CiteWorks Studio

How AI Search Is Recommending Password Managers: Monthly Trends

Mark HuntleyBy Mark HuntleyFounder and CEO
10 minutes read

Key Takeaways

  • Bitwarden led valid recommendation coverage in September 2026 at 84.1%, widening its lead over 1Password to 8.3 points despite a pullback from August.
  • 1Password's overall coverage fell to 75.8%, but it remained the rank-one leader, taking the top spot in 40.9% of qualified observations.
  • RoboForm posted the largest top-three gain, rising 5.1 points to 10.6%, indicating better placement within recommendation lists rather than broader coverage growth.
  • LastPass weakened across both visibility and recommendations, with raw mention presence dropping 14.8 points and valid recommendation coverage falling to 2.8%.

Executive Summary

Bitwarden remains the category leader in September 2026, holding valid recommendation coverage of 84.1%, up 3.3 points from 80.8% in July. The gap to second-place 1Password, which sits at 75.8% coverage, is 8.3 points. Bitwarden's month-over-month movement was down 4.9 points from August's 89.0% peak — a significant single-month decline — but that move still left the brand's baseline-to-current change at a stable 3.3-point gain. 1Password's coverage also fell 5.6 points from August to September, a significant prior-month move that widened the gap between the two leaders to 8.3 points, though it did not change their relative order.

The category's largest movement across the July-to-September baseline appears on a secondary metric: RoboForm's top-three recommendation rate climbed 5.1 points from 5.5% to 10.6%. The largest decliner on the primary coverage metric is 1Password, down 2.3 points from 78.1% in July to 75.8% in September, though that baseline movement fell within normal variation. No tracked brand registered a significant change in valid recommendation coverage across the baseline period, making this a month of category-wide stability punctuated by narrower movements beneath the headline metric.

The key story this month is the pullback from August's elevated levels across the upper tier. Bitwarden, 1Password, NordPass, and Proton Pass all held September coverage above their July baselines but below their August peaks, indicating that August's higher readings did not carry into September for these four brands.

Each monthly benchmark run begins with 800 prompt-surface observations across the tracked AI/search surface universe: 468 unique questions in September and 390 in July, with all 800 prompts in both months mentioning a tracked brand or competitor. Of those, 767 were relevant and 33 irrelevant in September, versus 784 relevant and 16 irrelevant in July. Brand-level metrics use the 528 qualified observations in September and 530 in July that survived both qualification stages.

AI recommendation trend

valid recommendation coverage, Jul 2026 to Sep 2026

0%25%50%75%100%Jul 2026Aug 2026Sep 2026
  • Bitwarden84.1%
  • 1Password75.8%
  • NordPass65.5%
  • Proton Pass62.5%
  • RoboForm34.5%
  • Keeper32.2%
  • Dashlane27.1%
  • LastPass2.8%
  • Enpass0.8%
  • **Zoho Expense0.0%
  • Zoho Inventory0.0%
  • Zoho Vault0.0%

Key Findings

Signal

September 2026 finding

Category leader

Bitwarden leads with 84.1% valid recommendation coverage, ahead of 1Password at 75.8%

Largest prior-month decline

1Password fell 5.6 points from August's 81.4%, a significant prior-month move

Rank-one leader

1Password holds top placement in 40.9% of qualified observations, up 4.9 points from 36.0% in July

Largest top-three movement

RoboForm's top-three rate rose 5.1 points to 10.6%, from 5.5% in July

Sharpest presence drop

LastPass raw mention presence fell 14.8 points to 26.5%, from 41.3% in July

Widening leadership gap

Bitwarden's lead over 1Password widened from 2.7 points in July to 8.3 points in September, continuing to widen from 7.6 points in August

Benchmark Context

The report separates the raw collection universe from the qualified analysis set. Brand-level recommendation percentages are calculated within the qualified benchmark set.

Research stage

Jul 2026

Sep 2026

What it represents

Source prompt-surface observations collected

800

800

Total prompt-surface observations across the AI/search surface universe

Unique questions

390

468

Distinct questions asked across the benchmark

Brand / competitor mentions

800

800

Prompts mentioning a tracked brand or competitor

Relevant prompts

784

767

Prompts relevant to the password managers vertical

Irrelevant prompts

16

33

Prompts outside the vertical scope

Qualified benchmark observations

530

528

Public denominator for brand-level metrics

Qualified surface breadth

6

6

AI surface families with at least one qualified observation

These two research stages sit inside the same qualification pipeline: the funnel above shows how the raw prompt-surface volume narrows down to the qualified benchmark set, while the metrics below summarize how that qualified set performed at the category level.

