<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <title>Keepass on Side Of Burritos</title>
  <link rel="alternate" href="https://staging.sideofburritos.com/tags/keepass/" />
  <link rel="self" href="https://staging.sideofburritos.com/tags/keepass/index.xml" />
  <subtitle>Recent content in Keepass on Side Of Burritos</subtitle>
  <id>https://staging.sideofburritos.com/tags/keepass/</id>
  <generator uri="http://gohugo.io" version="0.165.0">Hugo</generator>
  <language>en-us</language>
  <updated>2025-05-31T10:00:00Z</updated>
  <author>
    <name>Josh</name>
    
  </author>
  
      <entry>
        <title>Some thoughts on switching to KeePass</title>
        <link rel="alternate" href="https://staging.sideofburritos.com/blog/i-switched-to-keepass/" />
        <id>https://staging.sideofburritos.com/blog/i-switched-to-keepass/</id>
        <published>2025-05-31T10:00:00Z</published>
        <updated>2025-06-01T10:00:00Z</updated>
        <summary type="html">I switched to KeePass</summary>
          <content type="html"><![CDATA[<h2 id="-hahahugoshortcode93s0hbhb">🎥 


<a href="https://youtu.be/sRi66okPdFM" target="_blank" rel="noopener" class="text-break">Video Link</a></h2>
<hr>
<h2 id="links-referenced-for-video">Links referenced for video</h2>
<ul>
<li>


<a href="https://community.bitwarden.com/t/allow-attachments-to-be-exported-when-using-export-data/835/1" target="_blank" rel="noopener" class="text-break">https://community.bitwarden.com/t/allow-attachments-to-be-exported-when-using-export-data/835/1</a> - Allow Attachments to be exported when using Export Data Feature Request</li>
<li>


<a href="https://bitwarden.com/blog/upload-store-and-now-export-attached-files-in-your-secure-bitwarden-vault/" target="_blank" rel="noopener" class="text-break">https://bitwarden.com/blog/upload-store-and-now-export-attached-files-in-your-secure-bitwarden-vault/</a> - Bitwarden blog post announcing attachments export</li>
<li>


<a href="https://grapheneos.social/@GrapheneOS/114549099206535021" target="_blank" rel="noopener" class="text-break">https://grapheneos.social/@GrapheneOS/114549099206535021</a> - GrapheneOS post mentioned in intro</li>
<li>


<a href="https://keepassxc.org/" target="_blank" rel="noopener" class="text-break">https://keepassxc.org/</a> - KeePassXC (Desktop)</li>
<li>


<a href="https://www.keepassdx.com/" target="_blank" rel="noopener" class="text-break">https://www.keepassdx.com/</a> - KeePassDC (Android)</li>
<li>


<a href="https://intheshellpodcast.com" target="_blank" rel="noopener" class="text-break">https://intheshellpodcast.com</a> - In the Shell Podcast</li>
<li>


