Vaultwarden update out as of ~15 minutes ago, includes security updates.

It says “unconfirmed owner can purge entire organization vault”. That seems probably not great, so updating is probably a good idea.

      • TrumpetX@programming.dev
        link
        fedilink
        English
        arrow-up
        9
        ·
        2 days ago

        I understand why some would do this. It’s definitely a more secure setup, but I highly doubt “most”. I like having passwords on my work laptop. I couldn’t sync there with a VPN, for example. My wife, kids and parents aren’t going to run VPNs on their phones, etc.

        • mpramann@discuss.tchncs.de
          link
          fedilink
          English
          arrow-up
          4
          arrow-down
          3
          ·
          1 day ago

          Vaultwarden is specifically used for self hosting. Setting up a Wireguard VPN on your server at home can be tricky in specific instances. Most of the time it’s dead simple though. Installing a Wireguard Client on your mobile devices is as simple as scanning a QR code. And to be fair: If you’re going to expose the Vaultwarden instance to the internet why not just use the official Bitwarden service then? I’m sure they can handle security better than someone who has trouble setting up an VPN server.