Compare commits
2
Commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
a099221911 | ||
|
|
860db6034c |
@@ -1510,6 +1510,14 @@ view would leave a wallet one click from deletion.
|
||||
route, including the Settings gear. A decrypt still running when the screen is
|
||||
left is discarded rather than written. The screen is not restorable, so
|
||||
reopening the popup lands on Home rather than back on the key.
|
||||
- **Clipboard**: tapping the key copies it to the clipboard, and the wallet
|
||||
never clears the clipboard afterwards; leaving the screen wipes the key from
|
||||
the page only. The clipboard is the user's, not the wallet's. Clearing it
|
||||
would go against what the user expects, and by then they may have copied
|
||||
something else vital that the clear would destroy. The user knows the key is
|
||||
secret from the warning above the password input, which says that anyone with
|
||||
it can access and transfer all funds from the address, and knows it is on the
|
||||
clipboard because they copied it. From then on it is theirs to manage.
|
||||
|
||||
#### AddressToken (`address-token`)
|
||||
|
||||
@@ -1840,6 +1848,9 @@ view would leave a wallet one click from deletion.
|
||||
gear. A decrypt still running when the screen is left is discarded rather than
|
||||
written. The screen is not restorable, so reopening the popup lands on Home
|
||||
rather than back on the phrase.
|
||||
- **Clipboard**: tapping the phrase copies it, and the wallet never clears the
|
||||
clipboard afterwards, for the reasons given under ExportPrivKey; here the
|
||||
warning box above the password input is what tells the user it is secret.
|
||||
|
||||
#### DeleteWallet (`delete-wallet-confirm`)
|
||||
|
||||
|
||||
@@ -56,15 +56,22 @@ but the review is broader than any of them.
|
||||
the change for [#87](https://git.eeqj.de/sneak/AutistMask/issues/87) that
|
||||
never landed, as reference for
|
||||
[#493](https://git.eeqj.de/sneak/AutistMask/issues/493);
|
||||
`feature/show-private-key`, whose README clipboard policy section is reference
|
||||
for [#492](https://git.eeqj.de/sneak/AutistMask/issues/492); and
|
||||
`feature/show-private-key`, whose README clipboard policy section was the
|
||||
reference for [#492](https://git.eeqj.de/sneak/AutistMask/issues/492); and
|
||||
`chore/token-list-enrichment`, deleted on 2026-09-09 and re-created at
|
||||
`f7a2437`, whose `scripts/` tooling waits on
|
||||
[#495](https://git.eeqj.de/sneak/AutistMask/issues/495). Afterwards
|
||||
`git ls-remote --heads origin` showed `main`, `next`, these five, and
|
||||
`issue-167-prune-branches` and `issue-492-readme-clipboard`, the heads of the
|
||||
open pull requests [#491](https://git.eeqj.de/sneak/AutistMask/pulls/491) and
|
||||
[#494](https://git.eeqj.de/sneak/AutistMask/pulls/494).
|
||||
`issue-167-prune-branches`, the head of
|
||||
[#491](https://git.eeqj.de/sneak/AutistMask/pulls/491).
|
||||
|
||||
- 2026-10-07: The README says that the wallet never clears the clipboard after
|
||||
the private key or the recovery phrase is copied, and why
|
||||
([#492](https://git.eeqj.de/sneak/AutistMask/issues/492)): the clipboard is
|
||||
the user's, clearing it would go against what they expect, and it could
|
||||
destroy something else they copied since. It is under ExportPrivKey, with a
|
||||
line under ShowRecoveryPhrase, and names the warning each password screen
|
||||
actually shows, which says nothing about the clipboard.
|
||||
|
||||
- 2026-10-07: The Firefox end-to-end suite no longer tolerates any uncaught
|
||||
extension error ([#487](https://git.eeqj.de/sneak/AutistMask/issues/487)). Its
|
||||
|
||||
Reference in New Issue
Block a user