PINkman is a library to help implementing an authentication by a PIN code in a secure manner. The library derives hash from the user's PIN using Argon2 function and stores it in an encrypted file. The file is encrypted with the AES-256 algorithm in the GCM mode and keys are stored in the AndroidKeystore.
@kitfist0 A hashing algorithm takes some time on its own. Thus, an artificial delay isn't necessary as I think. Nevertheless, you can show PoC of successful brute force process and we'll return to this question.
This is necessary to protect against brute force.