diff --git a/user-facing/communication-and-security/vaultwarden.md b/user-facing/communication-and-security/vaultwarden.md index 9fd5952..82a39ab 100644 --- a/user-facing/communication-and-security/vaultwarden.md +++ b/user-facing/communication-and-security/vaultwarden.md @@ -1,6 +1,6 @@ # Vaultwarden: Secure Password Management -**Vaultwarden** is the official password manager hosted on **The Nest**[cite: 5]. Powered by a self-hosted implementation of Bitwarden, Vaultwarden provides an encrypted vault to safely store your passwords, passkeys, credit cards, secure notes, and two-factor authentication (2FA) codes across all your devices[cite: 5]. +**Vaultwarden** is the official password manager hosted on **The Nest**. Powered by a self-hosted implementation of Bitwarden, Vaultwarden provides an encrypted vault to safely store your passwords, passkeys, credit cards, secure notes, and two-factor authentication (2FA) codes across all your devices. --- @@ -8,24 +8,24 @@ With so many password management options available, here is why we encourage using Vaultwarden on The Nest: -* **Complete Privacy & Data Ownership:** Your passwords are encrypted and hosted locally on The Nest rather than on commercial cloud servers owned by Big Tech companies[cite: 5]. -* **True Multi-Device Syncing:** Browser-based password managers (like Chrome or Safari) lock your credentials into a specific browser or operating system. Vaultwarden syncs seamlessly across Windows, macOS, Linux, iOS, Android, and every major browser via official Bitwarden apps[cite: 5]. -* **Integrated Passkey & 2FA Support:** Store WebAuthn passkeys and built-in authenticator (TOTP) codes in one single, secure location—no need for separate authenticator apps[cite: 5]! -* **Full Premium Feature Set:** Nest users receive full access to Bitwarden-compatible premium features (such as 2FA generation, secure attachment storage, and emergency access) at zero extra cost[cite: 5]. -* **Automatic Backups vs. Local Files:** Local password files (like KeePass or un-synced text stores) risk permanent data loss if a device is damaged or lost. Vaultwarden keeps your vault synced in real time while benefit from automated Nest backups[cite: 5]. +* **Complete Privacy & Data Ownership:** Your passwords are encrypted and hosted locally on The Nest rather than on commercial cloud servers owned by Big Tech companies. +* **True Multi-Device Syncing:** Browser-based password managers (like Chrome or Safari) lock your credentials into a specific browser or operating system. Vaultwarden syncs seamlessly across Windows, macOS, Linux, iOS, Android, and every major browser via official Bitwarden apps. +* **Integrated Passkey & 2FA Support:** Store WebAuthn passkeys and built-in authenticator (TOTP) codes in one single, secure location—no need for separate authenticator apps! +* **Full Premium Feature Set:** Nest users receive full access to Bitwarden-compatible premium features (such as 2FA generation, secure attachment storage, and emergency access) at zero extra cost. +* **Automatic Backups vs. Local Files:** Local password files (like KeePass or un-synced text stores) risk permanent data loss if a device is damaged or lost. Vaultwarden keeps your vault synced in real time while benefit from automated Nest backups. --- ## 2. Getting Started & Account Setup -1. **Check Your Inbox:** When your Nest account is created, you will receive an invitation email containing a registration link[cite: 5]. -2. **Set Your Master Password:** Click the invite link to create your account and set a strong **Master Password**[cite: 5]. -3. **Save Your Master Password:** This password encrypts your entire vault[cite: 5]. Make sure to write it down or store it in a safe place[cite: 5]! +1. **Check Your Inbox:** When your Nest account is created, you will receive an invitation email containing a registration link. +2. **Set Your Master Password:** Click the invite link to create your account and set a strong **Master Password**. +3. **Save Your Master Password:** This password encrypts your entire vault. Make sure to write it down or store it in a safe place! > [!WARNING] -> **Important:** Because Vaultwarden uses zero-knowledge encryption, administrators **cannot** view or reset your Master Password if you forget it[cite: 5]. Always keep a physical backup of your Master Password in a secure location[cite: 5]! +> **Important:** Because Vaultwarden uses zero-knowledge encryption, administrators **cannot** view or reset your Master Password if you forget it. Always keep a physical backup of your Master Password in a secure location! -*If your invite link has expired before setup, simply reach out to an administrator on Matrix to request a new invitation[cite: 5].