- cross-posted to:
- [email protected]
- [email protected]
- cross-posted to:
- [email protected]
- [email protected]
cross-posted from: https://thelemmy.club/post/57178743
RyanL Bitwarden Employee
Hello everyone!
Starting in the next release, the Bitwarden apps published to the various stores will be the commercially licensed builds. No action is needed, and the apps will work exactly as they do today.
Bitwarden remains committed to open source security and transparency The GPLv3 OSS licensed version continues to be updated and published on GitHub All current features are available in both versions License details are on GitHub Bitwarden remains committed to a robust, free forever plan for everyoneIf you have any questions, please ask them in this thread. Thanks all!
EDIT:
Bitwarden is not going closed-source You can still fork Bitwarden No change to self-hosting, the licensing change affects those who are repackaging and reselling Bitwarden The free plan is here to stay permanently
It just blows my mind how so many comments use the term ‘purchase’ as if this new enshitification step still allowed for the dictionary meaning of the word.
I used to suggest bitwarden to everyone, now it’s basically ‘start using KeePass, keep a copy of your db in a USB drive in your safe, have fun’.
zoo what does this s mean?
Pretty much seen it coming when the new CEO came in and removed the words “Transparency” and “Always Free” from the official marketing.
Anyone got some better alternatives for people to try out?
pass https://www.passwordstore.org/ keepass https://keepass.info/
Never made any sense to me why so many people ran away from these two open source options towards Bitwarden.
Bitwarden has much better enterprise options. KeePass is kind of dinky by comparison; even for a single user you immediately run into the problem “how do I sync my new password to my phone automatically?” Bitwarden was just an app that worked.
That being said ~ I see the writing on the wall, and will be going back to the dinky option. Again. This isn’t the first time I’ve been burnt, but I never seem to learn. Self-hosting seems to be the only sustainable long-term option after all. Hopefully the migration isn’t too painful.
I highly recommend anyone reading this get your export out while they still have a good export tool. First thing companies do in enshitification 101 is make it difficult to leave and trap you via inconvenience.
Whether you believe it or not is another matter, but this very post still includes the words “transparency” and “always free”.
Bitwarden remains committed to open source security and transparency
Bitwarden remains committed to a robust, free forever plan for everyone
and a bonus:
The free plan is here to stay permanently
If you are on Lemmy, theres very high probability that you also have the technical abilities required to self host Vaultwarden and stop relying on a greedy company for your most critical aspect.
Then again, if you can do that, why not just use pass
There seems to be only one Android client, and it’s been archived on Github. I kinda need an android client for a password manager to be usable.
I could but I don’t want. Self hosting something this important? I can’t login to any website without this software, including my email. It’s super critical.
3-2-1 backups guys
Yes because using a different then normies app also means technical skills. In fact, haven’t your PhD diploma came along when you signed up for your Lemmy account?
I have Vaultwarden, it works with the web app and browser extensions. But is there a vaultwarden specific android app? I know technically I can use the Bitwarden app. But sometimes they update the Bitwarden app too fast for all the changes to translate into Vaultwarden and then im kinda forced to use the web app.
The web app is just a minor inconvenience to me so I continue to use it. Just wondering if there is an easier Vaultwarden specific solution for android.
Yeah, keyguard is pretty good
Then we will shit … the enshitification exodus goes on
It’s a business
Fantastic. I’m tired of having to change password managers. DashLane, Keepass, LastPass, etc., they all end up shooting their own foot somehow.
What happened to keepass?
It has become Keep Ass.
Cool quip, doesn’t answer the question
No one’s taking away my favourite bash scrips: https://www.passwordstore.org/
When Bitwarden got a meh “refresh” of the user interface and started vibe coding stuff (I’m not some super hard-line anti-AI person, but dammit, you absolutely should not vibe code security-critical apps), I switched to KeePassX. It was like coming back home! I used to use KeePass and KeePass 2, switched to Bitwarden for a long while, and while it was neat, KeePassX is just neater. (Doesn’t have cloud sync, but syncing the vault files with LocalSend is easy enough.)
I guess you mean KeepassXC, because the last release of KeepassX apparently was in 2016.
