[GH-ISSUE #6411] [BWA-221] UI/UX inconsistency: the iOS authenticator app has (and all other BW apps have) 'session timeout' settings - but only the Android variant hasn't #28328

Closed
opened 2026-04-18 12:24:39 -05:00 by GiteaMirror · 4 comments
Owner

Originally created by @pamperer562580892423 on GitHub (Jan 24, 2026).
Original GitHub issue: https://github.com/bitwarden/android/issues/6411

Steps To Reproduce

  1. Go to Settings.
  2. Tap on "Lock app" and enable it.
  3. Verify with biometrics of your device.

Expected Result

I can choose and set a "session timeout" setting, just as the iOS authenticator app can do it at least since version 2025.5.0:

Image

My source for that info and that screenshot, that stems from the iOS authenticator app 2025.5.0: https://community.bitwarden.com/t/add-session-timeout-settings-on-android-its-already-there-on-ios/66718/6

Actual Result

I can enable a general "locking" function (or not enable it at all) - but no session timeout settings can be set, as it's possible in all other Bitwarden apps.

Screenshots or Videos

No response

Additional Context

This can also be seen as a "security issue", as the app doesn't lock itself again when open in the background.

Build Version

2025.12.1 (1138)

What server are you connecting to?

EU

Self-host Server Version

Nope

Environment Details

  • FP5
  • Android 15

Issue Tracking Info

  • I understand that work is tracked outside of Github. A PR will be linked to this issue should one be opened to address it, but Bitwarden doesn't use fields like "assigned", "milestone", or "project" to track progress.
Originally created by @pamperer562580892423 on GitHub (Jan 24, 2026). Original GitHub issue: https://github.com/bitwarden/android/issues/6411 ### Steps To Reproduce 1. Go to Settings. 2. Tap on "Lock app" and enable it. 3. Verify with biometrics of your device. ### Expected Result I can choose and set a "session timeout" setting, just as the iOS authenticator app can do it at least since version 2025.5.0: ![Image](https://github.com/user-attachments/assets/e3d98b7d-d0df-45cc-8d1e-d78b2fc70eaa) My source for that info and that screenshot, that stems from the iOS authenticator app 2025.5.0: https://community.bitwarden.com/t/add-session-timeout-settings-on-android-its-already-there-on-ios/66718/6 ### Actual Result I can enable a general "locking" function (or not enable it at all) - but no session timeout settings can be set, as it's possible in all other Bitwarden apps. ### Screenshots or Videos _No response_ ### Additional Context This can also be seen as a "security issue", as the app doesn't lock itself again when open in the background. ### Build Version 2025.12.1 (1138) ### What server are you connecting to? EU ### Self-host Server Version Nope ### Environment Details - FP5 - Android 15 ### Issue Tracking Info - [x] I understand that work is tracked outside of Github. A PR will be linked to this issue should one be opened to address it, but Bitwarden doesn't use fields like "assigned", "milestone", or "project" to track progress.
GiteaMirror added the app:authenticatorbug labels 2026-04-18 12:24:40 -05:00
Author
Owner

@bitwarden-bot commented on GitHub (Jan 24, 2026):

Thank you for your report! We've added this to our internal board for review.
ID: BWA-221

<!-- gh-comment-id:3795332347 --> @bitwarden-bot commented on GitHub (Jan 24, 2026): Thank you for your report! We've added this to our internal board for review. ID: [BWA-221](https://bitwarden.atlassian.net/browse/BWA-221) [BWA-221]: https://bitwarden.atlassian.net/browse/BWA-221?atlOrigin=eyJpIjoiNWRkNTljNzYxNjVmNDY3MDlhMDU5Y2ZhYzA5YTRkZjUiLCJwIjoiZ2l0aHViLWNvbS1KU1cifQ
Author
Owner

@rmcdowell-bitwarden commented on GitHub (Jan 26, 2026):

Hi there,

Thank you for your report!

I was able to reproduce this issue, and I have flagged this to our engineering team.

If you wish to add any further information/screenshots/recordings etc., please feel free to do so at any time - our engineering team will be happy to review these.

Thanks once again!

<!-- gh-comment-id:3797809686 --> @rmcdowell-bitwarden commented on GitHub (Jan 26, 2026): Hi there, Thank you for your report! I was able to reproduce this issue, and I have flagged this to our engineering team. If you wish to add any further information/screenshots/recordings etc., please feel free to do so at any time - our engineering team will be happy to review these. Thanks once again!
Author
Owner

@david-livefront commented on GitHub (Mar 3, 2026):

This feature has been added to the Authenticator and will be available in a future release.

The PR for that work can be found here.

<!-- gh-comment-id:3993710856 --> @david-livefront commented on GitHub (Mar 3, 2026): This feature has been added to the Authenticator and will be available in a future release. The PR for that work can be found [here](https://github.com/bitwarden/android/pull/6609).
Author
Owner

@pamperer562580892423 commented on GitHub (Mar 3, 2026):

@david-livefront Thanks for implementing this! - And for letting us know here.

<!-- gh-comment-id:3994211665 --> @pamperer562580892423 commented on GitHub (Mar 3, 2026): @david-livefront Thanks for implementing this! - And for letting us know here.
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: github-starred/android#28328