Vaultwarden update out as of ~15 minutes ago, includes security updates.

It says “unconfirmed owner can purge entire organization vault”. That seems probably not great, so updating is probably a good idea.

    • TrumpetX@programming.dev
      link
      fedilink
      English
      arrow-up
      6
      ·
      6 hours ago

      I understand why some would do this. It’s definitely a more secure setup, but I highly doubt “most”. I like having passwords on my work laptop. I couldn’t sync there with a VPN, for example. My wife, kids and parents aren’t going to run VPNs on their phones, etc.

      • mpramann
        link
        fedilink
        English
        arrow-up
        2
        arrow-down
        1
        ·
        1 hour ago

        Vaultwarden is specifically used for self hosting. Setting up a Wireguard VPN on your server at home can be tricky in specific instances. Most of the time it’s dead simple though. Installing a Wireguard Client on your mobile devices is as simple as scanning a QR code. And to be fair: If you’re going to expose the Vaultwarden instance to the internet why not just use the official Bitwarden service then? I’m sure they can handle security better than someone who has trouble setting up an VPN server.