this post was submitted on 18 Apr 2026
73 points (81.7% liked)
Privacy
48080 readers
1024 users here now
A place to discuss privacy and freedom in the digital world.
Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.
In this community everyone is welcome to post links and discuss topics related to privacy.
Some Rules
- Posting a link to a website containing tracking isn't great, if contents of the website are behind a paywall maybe copy them into the post
- Don't promote proprietary software
- Try to keep things on topic
- If you have a question, please try searching for previous discussions, maybe it has already been answered
- Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
- Be nice :)
Related communities
much thanks to @gary_host_laptop for the logo design :)
founded 6 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
Keepass can replace Aegis for TOTP
I didn't know that, but security-wise, wouldn't it still be better to use Aegis? 2FA is meant to provide extra security in case your password is compromised; this means that if someone gets into your password manager, they still wouldn't be able to access your accounts because of the 2FA. But if you put your 2FA inside the password manager, that just makes it easier to access your accounts, right? Anyway, I found that information interesting, I had no idea. Thanks!
Yea I think 2fa in Bitwarden is convenience
In the world of privacy, it's often best to reject things that are too convenient, but I managed to find a way to use KeePass for 2FA. Just create another vault with a different password and use that one specifically for 2FA. This means that if one of your vaults is compromised, you're still not at risk.
You're right, but if they have your password manager, they likely have your phone, and that means they have your Aegis too.
Still, my suggestion is less of a second factor unless you have 2fa on your keypass, so not best practice.
honestly it doesn't really matter if they have access to my phone, because my Aegis and Keepass are protected by passwords, and different ones at that. anyway, I took your first comment into consideration and created a Keepass vault just for TOTP, with a different password from my password vault, of course, so if they access one of my vaults they wouldn't have access to my passwords. I deleted my Aegis since I won't need it anymore, but I kept a backup saved just in case.