keshav-space / safenotes

Safe Notes is a security project aimed at providing an encrypted, private note manager that works locally and protects notes from various threat actors.
https://safenotes.dev
GNU General Public License v3.0
237 stars 22 forks source link

[BUG] Cannot disable forced random Passphrase/Password Question when Biometric Lock is enabled #159

Open theAkito opened 1 year ago

theAkito commented 1 year ago

I'm using this app regularly, because it's mostly useful.

However, there is one thing about it, that seriously annoys the absolute crap out of me. Whenever I open the app, especially when I need to really quickly note something ASAP, I get this pop-up asking, whether I remember my passphrase and I am forced to put it in, even though I have biometric locking enabled.

Like, just as any other sane person, my password is saved in a password manager, so I don't need this app blocking my work flow, especially when I need to note something as quickly as possible.

The worst & most taunting about this is, that it happens seemingly randomly. I cannot expect it or anything. It just happens sometimes. I don't know how this app does it, but it always appears, whenever I need to open the app really quickly.

This is so infuriating, that I really consider this a huge bug. This is not a feature request, it is a request for a big face biting bug to be fixed.

Suggestions

One or more of the following could be a valid solution.

keshav-space commented 1 year ago

I understand your frustration, but I wouldn't classify it as a bug. I've received several emails from individuals who have forgotten their passphrase, but unfortunately, there is no way I could help them to recover the notes. That's why occasionally, users are prompted to enter their passphrase as a precautionary measure to ensure they remember it. However, considering your feedback, it might be worth considering the addition of an 'Enable/Disable' toggle button for the forced passphrase entry.

HarriBuh commented 8 months ago

Forgetting a passphrase or password is and will always be the fault of the user, neither of the app nor the developer. Therefore I again ask you to make the reminder optional at least - I appreciate your compromise.