Bitwarden and keychain

Hi, I’m not at all good with computers so I apologise if the answer is already on the forum; I’m not sure what I should be looking for. I’ve been using Bitwarden on my MacBook without issue for a few months when suddenly the extension icon went black and white instead of blue and stopped working. I haven’t been able to figure out why. I opened the app instead, and have been manually cutting and pasting passwords into Safari, which is cumbersome. I decided to restart the app today, but when it opened, I keep getting the message “bitwarden wants to use your confidential information stored in bitwarden in your keychain”. I’ve been typing in my master password but it doesn’t work, and I can’t think what else it might be asking for. It goes away once I open Bitwarden. But is this lacking keychain login the reason the extension no longer works? Any ideas at all???

If you click on the icon inside your browser to open the BW extension, does a window or prompt appear? It sounds like you have been logged out and you simply need to login to BW again to continue.

Regarding the password issue with the desktop app, I am not sure what is happening. But you definitely do NOT want to store your BW master password in your Apple keychain.

Hi David,

I am migrating my family from LastPass to BW, so we are just getting oriented. We are all using Apple devices. I set it up exactly as you say not to: each user’s master password is stored in the user’s iCloud Keychain. We all have strong and long master passwords.

Aside from the obvious risk of keeping passwords in a cloud based system like iCloud Keychain, is there a specific reason not to do this?

TIA

@JacobColdfoot Welcome to the forum!

WSJ has recently reported on a trend of crimes in which thieves observe victims entering their iPhone passcodes, and subsequently steal the phone. With the passcode alone, they can lock you out of your your AppleID account and all of your Apple devices, and then have unimpeded access to everything in your Keychain.

1 Like

I appreciate your response. This is a very specific risk that we will be mindful of.

I am following up because my spouse and I went down the path of using Keychain to store each of our Bitwarden master passwords. And something has now gone wrong.

If a user triggers Keychain to generate a new strong password, the old password is lost forever. There is no undo, and no history of password changes kept in Keychain.

This happened somehow to my spouse’s Bitwarden master password saved in Keychain. Now we have lost access to her Bitwarden account.

Just leaving this note here for others’ benefit. Be careful out there.

1 Like