🎉 We're very happy to announce our new release KeePassXC 2.7.11 and... *drumroll* that the KeePassXC version 2.7.9 has been awarded a CSPN Security Visa by the French National Cybersecurity Agency (ANSSI). 🎉❤️🔒
See our blog post for more information: https://keepassxc.org/blog/2025-11-23-2.7.11-released/ #VisaSecu #KeePassXC
The most notable new features are: support for more file types in the inline attachment viewer, the ability to edit text file attachments, a new database merge confirmation dialog, support for groups in KeeShare, and an option for automatically generating passwords in new entries.
On 17 November 2025, KeePassXC (Version 2.7.9 for Windows 10) has been awarded a security Visa by the French National Cybersecurity Agency (ANSSI) for a First-level Security Certification (CSPN) with report No. ANSSI-CSPN-2025/16.
Update: There's an issue with the code signature on macOS, which prevents users from using the browser extension and the CLI tool. We're looking into that and will post a fix later today. https://github.com/keepassxreboot/keepassxc/issues/12713#issuecomment-3570094213
New macOS DMG and AppImage builds have been posted as 2.7.11-1.

@keepassxc uhm... and I though I was going crazy 😅

just a regular macOS thing... 👌😉

I love @keepassxc ! Thanks for your hard work.
I use keepass + nextcloud for database redundancy and that has worked for me for many years.
@keepassxc ANSSI is just the french NSA. They are not a respectable organisation anymore, not since they relinquished their defend-only stance and started having offensive capabilities.
@keepassxc Given the use of AI in KeePassXC development, totally worthless awards

@SkylerHandler @keepassxc

Actually they aren't worthless. They indicate the likelihood of the software being rotten and voluntarily backdoored.

In France, real security is equated to criminality. GrapheneOS knows something about it...

@keepassxc since you're using ai slop as code that award doesn't show the quality of your product but the lack thereof in the award.

Only stupid people use a passwords safe coded by ai.

@walsonde @keepassxc They aren’t. Please read their blog and stop spreading fake news.
@wolfram_roesler @keepassxc You really should not toot before activating your brain. No, really. You just embarrassed yourself to the max. They literally say so themselves on Github. Are KeepassXC now spreading fake news themselves.
@walsonde @keepassxc Please read their blog https://keepassxc.org/blog/2025-11-09-about-keepassxcs-code-quality-control/ (or, if you prefer a summary in German, https://gnulinux.ch/keepassxc-team-erklaert-seine-ki-verwendung). And please be kind and stop trying to insult people who know what they’re talking about, this is Mastodon, not Twitter.
About KeePassXC’s Code Quality Control – KeePassXC

KeePassXC Password Manager

@wolfram_roesler Is droidmonkey part of the devteam? Because he says he is. And he says publicly they are using ai code since July.

Maybe he does not know what he's talking about. I mean, I know a lot of people working for companies not knowing, what those companies are doing. And since I know droidmonkey only from his allegedly official role at keepassxc, he might be lying. I wouldn't know.

@walsonde @keepassxc Please carefully read what I wrote, and the links I quoted.

Hints:
1. Not sure how much you know about software development, but using AI dev tools and allowing AI slop into the code base are two very different things.
2. I’ll leave it to droidmonkey to speak for himself if he so chooses, but rest assured that he is a seasoned professional who knows very well what he’s talking about, and certainly not a liar.

@wolfram_roesler @keepassxc I've really been more than patient with you until now. I really don't care about your fantasies. I said here what "a seasoned professional who knows very well what he's talking about and is certainly not a liar" said himself and you called me a liar for it. Then you told me to read a blog, which again says the same thing as me and the certainly not liar professional. The only conclusion here and now can be that you simply don't care about the truth and just want to troll and make yourself important.

I'm muting you now.

https://antifa.style/@walsonde/115606890050782546

Kai und der Andere (@[email protected])

Me: Some Company are using AI code where they shouldn't. Somebody: No, they're not. You are spreading fake news. M: Some Company said so themselves. S: Noooo, read their blog. Don't insult people with confusing facts!! This is Fediverse not Twitter!!!!! Their blog: We are using AI code. What is this? Candid camera?

Antifa Style
@walsonde @keepassxc Sigh. Clearly a grown-up. Whatever. At least I tried.
@walsonde What password manager are you using then?
@keepassxc Congrats for the visa, this is excellent news!
@keepassxc
Isnt @GrapheneOS dealing with ANSSI?
@keepassxc where's the non-ai fork?

I realize you guys are trying to be careful and audit the code, but that's your business, not mine, I have passwords to protect. I can't have any fuzzy details in the mix like Ai, sorry.

Apparently it's only used in dev, not anything final, which, while I feel 'better' about, still ignores the damage Ai does to the environment and gives it a sense of false-validity for other devs to consider.

None is better than any.
@firekeeper Why do you ask us? Feel free to start one. So far, the most "fuzzy" thing in the "mix" has been us and other human contributors. We don't need AI to produce strange and hard-to-find bugs. We're perfectly capable of sourcing those fully organically. Which is why we have code review and a test suite.
@keepassxc to put more attention on the issue and how much you guys are downplaying it.