# Password Safe privacy rating

Open source password manager originally designed by Bruce Schneier that keeps passwords in a Twofish-encrypted local database. Official builds exist for Windows and Linux, with YubiKey support and compatible third-party apps for macOS, Android and iOS.

## Summary

Password Safe scores 88 out of 100 (grade B) on the password managers criteria. It meets 6 of 7 criteria: open source, no trackers or telemetry, no ads or data sales, end-to-end encrypted vault, local or self-hosted option and full export. It does not meet independent audit. Automated tests: Mozilla HTTP Observatory grade B.

- Website: https://www.pwsafe.org
- Source code: https://github.com/pwsafe/pwsafe
- Home page trackers: none found
- Category: [Password managers](https://privacyratings.com/password-managers/)
- Grade: B (88/100)

## Criteria

| Criterion | Answer | Note | Evidence |
| --- | --- | --- | --- |
| Open source | Yes | Artistic License 2.0. | https://github.com/pwsafe/pwsafe/blob/master/LICENSE |
| No trackers or telemetry | Yes | No telemetry or analytics in the source code. | https://github.com/pwsafe/pwsafe |
| No ads or data sales | Yes | Volunteer project funded by donations, with no ads. | https://www.pwsafe.org/ |
| Independent audit | No | No independent audit is published. |  |
| End-to-end encrypted vault | Yes | Local-only: the database is encrypted with Twofish using a key derived from the master password. | https://github.com/pwsafe/pwsafe/blob/master/docs/formatV3.txt |
| Local or self-hosted option | Yes | The database is a local file. | https://github.com/pwsafe/pwsafe/blob/master/docs/formatV3.txt |
| Full export | Yes | Exports to XML and plain text. | https://github.com/pwsafe/pwsafe/blob/master/help/default/html/export.html |

Source: https://privacyratings.com/password-managers/password-safe/
Edit: https://github.com/privacyratings/privacyratings.com/edit/main/ratings/password-managers/password-safe.md
