# Bitwarden

> Source: https://fuckyc.org/services/bitwarden/
> Website: https://bitwarden.com/
> Categories: Password managers
> KYC: optional — Cloud-synced password manager with end-to-end encryption. Email at signup; no government ID. Free tier available. Vaultwarden is the unofficial self-hostable server.
> Status: active
> Jurisdiction: United States (operator-disclosed)
> Fiat on-ramp: no
> Payment methods: card, paypal
> Founded: 2016
> Open source: yes
> Custodial: yes
> Last verified: 2026-05-12

## Verdict

Bitwarden is the most-recommended cloud password manager when you want sync without compromising encryption. End-to-end encrypted, open-source, free tier sufficient for individual use. For users who want stronger threat-model posture, self-host via Vaultwarden. For users who want zero-cloud, use KeePassXC.

## Strengths

- End-to-end encryption — Bitwarden cannot read your vault even if compelled.
- Self-hostable via Vaultwarden (unofficial Rust reimplementation, license-compatible).
- Open-source clients across every major platform.
- Free tier covers unlimited passwords on unlimited devices.

## Caveats

- U.S. operator. Vault is encrypted but metadata (login times, IP) is visible.
- For users who want zero-cloud-touch, KeePassXC is the better match.
- Email at signup binds the account to an address.

---

## What Bitwarden is

An end-to-end-encrypted password manager with cloud sync. Open-source clients and a free tier; paid plans add organization features.

## Threat-model fit

When you want cloud sync convenience and accept the operator as a trust anchor (or self-host via Vaultwarden).

## Sources

- [Bitwarden help center](https://bitwarden.com/help/) — accessed 2026-05-12
- [Bitwarden source](https://github.com/bitwarden) — accessed 2026-05-12
- [Vaultwarden (self-hostable)](https://github.com/dani-garcia/vaultwarden) — accessed 2026-05-12
