# No report as weak password in case of same password and username

**URL:** https://vaultwarden.discourse.group/t/no-report-as-weak-password-in-case-of-same-password-and-username/2349
**Category:** Feature Requests
**Created:** [February 8, 2023, 8:13am UTC](https://vaultwarden.discourse.group/t/no-report-as-weak-password-in-case-of-same-password-and-username/2349 "2023-02-08T08:13:54Z")
**Posts on this page:** 6
**Page:** 1

<div class="post-metadata">

### Author: ![Zoldir](https://avatars.discourse-cdn.com/v4/letter/z/43a26b/32.png) [@Zoldir](https://vaultwarden.discourse.group/u/Zoldir)
#### Post date: [February 8, 2023, 8:13am UTC](https://vaultwarden.discourse.group/t/no-report-as-weak-password-in-case-of-same-password-and-username/2349/1 "2023-02-08T08:13:54Z")

</div>

Hello,

I noticed yesterday, probably a wrong copy/paste in one of our login, that have the same password and username. I checked in the weak passwords report if the login was reported there, but sadly no.

Is this a wrong configuration or a missing feature of the weak passwords report ?

---

<div class="post-metadata">

### Author: ![stefan0xC](https://yyz2.discourse-cdn.com/free1/user_avatar/vaultwarden.discourse.group/stefan0xc/32/1765_2.png) [@stefan0xC](https://vaultwarden.discourse.group/u/stefan0xC)
#### Post date: [February 8, 2023, 8:32am UTC](https://vaultwarden.discourse.group/t/no-report-as-weak-password-in-case-of-same-password-and-username/2349/2 "2023-02-08T08:32:24Z")

</div>

There is a separate report for reused passwords?

> **[Vault Health Reports | Bitwarden Help Center](https://bitwarden.com/help/reports/#reused-passwords-report)**
>
> Vault health reports are a much-used capability of the Bitwarden password manager that enable you to identify weak, re-used, and compromised passwords.

---

<div class="post-metadata">

### Author: ![Zoldir](https://avatars.discourse-cdn.com/v4/letter/z/43a26b/32.png) [@Zoldir](https://vaultwarden.discourse.group/u/Zoldir)
#### Post date: [February 8, 2023, 9:03am UTC](https://vaultwarden.discourse.group/t/no-report-as-weak-password-in-case-of-same-password-and-username/2349/3 "2023-02-08T09:03:09Z")

</div>

No, I think I wasn’t clear when I described the problem. My username is an email address, and the password is the same email address, probably due to a wrong copy/paste at the creation of the login. IMO, this case should be reported in the weak passwords report, but it’s not. We also have tons of passwords as we use Vaultwarden in our company and checking all shared password one by one is not an option.

---

<div class="post-metadata">

### Author: ![BlackDex](https://yyz2.discourse-cdn.com/free1/user_avatar/vaultwarden.discourse.group/blackdex/32/8_2.png) [@BlackDex](https://vaultwarden.discourse.group/u/BlackDex)
#### Post date: [February 8, 2023, 6:27pm UTC](https://vaultwarden.discourse.group/t/no-report-as-weak-password-in-case-of-same-password-and-username/2349/4 "2023-02-08T18:27:21Z")

</div>

This is a client side feature. I would suggest to report this at Bitwarden. They maintain and build all clients.

---

<div class="post-metadata">

### Author: ![alexlehm](https://yyz2.discourse-cdn.com/free1/user_avatar/vaultwarden.discourse.group/alexlehm/32/1893_2.png) [@alexlehm](https://vaultwarden.discourse.group/u/alexlehm)
#### Post date: [June 9, 2026, 10:37am UTC](https://vaultwarden.discourse.group/t/no-report-as-weak-password-in-case-of-same-password-and-username/2349/5 "2026-06-09T10:37:20Z")

</div>

I noticed that as well, it is misleading to claim that the password is weak when it is duplicate, this is shown in the vaultwarden web app

---

<div class="post-metadata">

### Author: ![BlackDex](https://yyz2.discourse-cdn.com/free1/user_avatar/vaultwarden.discourse.group/blackdex/32/8_2.png) [@BlackDex](https://vaultwarden.discourse.group/u/BlackDex)
#### Post date: [June 14, 2026, 9:36pm UTC](https://vaultwarden.discourse.group/t/no-report-as-weak-password-in-case-of-same-password-and-username/2349/6 "2026-06-14T21:36:21Z")

</div>

The Vaultwarden web-app is just a fork of Bitwarden web-app with minor changes like logos and naming and some small other items so that it works with Vaultwarden, no features are added or modified.
