I am registering some sites for a collection that will be used by some users in the company and those users must not be able to view the passwords, but some sites such as (Google, Facebook, Instagram, others) have a show password option.
That would be nice if Bitwarden had a feature that could block / disable the show password option in any site / browser.
Thanks in advanced,
Ramon
@Ramon.Anzai Hi!
There was a recent post similar to your request - see here for details: hide reveal password
And I guess the short answer is: no, that is a function of the browser. And if you use collections, you are essentially “sharing” passwords and can’t technically completely prevent that the other users would find ways to “see” the shared passwords.
@Ramon.Anzai , welcome to the community!
Beyond the technical limitations @Nail1684 identified, it is also contrary to NIST recommendations:
In order to assist the claimant in successfully entering a memorized secret, the verifier SHOULD offer an option to display the secret — rather than a series of dots or asterisks — until it is entered. (cite)
In the more general sense, you can not both give someone a secret and not give it to them. If you do not want me to have the password, you would be much better off setting up some sort of single-sign-on method, so that my regular account can gain access to the shared resource. And ideally, in doing so, my name would show up in the logs ensuring proper attribution for my activities.
2 Likes