Question & answer

Is a password manager safe?

The short answer

Yes, a good password manager is far safer than the alternative: inventing and reusing passwords yourself. Pick a service with zero-knowledge architecture and independent audits, like Bitwarden or 1Password, and protect the vault itself with a strong master password plus two-factor authentication.

The biggest threat to your accounts is not a hacked password manager but password reuse. When a webshop leaks your password, criminals try it on your email, bank, and social media within minutes. A password manager creates a unique, strong password for every service, so a breach at one site is no danger to the rest.

Good managers work zero-knowledge: everything is encrypted on your device with your master password, which the company itself never knows. Even if their servers were breached, your data would be unreadable noise. Bitwarden and 1Password additionally have this verified by external auditors on a regular basis and publish the results.

The weak point is you: a weak master password or no two-factor authentication. Make the master password a phrase of four or more words and enable 2FA on the vault. Do that, and your digital life is better protected than almost everyone around you.

Relevant to this question

Free
Bitwarden logoBitwarden
Bitwarden Inc.
Best free option
Bitwarden

Bitwarden Inc.

Free & open source4.7
FreeView
Our picks
1Password logo1Password
AgileBits Inc.
Best overall
1Password

AgileBits Inc.

Top picks4.7
From $3.99/moView
Free
Proton Pass logoProton Pass
Proton AG
Proton Pass

Proton AG

Free & open source4.4
FreeView