PhilippC / PhilippC/keepass2android
[BUG] Cannot use keyfile from "temporarily available" location?
Nobody has claimed this yet.
- Dominant language
- C#
- Stars
- 6.2k
- Forks
- 478
- Avg merge
- 1h 4m
- Merged PRs (30d)
- 2
Description
Checks
- I have read the FAQ section, searched the open issues, and still think this is a new bug.
Describe the bug you encountered:
I use a keyfile stored on a USB thumb drive that I plug into the device when opening or unlocking the KeePass database. This has worked flawlessly in the past, but while setting up KeePass on a new device now, I get the following message after selecting the keyfile from the USB drive in the system file picker: "The file is only temporarily available for Keepass2Android. To use it, you must copy it to another location. Tap OK to select a location where the file should be copied."
This happens when selecting the keyfile, not the database. For the database, it would make sense to require permanent access, but you don't really want the keyfile to be permanently available when not needed for unlocking.
Describe what you expected to happen:
I would expect Keepass2Android to simply use the keyfile from the USB drive without requiring it to be copied. This has worked in the past, and a keyfile should not necessarily be permanently available from a security standpoint.
What version of Keepass2Android are you using?
1.10-pre
Which version of Android are you on?
14, on a Samsung Galaxy Tab S8
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Reproduce the issue on Android 14 with a Samsung Galaxy Tab S8 and a keyfile on a USB drive, using the system file picker. Trace the handling after selecting the keyfile and compare it with database selection. Done means the keyfile can be used temporarily without being forced to copy it to permanent storage.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- android, csharp
- Domain
- mobile, security
- Issue type
- Bug
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 35/100