BW email and 2FA email, same email or two separate?

Hi

Just wondering if it is okay to use the same email for BW and 2FA.
I created a new separate gmail for BW and using 2FAS but with the same gmail account created for the BW login. Is this okay or should I be using a separate email for 2FA?

@Artur_Hawkwing Hi!

I changed the category of your post to “password manager”, as your question doesn’t seem to be about the dedicated Bitwarden authenticator app, right?!

Well I’m asking if it’s better to use a separate email address for 2FA, or is having the same one as your BW login is fine

Because 2FAS uses google Gmail

BW’s email is used for the following purposes:

  1. To send you notifications about new logins.
  2. To send you confirmation for account deletion, even without your password.

The 2FAS cloud backup is associated with your Gmail account, but it has a separate cloud backup password, which you should ensure is random, unique, and strong.

If someone gains access to your Gmail account, which you use for BW, they could delete your BW account, thereby denying you access. In some circumstances, they may also prevent you from accessing 2FAS information (for example, if you lose your phone or reset it without being able to access your Gmail account).

Without the appropriate passwords, they cannot access your BW or 2FAS information, but they may still be able to deny you access. This issue can be mitigated by making export backups of both your BW and 2FAS vaults (separate from the cloud backup), which can be restored without access to your Gmail account.

It is acceptable to use the same Gmail account for both services. Focus on creating a reliable backup plan that can be restored easily. Prioritize maintaining access to your Gmail account (which has robust security measures): use device-bound passkeys, set up a separate “high-security” recovery email, and use a different “unknown” phone number for recovery. You might also consider using Gmail’s +addressing feature to add an extra (minimal) layer of protection against BW account deletion, while also providing peace of mind against someone attempting to use your original Gmail address to access your BW account.