* +*If your invite link has expired before setup, simply reach out to an administrator on Matrix to request a new invitation.* --- @@ -37,7 +37,7 @@ Moving your existing credentials from Chrome, Firefox, Apple Passwords, 1Passwor Export your saved passwords as an unencrypted **CSV** or **JSON** file from your current browser or password manager settings. ### Step 2: Import Your File into Vaultwarden -1. Log in to the Vaultwarden Web Console at [vault.mynest.love](https://vault.mynest.love)[cite: 5]. +1. Log in to the Vaultwarden Web Console at [vault.mynest.love](https://vault.mynest.love). 2. In the top navigation bar, click **Tools**, then select **Import Data**. 3. Choose the format corresponding to your old manager (e.g., *"Chrome (csv)"* or *"1Password (csv)"*). 4. Select your exported file and click **Import Data**. @@ -50,27 +50,27 @@ Export your saved passwords as an unencrypted **CSV** or **JSON** file from your ## 4. Connecting Your Apps & Devices -Vaultwarden uses standard **Bitwarden** client applications[cite: 5]. When signing in to any Bitwarden extension or app for the first time, click the **Gear Icon (Settings)** on the sign-in screen and set your **Server URL** to: +Vaultwarden uses standard **Bitwarden** client applications. When signing in to any Bitwarden extension or app for the first time, click the **Gear Icon (Settings)** on the sign-in screen and set your **Server URL** to: -`https://vault.mynest.love`[cite: 5] +`https://vault.mynest.love` ### Recommended Downloads: -* **Browser Extension:** Install the **Bitwarden** browser extension (Chrome, Firefox, Edge, Safari) for one-click password auto-fill on websites[cite: 5]. -* **Mobile Apps:** Download **Bitwarden** from the iOS App Store or Google Play Store to enable system-wide password and passkey auto-fill on smartphones[cite: 5]. -* **Desktop App:** Available for macOS, Windows, and Linux for quick access to your vault off-browser[cite: 5]. +* **Browser Extension:** Install the **Bitwarden** browser extension (Chrome, Firefox, Edge, Safari) for one-click password auto-fill on websites. +* **Mobile Apps:** Download **Bitwarden** from the iOS App Store or Google Play Store to enable system-wide password and passkey auto-fill on smartphones. +* **Desktop App:** Available for macOS, Windows, and Linux for quick access to your vault off-browser. --- ## 5. Integrating with The Nest -While The Nest relies primarily on **passwordless passkeys** managed via Keycloak SSO for logging into services like Matrix or Forgejo[cite: 5], Vaultwarden is an essential companion: +While The Nest relies primarily on **passwordless passkeys** managed via Keycloak SSO for logging into services like Matrix or Forgejo, Vaultwarden is an essential companion: -* **Passkey Vaulting:** Vaultwarden can securely store and sync passkeys used for both Nest services and external websites[cite: 5]. -* **Credential Organization:** Safely store API keys, personal notes, credit cards, or recovery codes for all your digital accounts[cite: 5]. +* **Passkey Vaulting:** Vaultwarden can securely store and sync passkeys used for both Nest services and external websites. +* **Credential Organization:** Safely store API keys, personal notes, credit cards, or recovery codes for all your digital accounts. > [!TIP] > **Passkey Auto-Fill:** -> If you use the Bitwarden browser extension or mobile app, enable passkey support in the extension settings to sign into Nest services with a single click[cite: 5]! +> If you use the Bitwarden browser extension or mobile app, enable passkey support in the extension settings to sign into Nest services with a single click! --- @@ -78,8 +78,8 @@ While The Nest relies primarily on **passwordless passkeys** managed via Keycloa | Component | URL | Purpose | | :--- | :--- | :--- | -| **Vaultwarden Web UI** | [vault.mynest.love](https://vault.mynest.love) | Web vault, import tools, and account settings[cite: 5] | +| **Vaultwarden Web UI** | [vault.mynest.love](https://vault.mynest.love) | Web vault, import tools, and account settings | ### Related Nest Documentation: -* **[Keycloak Identity](../technical/security-and-identity.md):** Powers central passkey logins across The Nest[cite: 5]. -* **[Matrix Chat](../communication-and-security/matrix.md):** Get in touch with an administrator if you need help with your vault[cite: 5]. +* **[Keycloak Identity](../technical/security-and-identity.md):** Powers central passkey logins across The Nest. +* **[Matrix Chat](../communication-and-security/matrix.md):** Get in touch with an administrator if you need help with your vault.