<a href="https://yellowball.fm" target="_blank" rel="noopener" class="text-break">https://yellowball.fm</a> - 🟡 Yellowball, don&rsquo;t just host your podcast, own it</li>
</ul>
<hr>
<h3 id="transcript">Transcript</h3>
<p><strong>Please excuse any grammatical errors. I used a tool to generate the transcript and haven&rsquo;t had a chance to read through it yet.</strong></p>
<p>Just a few quick updates before we get into it.</p>
<p>I send out a monthly email newsletter — if you want to sign up for that, you can go to sidecideros.com, throw your email in the box, and hit subscribe. While you&rsquo;re there, you can also check out my podcast, which is called In the Shell. You can find out where to listen at intheshellpodcast.com.</p>
<p>Back on sidecideros.com, I added a small phone icon at the top. If you click on it, it takes you to a page with an up-to-date list of all the apps I use on my Google Pixel running GrapheneOS. So if you&rsquo;re just getting started or you&rsquo;re curious about what I use, you can check that out and use it as a reference.</p>
<p>About five months ago, I published a video called The Big Problem with Bitwarden Backups. TL;DR — I was migrating my self-hosted Bitwarden instance to a new server. I set it up, imported my backup (exported using the web interface), and everything seemed fine. But shortly after, I needed an attachment from my vault — I think it was a PDF — and realized that none of the attachments had been imported.</p>
<p>After digging into it and finding a forum post, I learned that Bitwarden backups didn’t export attachments at the time. Fast forward to now, and it looks like they’ve fixed that — they even published a blog post about it. Attachments are now included in backups, which is great!</p>
<p>That said, I still don’t use Bitwarden. As Bush once said (sort of):</p>
<p>“Fool me once… shame on — shame on you. Fool me… we can&rsquo;t get fooled again.”</p>
<p>(Yes, that was a joke.)</p>
<p>Even so, I still recommend Bitwarden for 99% of people. I think it’s the best option if you need a cloud-hosted, centralized vault — especially if you’re managing passwords for multiple people in your family and don’t want to be solely responsible for your data.</p>
<p>As for me, I’ve reached a point in my self-hosting journey where I’m trying to simplify my setup. Bitwarden running in Docker containers is fairly straightforward, but there were some backend elements I wasn’t entirely comfortable with. A few times during updates, the service wouldn&rsquo;t come back up right away. I had to troubleshoot, figure out what changed, make updates, and get it running again.</p>
<p>For something like a password manager, that kind of downtime can be stressful. That’s why I moved to KeePass.</p>
<p>One of the benefits of KeePass is that your vault is just a single file. That means you can back it up by literally copying it to a flash drive. If you ever need to restore it, you just open the file with KeePass — no need to set up a new instance, import a backup, and go through the login process. You can access your vault from any computer or phone with the app installed. That simple file structure is a big plus in my book.</p>
<p>Quick note before I continue: If you haven’t self-hosted anything before, your password manager shouldn’t be the first thing you self-host. Start with something less critical, get your backup plan in place, and then maybe consider self-hosting your password manager.</p>
<p>So back to KeePass — it’s simple. I use KeePassXC on desktop and KeePassDX on Android. One thing to keep in mind is that unlike Bitwarden (which provides a complete ecosystem from the same company), KeePass is more fragmented. But once everything is set up, you don’t really have to think about it.</p>
<p>The interface is straightforward. I really like the password generator — you can choose between passwords and passphrases, and it includes a default word list (you can add more if you want). I do wish it had a username generator, though — that’s one feature it lacks.</p>
<p>Creating new entries is simple. You can attach files, and since everything is stored in that one file, you don’t have to worry about exporting attachments separately.</p>
<p>KeePass also supports MFA. I use YubiKeys for this — specifically the 5C model. Every time you make a change, KeePass prompts you to touch the YubiKey for confirmation. I also have a Nano YubiKey that I leave plugged into my computer, which makes it more convenient. This adds a layer of protection against automated attacks since physical touch is required for authentication.</p>
<p>There’s a browser plugin for KeePass, but I found it a bit clunky and stopped using it. Instead, KeePass has a feature called Auto-Type. You select an entry, click Perform Auto-Type, and it types your credentials into the active window. I don’t personally use it — I just copy and paste.</p>
<p>On my phone, I also avoid keyboard integration — I just copy and paste there as well, and it works fine for me.</p>
<p>You might be wondering how I sync across devices now that I’m not using a centralized setup. I do 95% of my work on my laptop, so I only make changes there. Then every few days, I manually transfer the updated password database to my phone and tablet using LocalSend.</p>
<p>You could sync your KeePass database to a cloud service and install the client on each device — I actually have mine synced to Seafile, which I also self-host — but I still prefer the manual method. It keeps things simple, and I haven’t had any issues with it.</p>
<p>So while I still think Bitwarden is a fantastic choice for most people, if you&rsquo;re into self-hosting, KeePass is absolutely worth checking out.</p>
<p>If you have any questions or comments, feel free to leave them down below — and I’ll see you next time.</p>
]]></content>
      </entry>

</feed>
