Using it for several weeks now. Very happy with it, especially now that it is integrated with OAuth, so SSO for getting through Pangolin itself and then on all the services it routes to.
Using it for several weeks now. Very happy with it, especially now that it is integrated with OAuth, so SSO for getting through Pangolin itself and then on all the services it routes to.
Wow, thanks for all the great answers so far. As for why not latest:
So, probably a combination of latest for low criticality and pinned on critical stuff (e.g. authentication, access, etc.)
At the end of the day you have to trust someone (Bitwarden, Hoster, Hardware Manufacturer…). It comes down to your threat profile and what you personally accept as a risk vs. effort (or convenience). For me Bitwarden was acceptable, but I switched to self hosting Vaultwarden ca. 3 years ago. Main reasons being the advanced features (sharing some passwords with the family, setting up a tech savvy friend to take over my vault should I get hit by a bus, etc.). I did not have any relevant downtime of that service in years.
None so far. And I am using pretty much all the features.
It is also great for my current migration from docker compose to kubernetes.
A newt client on both and I can just switch on the pangolin side.