KeepassXC is also using AI, they even made a blog post about it a year ago.
https://keepassxc.org/blog/2025-11-09-about-keepassxcs-code-quality-control/
Honestly their description of use and why that use it is not concerning. I’m more concerned with their choice being copilot lol.
Yep, ChiPass is a good replacement: https://codeberg.org/ChiPass/ChiPass
Yup, I was supposed to say KeepassXC. (…I mean I probably considered using KeepassX at some point, it’s XC’s predecessor after all. But as I recall Keepass 2 worked well enough on Mono, so I didn’t need to switch.)
Also, whoopsies on XC’s AI use. At least they don’t seem to embrace it as much as Bitwarden, but still makes me go hmm.
left long ago unfortunately
I think all of us can just using Vaultwarden, it seems to fix all the problems that are there even in the old free version of Bitwarden.
The issue is, the bitwarden app you still use is what is affected by this change.
Only if you are reselling bitwarden. The client apps are still free for personal use.
I have a proton membership anyways so proton pass seems good since they have SimpleLogin

App store EULAs and GPLv3 frequently clash. This change only affects the app store binary releases.
So, 99% of users. Do you use an iOS phone or the browser extensions? You’re affected.
So, 99% of users.
How? It’s not like the source code if no longer under GPL, it’s just that this specific compiled binary is under a different license but it doesn’t change anything for anyone in real life.
How do you install the GPL version on iOS or chrome?
https://developer.chrome.com/docs/extensions/how-to/distribute/install-extensions
Literally the first hit.
You think 99% of users will do that every time there’s an update? That method doesn’t auto-update. And iOS?
And iOS?
I’m not ChatGPT. Search the web yourself. There are ways but unlike you I don’t use a proprietary mobile platform and cosplay as a FOSS advocate.
Lmao I don’t use iOS either. But 99% of users use either the browser extensions or iOS, meaning most users will be affected by this, despite your bootlicking.
What would be the reason for using this and not Keepass from the beginning?
For me it is totp, cloud capabilities and passkeys
I might be a bit paranoid (or an idiot) but I think having the password and the totp in the same database (and app) somewhat negates the point of two-factor authentication.
It does negate the big issue of passwords leaking from the websites and that’s the most important part of even having totp.
Nobody is going to spend time to separate the 2 and maintain backups of two different things and all that extra effort when 90% of people don’t even use password managers.
Don’t let perfection be the enemy of improvement.
It does, but not every account is worth it
I’m using Strongbox on macOS and iOS. Uses a KeePass2 database in the background, does TOTP (so does KeePassXC), syncs via iCloud (but also supports SFTP, WebDAV, OneDrive, Google Drive, and Dropbox) and also keeps my Passkeys. And it supports Apple’s AutoFill API, so it works in basically any input field across the systems and feels “native”. No browser extensions (at least for Safari) needed.
And if it goes rogue, I can switch to e.g. KeePassium or any other KeePass-compatible app.
Well, a big reason I ended up with bitwarden is being able to have a family group that I can help foster, encourage, force my family to use a password manager by having/showing them how these work , why they should use them and continually point them to the app to save and/or retrieve passwords.
The barrier to entry for non technical users is much lower. I don’t want to manage making sure everyone’s db is safe/synced etc… either
I don’t know, my wife (0 technical knowledge) works perfectly, with daughter and personal databases. Of course, it’s true that I set everything up myself and I make sure the database is on the family NAS. I’m not judging you or anything, but while it’s true that setting it up is a bit more difficult, using it, in my opinion, is not at all.
I do run a number of self hosted things, (nextcloud, immich, plex). I had my own pw manager, and had tried keepass myself and when it came time to push the family to using a pw manager I just opted for bitwarden here vs taking ownership of managing that too!
Hell, it’s still a literal fight/push to make them understand the importance of it <sigh>
Sigh… I hope this isn’t the first move of enshitifying bitwarden. I read the comments/replies and hope this is benign but I’m now nervous
The first move was when they hired a CEO who comes from private equity. This is the second move.
I think it is the next move (not the first) in enshittifying bitwarden. I think the first move was the leadership change announced in May.





















