We performed a comparison between HashiCorp Vault and LastPass based on real PeerSpot user reviews.
Find out in this report how the two Enterprise Password Managers solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The product is free and easy to use. It is well documented with an easy implementation process."
"The interface is very simple to navigate."
"The most valuable feature of HashiCorp Vault is the management of tickets in the pipeline."
"It is an added value for our customers to have a Secrets Management workflow available that is PaaS/CaaS/KaaS Platform agnostic."
"For me, the most valuable features include that it's easy to manage and maintain the password API for retrieving passwords and other things."
"It is user-friendly and easy to implement from any application point."
"It can still be configured by a separate team other than developers. That's why I think it's more secure."
"This solution is easy to use and to integrate."
"Tech support has been good. We haven't needed it much, because it is not a complex application. There is not that much you have to do with it."
"It's always hard to put a value on return on investment. You avoid one breach and it's paid for a million times over. We got a penetration test company internally, just to see how secure our network is, and there happened to be one bit of software that had been overlooked by an external company that managed it. It hadn't been upgraded so that managed to get them into the network. They would've been able to access through the test thing a file that we had previously. If that was a real-life scenario they would have been able to get into our network and get full access to our organization's passwords. If they did get in, they would have gotten access to the cloud. The ROI we see is that we are completely secured compared to what we had previously where there was a vulnerability."
"The stability has been rock solid. A couple of years ago, they were breached. However, if you had two-factor authentication enabled, it didn't affect you. We did, so it has been good."
"It's improved security; we don't have to worry about people storing password loosely and secure them."
"It is easy to use."
"The most valuable feature for me is being able to pair applications and user permissions."
"One feature that is really important to us is the ability to create secure notes."
"Off-boarding of people is easy without changing shared account passwords."
"We could use more documentation, primarily to do with integrations."
"There could be a plugin for the database to change the secret automatically. It would be an efficient feature for password security."
"The product needs to improve its customization. It should be also more like easy to plug and play."
"It would be helpful to have more advanced features."
"The technical support was hard to get a hold of and lacking in service."
"In terms of features, the only thing that I found a little bit hinky was that there was no revocation or deletion on the model we were using. Once in a financial year, a client interacts, and you pay for that client for the year. So, there are just little things like that in the pricing. There should be more clarity around the end of the key. I know there is no system like this. They all are the same. I tested Microsoft, Google, and some others, and none of them really want you to delete a key, which makes sense. You delete a key, and you lose everything that it has wrapped or encrypted, but it's actually just a language. Deletion isn't really deletion. It's really revocation, but overall, HashiCorp Vault ticked all the boxes for us, and I couldn't fault it."
"I would rate the stability a six out of ten. There are some bugs and glitches. We are in touch with the vendor to resolve them."
"The documentation is very general; it should have more examples and more use cases."
"Our biggest issue over the years was around the stability of the LDAP sync to AD."
"The management through the plugin is poor. It consumes tons of client resources especially as an administrator."
"One thing I wish LastPass had is an integration with Active Directory, not for synchronizing users but to actually manage, in some way, privileged accounts by replacing the password of LastPass itself."
"Right now we have two products; there is the password manager and there is the authenticator app. Ideally, these should be fully integrated and support better handling of two-factor authentication or any other authenticator data."
"I struggle a little bit with the mobile app. As a browser extension, it works really well, and we are able to get to what we need to. However, on the phone, it's not quite as easy to navigate."
"I also don't like the add-in for Internet Explorer and Google Chrome, because when you do the add-in, you can actually save that to your credentials in your IE, and the problem is, if I left my screen open, or any of the IT people leave their screen open someone could come up and access all their credentials in LastPass without having to put a password in within your own network. I don't like that functionality. We've banned that from any of our staff adding that as an add-in because we see that as a security risk."
"I would like to be able to reduce the log out time of the session."
"Its user interface should be better, and there should probably be more information about scalability."
Earn 20 points
HashiCorp Vault is ranked 3rd in Enterprise Password Managers with 16 reviews while LastPass is ranked 17th in Enterprise Password Managers. HashiCorp Vault is rated 8.2, while LastPass is rated 7.4. The top reviewer of HashiCorp Vault writes "Useful for machine-to-machine communication and has secret engine feature ". On the other hand, the top reviewer of LastPass writes "Straightforward to set up, good support, intuitive to use, and offers good value for the cost". HashiCorp Vault is most compared with Azure Key Vault, AWS Secrets Manager, CyberArk Enterprise Password Vault, Keeper and 1Password, whereas LastPass is most compared with Azure Key Vault, BeyondTrust Password Safe, Keeper, CyberArk Enterprise Password Vault and OneLogin by One Identity. See our HashiCorp Vault vs. LastPass report.
See our list of best Enterprise Password Managers vendors.
We monitor all Enterprise Password Managers reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.