SimpleMobileTools / Simple-SMS-Messenger

An easy and quick way of managing SMS and MMS messages without ads.
https://www.simplemobiletools.com
GNU General Public License v3.0
583 stars 214 forks source link

Requesting user for biometric fingerprint anomaly on Pixel 8 / Android 14 #814

Open unmerkbar opened 6 months ago

unmerkbar commented 6 months ago

Hi there.

I like your app and appreciate your work.

I have changed to a Pixel 8 phone with Android 14 and for the sake of battery consumption I've change from the Google Messenger app to yours as the Messenger app consumed a lot of battery even I didn't use it.

Also, I like that one can secure the SMS app with biometric fingerprint scan.

Unfortunately, I might have found a bug and I'm able to reproduce it on my phone.

My steps:

  1. Secure the app with biometric fingerprint scan in the settings
  2. Lock the phone
  3. Sending an standard SMS from any phone to my phone and waiting for the notification
  4. Unlock my phone (doesn't matter if I use PIN code or biometric fingerprint scan to unlock my phone)
  5. Beeing on the homescreen I open my notification center and tap on the SMS so that your app opens
  6. SMS app opens I am getting the dialog for the biometric ID-verification
  7. I click abort on the biometric fingerprint dialog
  8. I see all my messages

I've tested right now again and I see a difference: If I close the app from the cache by wiping it to the top in the app manager and I click abort on the dialog then the SMS app closes and I don't see my messages.

Can it be that if a user already successfully did the biometric scan he doesn't need to do it again, or not do it again within a timer period? Because I also don't get a new request for biometric scan if I open the app, verify with biometric scan, closing the app by calling the homescreen and then re-open the SMS app again.

If so, than there might be only a "bug" that the dialog for requesting the biometric scan appears if a user opens the SMS app via notification center even after the user did already a successful verification via biometric fingerprint scan.

Best regards

inson1 commented 6 months ago

@unmerkbar SMT apps were sold to ad company. Fork is here https://github.com/FossifyOrg