Benchmark-Level Metrics

Metric

Jul 2026

Sep 2026

Change

Qualified observations

530

528

Down 2

Companies tracked

10

10

Flat

Recommendation-shaped answer share

50.0%

51.5%

Up 1.5 points

Valid recommendation shortlist share

80.6%

84.5%

Up 3.9 points

Category leader by coverage

Bitwarden (80.8%)

Bitwarden (84.1%)

Lead retained

The August peak of 89.0% represents the high point of the series for Bitwarden; September's 84.1% still sits above the July baseline. The August spike in recommendation-shaped answer share (65.6%) also settled back in September to 51.5%, closer to July's 50.0% level.

AI Recommendation Trend

The two-brand leadership structure held, with Bitwarden ahead of 1Password, while the upper mid-tier converged within a narrower band than in August.

Brand

Jul 2026

Sep 2026

Movement

Sep 2026 rank

Bitwarden

80.8%

84.1%

Up 3.3 points

1st

1Password

78.1%

75.8%

Down 2.3 points

2nd

NordPass

61.3%

65.5%

Up 4.2 points

3rd

Proton Pass

58.3%

62.5%

Up 4.2 points

4th

RoboForm

32.6%

34.5%

Up 1.9 points

5th

Keeper

33.2%

32.2%

Down 1.0 points

6th

Dashlane

28.5%

27.1%

Down 1.4 points

7th

LastPass

4.9%

2.8%

Down 2.1 points

8th

Enpass

0.6%

0.8%

Up 0.2 points

9th

Zoho Vault

0.0%

0.0%

Flat

10th

Zoho Expense

0.0%

0.0%

Flat

11th

Zoho Inventory

0.0%

0.0%

Flat

12th

No brand's baseline-to-current movement exceeded normal variation on the primary coverage metric, though Bitwarden and 1Password each registered a significant single-month decline from August to September. Bitwarden maintained its leadership position despite that pullback, and 1Password's decline did not change its second-place standing.

What Changed This Month

Bitwarden

Bitwarden's valid recommendation coverage moved down 4.9 points from August's 89.0% peak to 84.1% in September, a significant single-month decline. Against the July baseline of 80.8%, the brand still holds a 3.3-point gain, keeping its overall classification stable.

Bitwarden's top-three recommendation rate rose 3.3 points to 72.7% from 69.4% in July, while its rank-one rate moved down 1.4 points to 29.5% from 30.9%. Raw mention presence climbed to 98.3%, up 1.9 points from 96.4%.

The distinction: Bitwarden's coverage pullback came from a broad retreat in how often it appeared in recommendation shortlists, not from a loss of presence. The brand remains present in nearly every qualified answer, with only 9 of 528 observations in September not mentioning it.

Highest-priority diagnostic: Which specific prompt types drove the August-to-September coverage decline, and does the brand's lower coverage reflect a shift in how AI systems structure recommendation lists rather than a loss of competitive standing?

1Password

1Password's valid recommendation coverage fell 5.6 points from 81.4% in August to 75.8% in September, a significant prior-month move that erased most of its August gain. Against the July baseline of 78.1%, the brand is down 2.3 points, a change within normal variation.

1Password's rank-one rate, however, rose 4.9 points from 36.0% in July to 40.9% in September, keeping the brand as the clear top-placement leader. Its raw mention presence fell 4.0 points from 94.5% to 90.5%.

The distinction: 1Password is being recommended across fewer answers, but when it is recommended, it is more likely to hold the top slot. The brand lost ground on coverage breadth while strengthening its position within the answers where it appears.

Highest-priority diagnostic: Which answer types dropped 1Password from their recommendation shortlists, and what distinguishes the answers where the brand still earns first-place placement?

NordPass

NordPass held valid recommendation coverage of 65.5% in September, up 4.2 points from 61.3% in July but down 5.5 points from August's 71.0% peak. The prior-month decline fell just inside the significance threshold, keeping the brand classified as stable.

NordPass's raw mention presence rose 7.7 points from 69.8% to 77.5% across the baseline. Its top-three rate rose 4.9 points to 41.3% from 36.4%, while rank-one placement moved down slightly from 5.9% to 5.7%.

The distinction: NordPass is being mentioned more often, and its top-three positioning improved, even as its overall recommendation coverage pulled back from August levels. The brand converted added presence into stronger placement in some answers while losing coverage breadth elsewhere.

