- Fixes issues with the autofill not working on some sites
- Do not render the inline autofill menu if the page has an open popover window
(This listed release includes only Browser Extensions & Desktop Apps. The next release to include Server updates will resume the typical version progression (2025.8.1))
- To further protect against malicious websites, the inline autofill menu is now always displayed above other content on a web page.
(The listed release number is for the Bitwarden Server, other version numbers released in this cycle also include Web 2025.9.0, Browser Extension 2025.9.0, Mobile 2025.9.0, Desktop 2025.9.0, and CLI 2025.9.0)
Password Manager
Admin Console
- Device approval using browser extensions: Approve new trusted devices and login with device requests using the browser extension.
- CXP for iOS 26: Users on iOS 26 can now import directly to or export directly from Bitwarden and any other iOS app that supports Fido's Credential Exchange Protocol. Learn more about importing and exporting.
- Collection settings updates: Some collection management settings have been renamed and more granular events will now be logged when they're turned on or off. Learn more here.
- Organization SSH keys: SSH keys created with the Bitwarden SSH agent can now be stored and shared in organization collections. Learn more about the Bitwarden SSH agent here.
(The listed release number is for the Bitwarden Server, other version numbers released in this cycle also include Web 2025.10.0, Browser Extension 2025.10.0, Mobile 2025.10.0, Desktop 2025.10.0, and CLI 2025.10.0)
Password Manager
Secrets Manager
- Direct importer for Edge, Opera, and Vivaldi browsers: Move your data into Bitwarden quickly and securely with direct import for Edge, Opera, and Vivaldi browsers.
- Simplified login screen for SSO users: Members of organizations using the Require single sign-on policy will now have other authentication options greyed-out on the login screen, provided they've authenticated at least once on that device.
Self-host
- New event logs: Secrets Manager will now log events when machine accounts are created, deleted, have users or groups assigned to them, and have users or groups removed from them.
- New environment variables: New environment variables are available for configuring the handling of refresh tokens, allowing users to determine the lifetime and timeout of authentication tokens on self-hosted servers.
(The listed release number is for the Bitwarden Server, other version numbers released in this cycle also include Web 2025.110, Browser Extension 2025.11.0, Mobile 2025.11.0, Desktop 2025.11.0, and CLI 2025.11.0)
Password Manager
- Log in with passkey support on browser extensions: Users can now log in to browser extensions with a passkey. Currently, Chrome and Chromium-based browsers like Edge are supported.
- Windows Hello update: You can now unlock your vault with biometrics immediately after the Windows desktop app restarts, rather than entering a master password or PIN. When setting up biometrics in the Windows desktop app, uncheck Require master password or PIN on app restart.
- Right-click in web app: In the web app Vaults view, you can now right-click to call up the same menu you'd access using the options menu.
- Improved sign-up flow for premium subscription: Users seeking the benefits of a paid Bitwarden plan will find it easier to upgrade their account. Select the Upgrade your plan button within the web app navigation to learn more about and select a paid plan.
(The listed release number is for the Bitwarden Server, other version numbers released in this cycle also include Web 2025.12.0, Browser Extension 2025.12.0, Mobile 2025.12.0, Desktop 2025.12.0, and CLI 2025.12.0)
Password Manager
- Vault health alerts and password coaching: As a new feature for Premium plans, browser extensions will now alert users that they should update a password when it's detected that the password is weak, re-used, or exposed and recommend that they be updated.
- Direct import for Chrome and Brave: Transfer your data from Chrome and Brave browsers into Bitwarden quicker than ever with direct import.
- Autofill and save URI: In the browser extension, the option to Fill & save has been rolled into the normal Autofill option. Now, when selecting Autofill for an item without a matching URI, an option to save the current website URI to the login item will appear.
(The listed release number is for the Bitwarden Server, other version numbers released in this cycle also include Web 2026.1.1, Browser Extension 2026.1.0, Mobile 2026.1.0, Desktop 2026.1.0, and CLI 2026.1.0)
Password Manager
- Phishing blocker: Using the browser extension, Bitwarden premium and families users will have access to the phishing blocker, which will notify users when navigating to known phishing websites.
- Unlock with passkeys: Passkeys can now unlock your web app or browser extension. This grows existing passkey support beyond logging in, letting you access your vault without entering the master password.
- Desktop app UI update: The desktop app UI has been updated, and more updates will follow.
- New default width for extensions: Browser extensions have a new, wider default width. You can change back to the narrow version interface or to an extra wide one from the Appearance menu.
Self-host
- Enhanced error log redaction: Error logs created for authentication tokens that are invalid, expired, or have an incorrect issuer, audience, or signature, now redact all personally identifiable information (PII) and authentication data.
