nextcloud / nextcloud/desktop

Allow users to re-generate random words before enabling e2e

Open
#2,451 0 comments 0 reactions 0 assignees View on GitHub
feature: :lock: end to end encryption
Dominant language
C++
Stars
3.9k
Forks
1k
Avg merge
1d 21h
Merged PRs (30d)
127

Description

This is a feature request for allowing users to _re-generate_ their 12 random words offered by Nextcloud before enabling e2e on the desktop client. This is common practice when generating random passwords in a password manager.

I might be mistakened about this particular issue, but... this would mitigate the security concern of running Nextcloud client unencrypted for years until you one day enabling e2e encryption not knowing that the whole time the same mnemonic has been on display for anyone to copy down #2443, even before it was enabled.

Thanks for considering, and Great Work!

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.