Require Open Source for Password Managers

If privacy is that goal then yes but instead of focusing on the actual issue we’re forever stuck debating whether or not open source should be required for password managers, and I’m going to keep this thread going until this gets approved.

Some of us value open source. Others think it doesn’t matter. Some of us want to avoid big tech. Others think that’s stupid. If the others had their way PG wouldn’t recommend open source at all. Whenever some expert writes any kind of article criticizing a piece of open source software, no matter how secure or insecure it really is, people will use that to trash open source projects.

My point stands. If Bitwarden and Proton Pass both have feature parity as 1Password, then because 1Password is proprietary and we have multiple other recommended password managers, then there’s no reason to have it recommended if Bitwarden, Proton Pass, KeePass, and Gopass satisfy everyone’s threat models and use cases. It doesn’t make sense to not require open source in areas where there are many acceptable open source solutions. This wouldn’t be much different than Authy being recommended and us debating about how open source should be required for 2FA.