(The listed release number is for the Bitwarden Server, other version numbers released in this cycle also include Web 2026.2.1, Browser Extension 2026.2.0, Mobile 2026.2.1, Desktop 2026.2.1, and CLI 2026.2.0)
Password Manager
- Item archiving: Users on paid subscriptions can now archive vault items to exclude them from search and from autofill without removing them from the vault.
- Autofill button on View Login: Autofill credentials directly from the View Login page in the browser extension.
- Biometric unlock for Flatpak: Flatpak-installed desktop apps now support unlock with biometrics.
- Increase minimum KDF iterations: If your PBKDF2 KDF iterations are below 600,000, the default level since release 2023.2.0, you'll be asked to update the setting or the increase will apply automatically when you next log in or unlock with your master password.
Admin Console
- Huntress SIEM integration: Bitwarden Teams and Enterprise organizations can now integrate with Huntress for security information and event management (SIEM).
Secrets Manager
- Jenkins integration: The Bitwarden Secrets Manager CLI can now be used to inject secrets into Jenkins Pipelines.
(The listed release number is for the Bitwarden Server, other version numbers released in this cycle also include Web 2026.3.1, Browser Extension 2026.3.0, Mobile 2026.3.1, Desktop 2026.3.1, and CLI 2026.3.0.)
Password Manager
- Autofill button on View Login: Autofill credentials directly from the View Login page in the browser extension.
- Generator options for password protected Sends: All password generator features are now available when creating password protected Sends.
- Arm64 builds available for Linux: Arm64 desktop builds are now available for Linux users on Snapcraft and Flathub. See downloads for additional information.
Admin Console
- Automatic confirmation policy: A new policy allows for automatic confirmation of new members joining the organization. Using this policy requires an understanding of how it works and Bitwarden support must be contacted to activate it in your organization.
- Policy name update: The Enforce organization data ownership policy has been renamed to Centralize organization ownership.
- Transfer items from My Vault to My Items: Organizations using the Centralize organization ownership policy can now opt to prompt users to transfer items from My Vault to My Items using the browser extension.
(The listed release number is for the Bitwarden Server, other version numbers released in this cycle also include Web 2026.4.0 and Mobile 2026.4.0.)
Password Manager
- Preview image attachments on Android: You can now preview image attachments from within the Password Manager Android app, without having to download the file to your device. Previewing image attachments will be available on iOS in a future release.
Admin Console
- Send controls Enterprise policy: Two Enterprise policies, Send Options and Remove Send, were merged into the newly titled Send controls policy. If either policy was previously turned on, the chosen options will transfer and remain unchanged.
- Updated Enterprise Policies page: On the Policies page, the Enterprise Policies are now organized into three categories: Data Controls, Authentication, and Vault Management. You can also review at a glance which policies are turned on or off.
- Access Intelligence dashboard update: Visualize how at-risk applications, passwords, and members have changed over time relative to absolute changes in application, password, and member counts with new graphs on the Access Intelligence Activity view.
(The listed release number is for the Bitwarden Server, other version numbers released in this cycle also include Web 2026.4.2, Browser Extension 2026.4.0, Desktop 2026.4.0, Mobile 2026.4.1, and CLI 2026.4.0)
Password Manager
- Change master password on extensions and desktop: You can now change your master password on browser extensions and desktop apps. To support future improvements, workflows that allowed a master password change via the CLI were removed.
- Desktop UI updates: The desktop app UI has been updated with visual improvements.
- Click to autofill by default: Within the browser extension, you can now click anywhere on an item within Autofill suggestions to insert your credentials. This update removes the Fill button and Click items in autofill suggestions to fill setting for a more streamlined appearance.
- Updated Clear Clipboard default: The browser extension's Clear Clipboard setting now defaults to five minutes, an extra precaution to help keep your credentials secure.
- mTLS support now on iOS: Both the iOS and Android mobile apps now support uploading mTLS certificates for self-hosted servers that require client authentication. Upload your certificate when you set your server URL.
- Attachment status loading bar: Uploading an attachment on the desktop app and browser extension will display an upload status bar.
- Keeper JSON importer: You can now import data from Keeper with a JSON file.
Important notes:
False alert from Microsoft SmartScreen: Windows users installing the next available version of the Bitwarden desktop or CLI applications from any location besides the Microsoft Store may receive an alert from Microsoft Defender SmartScreen flagging the apps as potentially unsafe. This is expected and is not cause for alarm. The false alert is due to the proactive rotation of security certificates in the Bitwarden development environment and current Microsoft certification policies. It is safe for you to proceed and use these applications.
Feature availability: The latest features require the most recent app and browser extension versions, which update automatically in most cases. Some features roll out progressively and may not be immediately available to cloud customers or until a later release for self-hosted customers.
(The listed release number is for the Bitwarden Server, other version numbers released in this cycle also include Web 2026.5.0, Browser Extension 2026.5.0, Desktop 2026.5.0, Mobile 2026.5.0, and CLI 2026.5.0)
Password Manager
- Devices list now available on desktop: The Devices list is now available on the desktop app, alongside the web app and browser extension, to surface devices that your account has been used on.
