Android app does not require password after changing fingerprints #567

Closed
opened 2025-11-26 22:22:16 -06:00 by GiteaMirror · 5 comments
Owner

Originally created by @armstrys on GitHub (Feb 4, 2018).

I changed the fingerprints on my device and was able to log into Bitwarden with the new finger prints. Is it possible to make Bitwarden require a password after fingerprints change on the device? This seems like it would be much more secure.

Originally created by @armstrys on GitHub (Feb 4, 2018). I changed the fingerprints on my device and was able to log into Bitwarden with the new finger prints. Is it possible to make Bitwarden require a password after fingerprints change on the device? This seems like it would be much more secure.
Author
Owner

@kspearrin commented on GitHub (Feb 4, 2018):

I am not aware of a way to detect something like this. Do you know?

@kspearrin commented on GitHub (Feb 4, 2018): I am not aware of a way to detect something like this. Do you know?
Author
Owner

@armstrys commented on GitHub (Feb 4, 2018):

Hmmm. Maybe not possible. Sorry about that! Seems like something Android should probably implement. Appreciate the quick response. I do have U2F enabled with Yubikey... is there a way two ask Bitwarden to require U2F for every log in instead of just on new devices?

@armstrys commented on GitHub (Feb 4, 2018): Hmmm. Maybe not possible. Sorry about that! Seems like something Android should probably implement. Appreciate the quick response. I do have U2F enabled with Yubikey... is there a way two ask Bitwarden to require U2F for every log in instead of just on new devices?
Author
Owner

@kspearrin commented on GitHub (Feb 4, 2018):

Not currently. 2FA only occurs on log in, not unlocks. We are tracking this in another issue already, however.

@kspearrin commented on GitHub (Feb 4, 2018): Not currently. 2FA only occurs on log in, not unlocks. We are tracking this in another issue already, however.
Author
Owner

@armstrys commented on GitHub (Feb 4, 2018):

Okay great. Thanks for the quick response!

@armstrys commented on GitHub (Feb 4, 2018): Okay great. Thanks for the quick response!
Author
Owner

@armstrys commented on GitHub (Feb 4, 2018):

FYI... I am not aware of how they do it, but the Chase mobile banking app is able to detect changes to Android finger print settings. I was unable to screenshot the alert because of their security settings, but it is probably worth keeping an eye out for how Bitwarden might achieve this!

@armstrys commented on GitHub (Feb 4, 2018): FYI... I am not aware of how they do it, but the Chase mobile banking app is able to detect changes to Android finger print settings. I was unable to screenshot the alert because of their security settings, but it is probably worth keeping an eye out for how Bitwarden might achieve this!
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: github-starred/android#567