We'd like the ability to grant a user the ability to view that a list exists, but not view any entries within the list. The ability for a user to see the existence of all lists seems to already be implemented in the "Request Access to Passwords" screen.
This already seems to be partially implemented by granting view only access to a list, and enabling "Hide Passwords from users with the following permissions: View" which will allow the target user to open the list, see all data, but not be able to read or open any password:
However, this then requires any user that we want to show the password to, to have modify permission on the password (something we wish to avoid). Additionally, the only field that seems to be masked for a view-only user is the built in password field, so other sensitive data (TOTP token (?!), IP addresses, additional passwords, etc.) is all still shown and can be copied.
The goal would be to have something like the following:
Then, a view user would be able to copy passwords and see fields, a modify user could modify, and so on.