How this works
Two things are required of everyone: every work login lives in Keeper, and every application you use for work is declared here.
Part 1 — Keeper
Do this first. Declaring an application whose login is already in Keeper gets approved with nothing further required.
Accept your Keeper invitation
Check your inbox for an invitation from Keeper and follow it. You will set a master password — this is the one password you have to remember, so make it long and do not reuse it from anywhere else.
Install the browser extension
KeeperFill fills your logins automatically. Without it Keeper feels like extra work; with it, it is faster than what you do today.
Import the passwords saved in your browser
In Keeper: your email address, top right, then Settings → Import. Keeper imports directly from Chrome, Edge, Firefox and Safari, so you do not have to retype anything.
Delete them from your browser afterwards
This is the step people skip. A password still saved in your browser is still a password the company cannot see, audit or revoke. Once Keeper has them, clear them out.
Check Keeper has everything first. Once these are deleted they are gone from the browser.
Chrome
- Paste
chrome://password-manager/passwordsinto the address bar and press Enter - You will see the list of saved passwords
- Click the three dots beside each one and choose Delete
- To stop it saving new ones:
chrome://password-manager/settings,then turn off “Offer to save passwords”
Microsoft Edge
- Paste
edge://wallet/passwordsinto the address bar and press Enter - Tick the boxes beside the saved passwords, or use Select all
- Click Delete
- To stop it saving new ones:
edge://settings/passwords,then turn off “Offer to save passwords”
Safari (Mac)
- Safari menu, then Settings, then the Passwords tab
- Unlock with your Mac password or Touch ID
- Select the entries and click Delete
- On newer macOS versions this opens the separate Passwords app - same steps
Firefox
- Paste
about:loginsinto the address bar and press Enter - Open each entry and click Remove
- To stop it saving new ones: Settings, Privacy & Security, untick “Ask to save logins and passwords”
iPhone and iPad
- Settings app, then Passwords (or General, then Autofill & Passwords on newer versions)
- Unlock with Face ID or your passcode
- Swipe left on an entry and tap Delete
- Then turn on Keeper under Autofill so it fills logins instead
Stop sending logins over chat and email
If a colleague needs access to something, share the record through Keeper. A password sent in a message stays in that mailbox indefinitely.
The shortcut: “Sign in with Microsoft”
Some websites let you sign in with a button saying Sign in with Microsoft or Continue with Microsoft, instead of making you create a username and password.
Always use that button when you see it. There is no new password to invent, nothing to save in Keeper, and you sign in with the Be Bold account you already use every day.
It is also safer for the company: if someone leaves, their access to everything stops at once, rather than depending on a password sitting in a vault somewhere.
When you list the tool here, choose Microsoft SSO as the sign-in method. Nothing about Keeper will be asked of you.
Already set something up with a password, and later notice it offers Microsoft sign-in? Open the record and press Switch to SSO. The Keeper requirement disappears automatically.
Part 2 — This registry
Sign in
Enter your work email. You get a sign-in link by email — there is no password and no account to create. The link works once and expires in 15 minutes.
Declare what you already use
Declare what I use in the sidebar. List everything: free tools, tools you use once a month, browser extensions, AI tools, and anything you signed up for with a personal email but use for work.
If you are unsure whether something counts, list it. Over-declaring costs nothing.
Request anything new before you sign up
Check Approved catalog first — if it is there, you do not need to ask. Otherwise use Request an app. You get a decision within 1 business day.
If other people will use it too, you must list their email addresses. Each of them gets their own record and confirms the requirements themselves.
Meet the conditions and confirm
Most approvals come with conditions — usually storing the login in Keeper. Open the row on My applications and press I have met these conditions once done.
Anything left unconfirmed after 7 days is flagged red and chased by email. Access can be withdrawn for approvals whose conditions are never met.
Never do these
- Type a password into this registry. It asks where a login is stored, never what it is.
- Put patient data into any tool that has not been approved for it.
- Share a work login over chat or email.
- Reuse a personal password for a work account.
Still stuck?
Ask your manager or IT. Asking before you sign up for something is always cheaper than asking after.
Go to the registry