feat(security): implement issues #276 #277 #278 #279 - #350
Open
villadel wants to merge 1 commit into
Open
Conversation
…ethos-protocol#278 ethos-protocol#279 ethos-protocol#276 - Add automatic session lock after configurable inactivity timeout - iOS: SessionLockService with scenePhase lifecycle hooks - Android: SessionLockManager + AppLifecycleObserver via ProcessLifecycleOwner ethos-protocol#277 - Prevent sensitive data in app switcher / recent apps preview - iOS: PrivacyOverlayModifier hides content on background/inactive scenePhase - Android: FLAG_SECURE set in MainActivity.onCreate - Docs: manual QA checklist updated ethos-protocol#278 - Anti-tampering APK signature verification - Android: SignatureVerifier checks signing cert SHA-256 at runtime - Non-blocking TamperWarningDialog shown on mismatch (consistent with ethos-protocol#118) ethos-protocol#279 - Redact bearer tokens and nonces from debug/crash logs - iOS: LogRedactor utility + applied to DecodingFailureLogger and APIClient - Android: LogRedactor object + applied to API logging call sites - Tests added on both platforms Updated .gitignore: added test snapshots, IDE files, build artifacts, secrets
|
@villadel Great news! 🎉 Based on an automated assessment of this PR, the linked Wave issue(s) no longer count against your application limits. You can now already apply to more issues while waiting for a review of this PR. Keep up the great work! 🚀 |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
#276 - Add automatic session lock after configurable inactivity timeout
#277 - Prevent sensitive data in app switcher / recent apps preview
#278 - Anti-tampering APK signature verification
#279 - Redact bearer tokens and nonces from debug/crash logs
Updated .gitignore: added test snapshots, IDE files, build artifacts, secrets
Summary
Changes
Testing
Parity checklist
This PR does not add, change, or remove any user-facing feature on either
platform — no PARITY.md update needed.
— OR —
This PR adds/changes/removes a user-facing feature. I have updated PARITY.md:
Related issues
close #276
close #277
close #278
close #279