Highest-priority diagnostic: Which surfaces account for NordPass's sustained presence gain, and why did that presence not translate into higher overall coverage in September?

LastPass

LastPass's valid recommendation coverage fell to 2.8% in September, down 3.3 points from August's 6.1%, a significant prior-month move. Against the July baseline of 4.9%, the brand is down 2.1 points, within normal variation. The brand recorded only 15 valid recommendations in September, down from 33 in August and 26 in July.

LastPass's raw mention presence fell 14.8 points from 41.3% in July to 26.5% in September, the sharpest presence decline in the category. Its net sentiment score held at -0.3, unchanged from July.

The distinction: LastPass is both being mentioned less often and recommended less often, with no offsetting improvement in sentiment. The brand's presence decline spans the full baseline period, and it now holds just over a quarter of the mention presence it needs to compete for recommendation slots.

Highest-priority diagnostic: Which prompt categories have dropped LastPass from their answers entirely, and do the remaining mentions cluster in factual or cautionary responses rather than recommendation shortlists?

RoboForm

RoboForm's top-three recommendation rate rose 5.1 points from 5.5% in July to 10.6% in September, the largest secondary-metric movement in the category. Its overall coverage rose 1.9 points to 34.5% from 32.6%, within normal variation.

RoboForm's rank-one rate rose 2.1 points from 2.3% to 4.4%, and its raw mention presence moved up 1.1 points to 40.3%. The brand recorded 182 valid recommendations in September, up from 173 in July.

The distinction: RoboForm is improving placement quality faster than it is expanding coverage breadth. The top-three gain suggests placement within recommendation lists is improving, rather than simply an expansion in how many answers include the brand.

Highest-priority diagnostic: Which prompt types drove RoboForm's top-three improvement, and is the gain concentrated on specific AI surfaces or spread across the benchmark?

Keeper and Dashlane

Keeper and Dashlane, the two brands in the 30% coverage band, both moved within normal variation across the baseline. Keeper's coverage fell 1.0 points from 33.2% to 32.2%, while its top-three rate rose 2.8 points to 10.0%. Dashlane's coverage fell 1.4 points from 28.5% to 27.1%, with top-three placement down 2.5 points to 4.5%.

Keeper's rank-one presence rose from a single valid recommendation in July to 3 in September. Dashlane's rank-one count fell from 3 in July to 1 in September.

The distinction: Keeper improved placement quality while Dashlane lost ground on the same measure. Both brands maintained stable presence rates, so the divergence reflects a difference in where each is ranked within answers, not whether either appears.

Highest-priority diagnostic: Which evidence sources or product attributes are associated with Keeper's improved top-three positioning, and what changed for Dashlane in the answers where it previously held first place?

Buyer-Intent Interpretation

Buyer-intent cluster

What it captures

Strategic question

Brand Recommendation

Prompts seeking which password manager to choose

Which brand is the default answer for open-ended recommendation requests?

Pricing & Value

Prompts comparing cost and subscription value

Which brands win on price positioning when AI surfaces pricing details?

Multi-Brand Comparison

Prompts seeking side-by-side comparisons of multiple options

Which brands are included in comparison answers and where do they rank?

The September qualified observations fell entirely within the discovery and consideration cluster (528 observations), with zero qualified observations in the comparison or pricing clusters.

The public benchmark therefore cannot yet answer price, value, or head-to-head comparison questions for the password managers vertical. The competitive signals in this report reflect recommendation behavior on discovery-style prompts only.

Brand Opportunity Summary

Brand

Sep 2026 coverage

Current signal

Highest-priority diagnostic

Bitwarden

84.1%

Category leader despite a significant prior-month pullback

Which prompts drove the August-to-September decline?

1Password

75.8%

Rank-one leader at 40.9%, coverage down significantly

Which answer types dropped the brand from shortlists?

NordPass

65.5%

Presence higher than July, coverage above baseline

Which surfaces drive the sustained presence gain?

Proton Pass

62.5%

Stable upper-tier position, coverage above baseline

Where did the August gains consolidate?

RoboForm

34.5%

Top-three rate up 5.1 points, largest secondary-metric gain

Which prompts drove the placement improvement?

Keeper

32.2%

Stable coverage, top-three improving

Why did top-three gains not lift overall coverage?

Dashlane

27.1%

Stable coverage, top-three down

Which answers no longer place Dashlane highly?

LastPass

2.8%

Coverage down significantly, presence down sharply

Which prompts dropped the brand entirely?

Enpass

0.8%

Minimal coverage, 4 valid recommendations

Which small set of prompts still recommends the brand?