- Biometrics integration now available on Flatpak and Snap: Biometric unlock of browser extensions, usable through an integration with the Bitwarden desktop app, is now available on Flatpak and Snap distributions.
- Web app quick actions: Launch a website and copy vault data from new quick actions buttons, available by hovering over an item in the web app.
- Send UI update: Selecting a Send item in the browser extension and web app will now display a View screen instead of routing directly to the Edit screen.
Admin Console
- Blumira SIEM integration: Teams and Enterprise organizations can now integrate with Blumira for security and event management (SIEM).
- Expanded account recovery options: Account recovery now supports revoked members and can reset two-step login methods.
- Revoked member reason: There's a new tooltip next to each member on the Members → Revoked page that explains why members were revoked from your organization.
- Updated event logs: Password Manager now saves when an attachment is added to an organization-owned item, using the existing Created attachment for item event.
Self-host
- Helm Chart v2.0: Version 2.0 of the self-host Helm chart will includes two breaking changes:
- NGINX ingress is now disabled by default in this version of the chart. The chart includes support for Gateway API as an alternative.
- The image.name field has been removed from values.yaml. Any configurations using image.name must be updated to use image.repository instead.
note
Before upgrading to this version of the chart, review these changes and update your values file accordingly. For additional information on setting up or migrating to Gateway API, refer to Helm Traffic Routing.
Additional performance improvements to reduce the extension's impact on web page loading and responsiveness
(The listed release number is for the Bitwarden Server, other version numbers released in this cycle include Web 2026.6.2, Browser Extension 2026.6.0, Desktop 2026.6.0, Mobile 2026.6.1, and CLI 2026.6.0)
Password Manager
- Fill assist for browser extensions: Activate fill assist to improve autofill accuracy on a Bitwarden-curated selection of websites known to cause widespread autofill issues.
- Biometrics on Linux simplified: Setting up biometrics on Linux to unlock the Bitwarden desktop no longer requires a secret service daemon.
- Desktop app settings UI update: The Desktop app settings dialogue has been updated. Learn more about the Desktop app.
- Send recipient limit: When creating a Send restricted to specific people, the email address field now supports up to 2,500 characters.
- At-risk password notification UI update: The at-risk password label below the password field on View Login remains, but the banner that previously appeared at the top of the view was removed. The banner that appears in your vault when Access Intelligence is used to request a password change did not change.
- Vault sync UI update in browser extension: The Sync vault now text is now greyed out while a sync is in progress and becomes clickable again once the sync is complete.
Admin Console
- Organization policies now enforced for accepted members: Once a user accepts an organization invite, all configured organization policies apply to their account.
(The listed release number is for the Bitwarden Server. Other version numbers released in this cycle include Web 2026.7.0, Browser Extension 2026.7.0, Desktop 2026.7.0, Mobile 2026.7.0, and CLI 2026.7.0.)
Password Manager
- Action bar for vault items: A new batch action bar has been added to the web app, desktop app, and admin console. Use the action bar to perform vault activities such as sharing item(s) to a collection or folder, and archiving vault items.
- Save and fill from extensions: On browser extensions, the inline menu can now more easily simultaneously save and autofill new credentials.
- CXP available on Android: With Android 10+, you can import directly to or export directly from Bitwarden and any other Android app that supports FIDO's Credential Exchange Protocol.
- Make Bitwarden default on extension installation: Browser extensions will now prompt you to make Bitwarden your browser's default password manager on installation.
- Keeper direct importer: Transfer your data from Keeper Password Manager without needing to download an export file using the new direct import option.
- KeePass KDBX importer: You can now import a KeePass Password Manager KDBX file directly into Bitwarden, secured with a password or key file. Previously, KeePass data could only be imported using unencrypted CSV or XML files.
- SSH Agent updates: This release includes updates to the SSH agent for reliability and performance. Learn more about the SSH agent in these articles:
- Desktop app tray behavior updates: The settings that control tray or menu bar behavior and minimization have been consolidated into a streamlined Keep Bitwarden running in the background setting.
- Disable automatic update variable rename: The environment variable you can use to prevent Bitwarden desktop apps from automatically updating has been renamed.
Admin Console
- Vault banner Enterprise policy: Admins can now display custom banners at the top of members' vaults, such as service announcements or company reminders.
- Manage Send policy: Organizations can now control all Send related functions with the Manage Send policy in the Admin Console. The new policy replaces the previous set of separate Send policies.
Self-host
- Change database backup filenames to local time: Add a variable to your mssql.override.env file to express timestamps in backup filenames in local time instead of the default UTC.
I just wish they develop a native desktop app. It suck they have the resources to develop on, but instead they chose Electron.