What’s New in the Password Vault?
Centralized Non-SSO Website/Credential Management
Manage and access Password Vault credentials from the User Portal and Admin Portal.
In the User Portal, users can:
- Access their Password Vault
- Manage and share assigned organizational credentials
- Store personal credentials in a private space the organization can’t access
Use Tags to organize credentials and websites.
Granular Sharing
- Share websites that have multiple linked credentials
- Share individual credentials with trusted users
New sharing permissions for credentials and websites: - Auto-login
- View Secrets
- View Details
- Manage
New folder sharing permission: - View Secrets
JumpCloud Go Browser Extension
JumpCloud Go unifies password management, authentication, SSO, and SaaS management in one browser experience.
Access Password Vault websites and credentials from the browser, and autofill credentials for non-SSO websites.
With the JumpCloud Go browser extension, users can:
- Launch and autofill non-SSO website passwords and 2FA codes
- View secrets for credentials stored in Password Vault
- Capture passwords during login, update, or sign-up
JumpCloud Protect Mobile App
JumpCloud Protect still handles MFA and TOTP, and now lets users access and autofill Password Vault credentials in mobile apps. With JumpCloud Protect, users can:
- Retrieve and view secrets for credentials stored in Password Vault
- Autofill mobile apps
- Launch and autofill websites in the mobile browser
Common Technical Questions
Migration
Yes. Sharing preferences for folders and credentials are retained.
After migrating to Password Vault, you can access your websites/credentials through:
User Portal: Users can view, search, manage, and share their credentials.
JumpCloud Go Browser Extension: Provides browser autofill and quick access to Password Vault websites/credentials. The default extension switches to JumpCloud Go.
JumpCloud Protect Mobile App: Users can view and autofill credentials on supported mobile apps.
Yes. Password Vault and Legacy Password Manager can run at the same time. Admins deactivate Legacy Password Manager based on the organization’s migration progress.
Credentials and folder sharing permissions migrate automatically to Password Vault. Use Password Vault for adding, editing, and sharing credentials, and for browser autofill.
Yes, but we strongly recommend using Password Vault only.
There is no bi-directional sync between Password Vault and Legacy Password Manager. If users add credentials to Legacy Password Manager after migration, an admin must re-run migration to import them.
The Legacy Password Manager desktop app, mobile app, and browser extension will be deprecated. Support is limited to critical bug fixes and security vulnerabilities. Admins deactivate Legacy Password Manager based on migration progress.
After deactivation in the Admin Portal:
The desktop app, browser extension, and mobile app no longer work.
After migration:
- Users access credentials in the User Portal.
- Admins manage credentials in the Admin Portal.
- Browser autofill is provided by the JumpCloud Go Browser Extension.
This happens when you’re a folder member of a shared folder that contains Secure Notes in Legacy Password Manager. Request the View Secrets permission for that shared folder from the folder manager. If you’re unsure who manages the folder, contact your organization admin.
Password Vault standardizes sharing. Access uses two permissions:
Connect: Autofill without exposing credentials.
View Secrets: View secrets for all credential types.
To View Folder Manager, go to Password Vault > Folders > Select Folder > View Folder Manager.
Common causes of failed or partial migration:
- Cloud backup older than 2024
- User got a new device and hasn’t set up the Legacy Password Manager desktop app.
Backups run daily. To create one manually: open the Legacy Password Manager desktop app > Settings > Backup Center > Create a Backup.
Once the backup has been created, reach out to your org admin to re-trigger migration.
No. Users can’t access credentials offline. Password Vault is centralized, so users must sign in to the User Portal.
Password Vault offers additional functionality compared to the legacy Password Manager. However, there are a few important architectural and functional changes.
Centralized Credential Storage
Password Vault uses a centralized architecture.
Unlike the legacy Password Manager, credentials are not stored locally on end-user devices. Instead, credentials are securely stored in the cloud and accessed as needed.
Mobile App Credential Management
The JumpCloud Protect mobile application currently supports:
- Viewing credentials
- Autofilling credentials
The following actions must be performed through the User Portal or Admin Portal:
- Editing credentials
- Adding credentials
JumpCloud Go Browser Extension
In the JumpCloud Go browser extension, set Domain-Specific Autofill to Domain and Subdomain.
Yes. Go to Access > Password Vault > Settings > Platform Access > Disable Browser Extension.
If browser extension management or Password Vault is disabled, JumpCloud Go sends users to the User Portal and doesn’t show the extension UI.
Yes. JumpCloud Go can capture passwords during login, update, or sign-up.
To add or edit websites/credentials, JumpCloud Go redirects you to the Password Vault User Portal.
JumpCloud Protect Mobile App
JumpCloud Protect consists of:
- Authenticator: Generates user MFA codes and handles push notifications for User Portal access.
- Password Vault: Websites/credentials are stored on JumpCloud servers and retrieved after the user authenticates.
Yes. In the Admin Portal, go to Access > Password Vault > Settings > Platform Access > Disable Mobile Access.


