[PR #5817] [PM-23665] Refactor FIDO2 credential discovery #6066

Closed
opened 2025-11-27 00:19:23 -06:00 by GiteaMirror · 0 comments
Owner

Original Pull Request: https://github.com/bitwarden/android/pull/5817

State: closed
Merged: Yes


🎟️ Tracking

PM-23665

📔 Objective

Refactor the FIDO2 credential discovery process in BitwardenCredentialManagerImpl. Instead of relying on decrypted CipherListViews, it now uses vaultSdkSource.silentlyDiscoverCredentials to find matching credentials based on the relyingPartyId from the assertion options.

The discovered credentials are then filtered by allowedCredentials if provided in the assertion options.

Additionally, some related test cases in BitwardenCredentialManagerTest were updated to reflect these changes and ensure proper handling of new scenarios, such as when relyingPartyId is null.

📸 Screenshots

image image

Reminders before review

  • Contributor guidelines followed
  • All formatters and local linters executed and passed
  • Written new unit and / or integration tests where applicable
  • Protected functional changes with optionality (feature flags)
  • Used internationalization (i18n) for all UI strings
  • CI builds passed
  • Communicated to DevOps any deployment requirements
  • Updated any necessary documentation (Confluence, contributing docs) or informed the documentation team

🦮 Reviewer guidelines

  • 👍 (:+1:) or similar for great changes
  • 📝 (:memo:) or ℹ️ (:information_source:) for notes or general info
  • (:question:) for questions
  • 🤔 (:thinking:) or 💭 (:thought_balloon:) for more open inquiry that's not quite a confirmed issue and could potentially benefit from discussion
  • 🎨 (:art:) for suggestions / improvements
  • (:x:) or ⚠️ (:warning:) for more significant problems or concerns needing attention
  • 🌱 (:seedling:) or ♻️ (:recycle:) for future improvements or indications of technical debt
  • ⛏ (:pick:) for minor or nitpick changes
**Original Pull Request:** https://github.com/bitwarden/android/pull/5817 **State:** closed **Merged:** Yes --- ## 🎟️ Tracking PM-23665 ## 📔 Objective Refactor the FIDO2 credential discovery process in `BitwardenCredentialManagerImpl`. Instead of relying on decrypted `CipherListViews`, it now uses `vaultSdkSource.silentlyDiscoverCredentials` to find matching credentials based on the `relyingPartyId` from the assertion options. The discovered credentials are then filtered by `allowedCredentials` if provided in the assertion options. Additionally, some related test cases in `BitwardenCredentialManagerTest` were updated to reflect these changes and ensure proper handling of new scenarios, such as when `relyingPartyId` is null. ## 📸 Screenshots <img width="365" alt="image" src="https://github.com/user-attachments/assets/3302c85c-ed0a-43ab-b5bd-877b8c1d7c32" /> <img width="365" alt="image" src="https://github.com/user-attachments/assets/5e3575e8-794c-488c-ac5e-ee9fae426fe6" /> ## ⏰ Reminders before review - Contributor guidelines followed - All formatters and local linters executed and passed - Written new unit and / or integration tests where applicable - Protected functional changes with optionality (feature flags) - Used internationalization (i18n) for all UI strings - CI builds passed - Communicated to DevOps any deployment requirements - Updated any necessary documentation (Confluence, contributing docs) or informed the documentation team ## 🦮 Reviewer guidelines <!-- Suggested interactions but feel free to use (or not) as you desire! --> - 👍 (`:+1:`) or similar for great changes - 📝 (`:memo:`) or ℹ️ (`:information_source:`) for notes or general info - ❓ (`:question:`) for questions - 🤔 (`:thinking:`) or 💭 (`:thought_balloon:`) for more open inquiry that's not quite a confirmed issue and could potentially benefit from discussion - 🎨 (`:art:`) for suggestions / improvements - ❌ (`:x:`) or ⚠️ (`:warning:`) for more significant problems or concerns needing attention - 🌱 (`:seedling:`) or ♻️ (`:recycle:`) for future improvements or indications of technical debt - ⛏ (`:pick:`) for minor or nitpick changes
GiteaMirror added the pull-request label 2025-11-27 00:19:23 -06:00
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: github-starred/android#6066