Skip to content

Set PIN for access #59

Open
Open
@leto

Description

@leto

It would be nice to have an additional PIN/access code to lock down the SDA app. Our threat model is that somebody has their phone stolen, while unlocked. The attacker would be able to send all funds to an attacker-controlled address simply by opening up SDA. A PIN would prevent that.

The PIN seems like it could have 2 modes:

  1. PIN required to send, all other operations work normally
  2. PIN required to open SDA, no functionality without a PIN

I think the above 2 options cover the common use cases of having a PIN.

Metadata

Metadata

Assignees

Labels

enhancementNew feature or requestsecuritySecurity implications

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions