Skip to content

NodeWarden

TrendingActive
shuaiplus/nodewarden

A Bitwarden-compatible password manager server on Cloudflare Workers, D1 and R2 that works with the official Bitwarden apps.

View on GitHub
Stars
3.9k
Forks
4.4k
Watchers
3.9k
Open issues
39

Overview

NodeWarden is a Bitwarden-compatible password manager server that runs entirely on Cloudflare Workers. It works with the official Bitwarden apps and browser extensions, stores your vault in D1, and keeps attachments in R2 (or KV), so you can self-host a password manager without renting a server.

NodeWarden is an independent project and is not affiliated with Bitwarden. Its author describes it as a learning project — back up your vault regularly.

Key Features

  • Official Bitwarden clients: tested with the desktop apps (Windows, Linux), mobile apps, and browser extensions
  • Web vault using the original Bitwarden UI, installable as an offline-capable PWA
  • Built-in TOTP generator, including steam:// codes
  • Strong login security: passkey (passwordless) login, TOTP, YubiKey, and recovery codes
  • Real-time sync across devices, plus cross-device login approval
  • Attachments and Send stored in R2 (default) or KV
  • Import / export in Bitwarden JSON, CSV, and ZIP formats
  • Scheduled cloud backups to WebDAV or S3, with incremental snapshots
  • Multi-user with invite-code registration
  • API keys for the Bitwarden CLI

Organizations, collections, SSO, and SCIM are not implemented.

Getting Started

The simplest path uses Cloudflare’s Git integration:

  1. Fork the repository to your GitHub account.
  2. In the Cloudflare dashboard, create a Worker and connect your fork.
  3. Set the build command to npm run build and the deploy command to npm run deploy (or npm run deploy:kv to use KV instead of R2).
  4. Add a JWT_SECRET secret — a random string of at least 32 characters.
  5. Open the Workers URL (a custom domain is recommended) and create your account.

The D1 schema is created automatically on the first request.

Storage Options

Storage Card required Max attachment Free tier
R2 (default) Yes 100 MB (adjustable) 10 GB
KV No 25 MiB 1 GB

Use Cases

  • A low-cost, serverless password vault for individuals and families
  • Self-hosting Bitwarden-compatible sync without maintaining a VPS

Similar open-source projects, ranked by shared categories and tags.

All Security projects →