Zoho Vault

0.0%

No coverage in September after 3 recommendations in August

Which prompts first surfaced the brand in August?

Zoho Expense

0.0%

No presence or coverage

Is the brand outside the password manager scope?

Zoho Inventory

0.0%

No presence or coverage

Is the brand outside the password manager scope?

The benchmark identifies where attention is warranted; a company-level analysis is needed to explain why.

Evidence Behind the Benchmark

The aggregate metrics are built from prompt-level observations (query, surface, recommendation outcome, rank, sentiment, and citations where exposed). Company-level analysis can go deeper into prompt, competitor, surface, and evidence patterns. Source presence is not automatically treated as proof of causation.

About This Benchmark

This report is part of the LLM Authority Index AI Market Discovery research program.

Report-Specific Interpretation Notes

  • Small-count brands (Enpass with 4 valid recommendations, Zoho Vault and LastPass with 15 or fewer) show movements that may not persist; absolute counts are named beside percentages.
  • The qualified denominator (528 observations) differs from the raw collection (800 prompts); brand-level percentages reflect only qualified observations that survived both qualification stages.
  • Movement between months is directional analysis that identifies changes worth investigating, not proof of cause.
  • The July-to-September series uses July as baseline; August figures belong in prose, not table columns.

Next Step

The Public Benchmark Shows Where a Brand Is Winning or Losing. A Company-Level Audit Shows Why.

Beneath the aggregate coverage percentage sit questions the public benchmark cannot answer: which high-intent prompts a brand wins or loses, which competitor takes the recommendation when a brand loses the slot, and which external sources shape those answers. These patterns determine whether a coverage gain is durable or a single-prompt artifact.

A company-specific AI visibility audit maps those prompt, surface, competitor, ranking, sentiment, and evidence-source patterns into a prioritized visibility strategy. It turns the benchmark's directional signals into actionable intelligence for a specific brand's position.

Request an AI visibility audit

/ Take the next step

Want to Understand Your AI Citation Footprint?

We start every engagement with a full audit of how AI systems reference your brand today.

Measurable, Repeatable Programme

Build a durable foundation of credible citations that compounds over time and continues to influence AI answers as new queries emerge

Citation Architecture Review

Identify which high-authority community sources are and aren't working in your favour across AI platforms.

AI Visibility Audit

Understand exactly how LLMs are referencing your brand today and which sources are shaping those answers.

/ Learn More

Understanding AI search visibility.

AI search experiences create answers by pulling information from many places online and summarizing it into a single response.

What Is AI Citation Intelligence?
AI citation intelligence is the process of measuring where AI platforms source their information and how frequently a brand is mentioned or referenced in AI-generated responses. Because LLMs synthesize across multiple sources, the sites and brands that appear repeatedly tend to influence how a topic or company is framed. This practice focuses on identifying which sources shape AI outputs and tracking brand visibility across different AI systems.
What Is Citation Architecture?
Citation architecture describes the set of sources that consistently inform how AI systems talk about a brand, product, or topic. LLMs draw from websites, articles, forums, and public discussion, and the sources they rely on most often become the backbone of their answers. Building strong citation architecture means ensuring that accurate, credible, high authority sources are the ones most likely to shape the way AI tools summarize and recommend a brand.
What Is Generative Engine Optimization?
Generative engine optimization (GEO) is the practice of improving the chances that AI systems use and cite your brand or content when generating answers. While traditional SEO is centered on ranking pages in search results, GEO focuses on how LLMs retrieve, interpret, and combine information when responding to a question. The objective is to strengthen the content and sources AI systems rely on, so your brand is treated as a trusted reference in AI responses.
What Is AI Share of Voice?
AI share of voice tracks how often a brand appears in AI-generated answers compared with competitors in the same category. It reflects visibility across AI platforms such as ChatGPT, Gemini, Claude, and Perplexity. Monitoring AI share of voice helps organizations see whether AI systems consistently include and recommend their brand for key queries or whether competitor brands are showing up more often.

About The Author

Mark Huntley

Mark Huntley

Founder and CEO

Mark Huntley, J.D. is founder of CiteWorks Studio, a strategic advisory focused on visibility, authority, and recommendation presence in AI-shaped search environments. His work centers on embedding-level GEO, vector optimization, and cosine gap engineering — helping brands align their digital presence with the retrieval systems that increasingly shape discovery, interpretation, and choice.

VIEW ALL CASE STUDIESREQUEST AN AI VISIBILITY AUDIT