As a general rule, web apps are not safe enough for applications where you don’t trust service provider, such as password managers or e2ee messaging apps*. For this reason, I would like Bitwarden to not have web version at all. But if there is a web version, at least these two things should be done:
- Users must be warned that web apps are less safe than the native apps.
- Native apps should have full functionality. I noticed that there is no ability to change master password or its hint on the native apps, as well as account deletion and password reporters (premium). These are the features I am requesting.
*Reason for this is that in web apps code is re-delivered every time the app loads, thus it can be undetectably backdoored.