Skip to main content
Question

Functional ID Password Manager Requirements to be managed in BT Password safe

  • April 28, 2026
  • 1 reply
  • 31 views

Hi Team,  

We have below requirements from our customer, how it can be achieved in the BTPS. Appreciate your quick response.

For Functional IDs, we’re looking to see if BT’s password manager is capable of basic username/password storage. I believe items 1 and 2 are the only “required” features. When you can, please send me whatever KBs, info sheets you have for BeyondTrust’s Secure Safe.

 

  1. Contain the following fields
    1. Unique identifier:
    2. Username: ideally, would like to be alerted if the username already exists.
    3. Password:
    4. Notes: a notes or custom field that allows
  2. Copy/Paste feature without showing the password. Ideally copy password option would clear from copy/paste cache after a limited time (30 secs/1 mins)
  3. Password Generator – allows creation of 25 character complex password. This is optional but preferred.
  4. Optional features, not required
    1. Autofill option without showing password
    2. Show/identify weak password.




Thanks and regards,

Billa Shivateja.

1 reply

  • BeyondTrust Employee
  • April 29, 2026

Hi Billa,

 

In Secret Safe each folder, Safe and Secret will have an ID (Unique Identifier). You can see this from our API reference guide, link below.

Get folder by ID

Get safe by ID

Get credential secret by ID  

We do not control username so in a specific Safe you can have multiple secrets with the same username. E.g. of a use case:

  1. User need to create a Safe that stores all the Broadband network devices account/password. Each device will have a admin account therefore you can create multiple admin accounts with different password.  

The copy/paste function is available but it does not clear cache. 

When creating a secret it has the capability to generate a password based on the password policy you created within Password Safe.

Secrets Safe: Configure | PS Pathfinder

Lastly it does not validate if the Password is weak as you have 2 options (manual entry or auto-generate based on your configured Password Policy).