoying, but way more secure that way.