= RoboForm =

RoboForm
- Logo: RoboformOfficial-Logo-Black-Font-1000x177-RGB.png
- Screenshot Alt: RoboForm application logo
- Developer: Siber Systems
- Operating System: macOS, Windows, iOS, Android, watchOS, Wear OS
- Language Count: 30
- Genre: Password manager
- License: Freemium / Proprietary software

RoboForm is a password manager, which is a class of software that allows users to have secure, unique passwords for every website accessed. It is amongst the older password managers on the market, developed by US company Siber Systems, distributed as a freemium product with a subscription plan, available on macOS, Windows, iOS and Android and as a plugin for web browsers.

The Password Checkup tool uses zxcvbn to assess password strength.It detects credential breaches by querying the Have I Been Pwned? database.

== Overview ==
Siber Systems is a company founded in 1995 by Vadim Maslov with headquarters in Fairfax, Virginia. The company was founded to capitalize on research into text parsing, compilation and transformation to produce useful, commercially-viable technologies. They released RoboForm as their first consumer product in 1999.

RoboForm was initially a form-filling utility and was further developed into a full-fledged password manager, then delivered with password generator, password capturer, password importer, multi-factor authentication and secure password sharing.

The first business version of RoboForm was released in 2009. In 2010 it was introduced premium cross-platform subscription service for individuals and in 2015, Siber Systems launched RoboForm as a software as a service solution (SaaS). The freemium model was available starting in 2017.

== Security Criticism ==
=== 2024 Evaluation of Password Checkup Tools ===
A 2024 study by Hutchinson et al. examined the “password checkup” features of 14 password managers, including RoboForm, using weak, breached, and randomly generated passwords. The authors found that the evaluated products reported weak and compromised passwords inconsistently and sometimes incompletely. No manager successfully flagged all known breached passwords. The study concludes that such inconsistencies may give users a false sense of security.

=== 2025 DOM-based Extension Clickjacking ===
Security researcher Marek Tóth presented a vulnerability in browser extensions of several password managers (including RoboForm) at DEF CON 33 on August 9, 2025. In their default configurations, these extensions were shown to be exposed to a DOM-based extension clickjacking technique, allowing attackers to exfiltrate user data with just a single click. The affected password manager vendors were notified in April 2025. According to Tóth, RoboForm version 9.7.6 (July 25, 2025) addressed the issue.

== See also ==

- List of password managers
