Sorry for one more thread about specific DCL.
I Installed from play store and the app tried to perform DCL via memory.
Would you still use it, given it's a password manager?

What I like about this app is:

  • it's local, offline
  • I can just backup and move the .kdbx database back and forth
  • can (probably) communicate via local sftp with one database, to use in all profiles and desktop, no sync or cloud needed

Is it a bad way of doing it? Especialy the sharing on local network part?

    ceramics They also have a one year old release on the play store, despite having newer versions available on github. A bit weird, no?

    ceramics KeepassDX is a great piece of kit.

    I'd suggest you download it via obtainium as you'll be able to have the Libre version, which should (I imagine)free memory tagging issue, as the app doesn't requires play services.

    I'd also recommend that you set your database encryption to Argon2id as the following recommendations; https://cheatsheetseries.owasp.org/cheatsheets/Password_Storage_Cheat_Sheet.html (if you haven't done so already or you threat model requires it)

      Wadder Thanks for the link! I would never have found that gem in the middle of the haystack.

      The thing I'm not seeing KeepassDX doing is getting to the database file through sftp. It only uses the default GOS file picker, which has no support. My idea would be to set a local only server using PrimitiveFTP in the owner profile, then just point apps with ftp in other profiles to localhost:'port'. I could even flip the server to local network and use the database in my desktop. That way I only have one file to maintain, all profiles could access it and won't have to do sync things.

        ceramics The default file picker will show app-based storage providers as options if you have them.

          GrapheneOS Oh Ok, I know what you mean. I remember I should have apps show up when picking a file, now that you mention. I don't know if I flicked some option somewhere, but those storage providers aren't showing up. They actually appeared one time just now, but not anymore.

            ceramics I didn't test it actively, but ANOTHERpass seems quite interesting. It even uses Strongbox/Titan M on Pixel/GOS. KeePassDX is of course always the right choice.

            GrapheneOS

            ceramics those storage providers aren't showing up. They actually appeared one time just now, but not anymore.

            Shall I create an issue on github?
            The log shows some errors. I'm posting bellow, but I don't know if they are significant.

            E oid.documentsui: Not starting debugger since process cannot load the jdwp agent.
            E cutils-trace: Error opening trace file: No such file or directory (2)
            E com.android.documentsui: Unable to find pattern file or unable to map it for am
            E com.android.documentsui: No package ID ff found for resource ID 0xffffffff.
            E com.android.documentsui: No package ID ff found for resource ID 0xffffffff.
            E com.android.documentsui: No package ID ff found for resource ID 0xffffffff.
            E com.android.documentsui: No package ID ff found for resource ID 0xffffffff.
            E com.android.documentsui: No package ID ff found for resource ID 0xffffffff.
            E com.android.documentsui: No package ID ff found for resource ID 0xffffffff.
            E com.android.documentsui: No package ID ff found for resource ID 0xffffffff.
            E com.android.documentsui: No package ID ff found for resource ID 0xffffffff.