keepassium / KeePassium

KeePass-compatible password manager for iOS
https://keepassium.com
Other
1.17k stars 103 forks source link

Duress passcode? #6

Open Thunder33345 opened 5 years ago

Thunder33345 commented 5 years ago

A self destruct passcode that deletes all app db, app data, app settings TLDR since clearing masterkey can already be done via protect database but it would still be nice to have a separate self-destruct password with options of what to clear/keep

Not sure if possible due to secure enclave limitations, but also duress fingerprint to look even more legit?(from what i see, apple only tells your app if the authentication is successful or not)

keepassium commented 5 years ago

I agree, this would be nice to have. Thanks!

As for fingerprints, it would be impossible to distinguish different fingers: "Afterward, you receive only a Boolean result indicating authentication success or failure." [docs]

Thunder33345 commented 5 years ago

Yeah i guessed, apple seems tight on touch ID, not even some kind of UUID is obtainable I guess going to scrap the idea of "disabling fingerprint and force passcode if any fingerprints were changed" since it probably wont be possible to know if any was changed (i think appstore could tho(prompting password on first) having system privileges) (actually not sure if i am just seeing things)

Also thank you very much for the good work, An actually updated keepass compliant password manager that supports integrated passwords is let's just say not easy to come across...