Git Product home page Git Product logo

chatsecureandroid's People

Contributors

act avatar cobratbq avatar devrandom avatar dim-0 avatar djhalliday avatar eighthave avatar ernieyu avatar fr34kyn01535 avatar git001 avatar kcchouette avatar kensan avatar knoy avatar lazzarello avatar linse avatar liorsaar1 avatar luzi82 avatar mbelinsky avatar mmb avatar mt4nguy avatar mykter avatar n8fr8 avatar onlyinamerica avatar otr4j-travis-ci avatar pensecit avatar petervnv avatar phoenix-nz avatar raphaelm avatar to-ba avatar uxname avatar yazantahhan avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

chatsecureandroid's Issues

Sign Out not possible if p/w not saved

The Sign Out button on the accounts screen is inactive unless the user chooses to save their password on initial sign-in. The button appears to be contingent on both username & password being filled in.

Expected behavior: Obfuscated password should populate the password field of the accounts screen when a user is signed in, regardless of whether or not they've chosen to automatically sign in to the application.

Related to issue #49

UI - Account Wizard

What :
The button present in the Account Wizard (view) is not visible. Therefore, not possible to proceed with set up.

Probably an error with the layout (doesn't support Legend resolution?)

Set Up :
HTC Legend/CM7
Gibberbot 0.0.3

Steps to reproduce :
About Gibberbot -> Next -> Next->Next

Picture :
http://imgur.com/hJUBM

Initial encrypted chat session shows considerable delay

The user is left hanging while a single progress spinner titled 'Starting encrypted chat' is shown. Need to do some further logcat analysis to see what the hangup is (keygen?), but (a) it shouldn't take this long and (b) if it has to take this long, we need to show more detailed progress indication.

Contact List Loading Failure

Did some tracking down of a newly introduced bug that's causing contact lists to load very slowly - or sometimes not at all. When the contact list does load, it does not correctly update presence, and user groups show that no contacts on online.

I tracked this bug down to the commit below, which seems to make sense as a point of introduction:

2137177

Fingerprint actions should be disabled for unencrypted sessions

Two parts:

(a) For unencrypted chat sessions, the fields for 'Their Fingerprint' and 'Your Fingerprint' are empty. These should probably just say something like (no encrypted session) or the like

(b) The menu options 'Scan Fingerprint', 'Your Fingerprint', and 'Verify Fingerprint' are still actionable and result in FCs. These should just be intercepted with a toast message.

Chats List not updated properly after End Chat option selected

The Chat List tab still displays a chat as active after selecting 'End Chat' from the menu while in an active chat.

Selecting that chat from the list view then results in a FC

Steps to reproduce:

  • Sign into Gibberbot and start a chat
  • Select 'End Chat' from the menu of the active chat
  • Note that the chat is still represented in the list view
  • Select that chat - FC

Password Field Displays Text via Android Dictionary

Security Risk:
The password field makes use of the Android dictionary and tries to autocomplete the password. During this process the complete password is visibly highlighted in the suggestions above the softkeyboard and can be read in plaintext by any person nearby

Minor Issue:
The username / account field makes use of the dictionary and tries to autocomplete the username

Tor use should disable SRV Records

On 03/04/2011 05:20 PM, Jacob Appelbaum wrote:

If "Use Tor Network" is checked, I think Do SRV Lookup should be
disabled - enabling it should warn the user about the risks.

Edit Text/Interface Scale

Gibberbot's interface only allows for the display of about six contacts or groups (on the N1). It may be desirable to display more contacts/groups without scrolling, especially with large contact lists. The user should have the option to reduce the size of the text, or of the tiles that represent contacts, so that more fit on the screen at once.

hitting back after going thru the account creation wizard restarts from nothing

If you go thru the account creation wizard and get to the ContactsList screen once logged in, hitting the back button will take you to the beginning of the account creation wizard, with blank entries. I think there could be two ways of solving this:

  • remove the account wizard steps from the back history
  • have the account wizard appear with the fields filled in with current values.

Google accounts don't work with TLS+Verification+DnsSrv On

It is currently possible to use a Google account but it doesn't work in all logical combinations of settings. If Transport Encryption, TLS Verification, and Do SRV Lookup are on, it should work, but currently does not. Other logical combinations also do not work.

Contact client type & keys not updated after client switch

When switching from Adium <--> Gibberbot to Gibberbot <--> Gibberbot using the same XMPP accounts (both Gmail), the client type and key was not updated properly (still stated 'Computer' for client and original Key was still stored and marked as verified).

Priority Missing from Account Settings

The current account settings do not allow for the setting of priority. This prevents the user when logged into the same account from multiple locations, which machine receives the messages.

Transport Encryption pref should be required/enabled/disabled

The Transport Encryption preference should expose the "required/enabled/disabled" options that are commonly used with TLS. Currently the checkbox sets "required" if on, and "enabled" if off. There might be some certain buggy server setups that have problems with the TLS negotiation, so having "disabled" as an option would support them. On the other hand, we might not want to support really insecure setups.

Ignore Groups

Especially when only a few contacts are online, or groups have only a small number of online members showing groups may not be ideal. The user should have the option to hide groups: that is, to display all contacts in a flat list, as if they were un-grouped.

Change of Port is not stored

If I change the Port in advanced account settings, it is recognized.
But if I leave and try to connect or just leave and open advanced account settings. The port is 5222 again.

(got latest: Gibberbot-0.0.4-RC1-20110505a.apk)

Chats tab should indicate chat status

Now that we've switched to the 2-tab view, we should have a flexible tab icon that displays a bit more information. Either:

  • the # of new / unread msgs.
    OR
  • the # of ongoing chats

I prefer the latter option, as new / unread messages will also be indicated to the user via the notifications bar. But we're open to input!

"Unable to sign in to XMPP service" with gtalk + custom domain

I use a hosted gmail account with SRV records set up to use gTalk with my own domain. When using either talk.l.google.com as my host or telling Gibberbot to use SRV records and using my own domain (literati.org), I get "Unable to sign in to XMPP service" and "could not connect to server" when I try to sign in. I've tried with and without TLS.

This is on a Motorola Droid running Android 2.2.3.

License?

I can't find any information about what license Gibberbot is released under. Many of the source files have comments specifying the Apache 2 license, but those seem to be mostly from AOSP and copyrighted several years ago.

There needs to be a clear statement somewhere about the license for the new code, and for the application as a whole. (And a copy of the complete license text included.)

Contact list empty after first login

After reinstall from first gibberbot, my contact list is not loading (empty) on first sign in. One or more Sign Out/Sign In is needed to load the Contact list successfuly. After restarting the application, the issue is repeated.

Hide Empty Groups

Gibberbot currently displays groups which have zero online members. With large, diverse, extensively-grouped contact lists, this makes for a cluttered display, especially when few contacts are online. It should be possible to choose to hide these groups, so that only groups with online members are displayed.

Multiple Accounts

Gibberbot should eventually support signing in with multiple XMPP accounts simultaneously.

Offline Contacts

Gibberbot does not show offline contacts. However, it is standard practice for some to appear offline, while actually remaining online. Most XMPP clients support initiating conversations with apparently-offline contacts. Gibberbot should support the option to display offline contacts, and this should be editable on a per-contact basis.

For instance, Alice may always want to see all her contacts, so she sets the 'show offline contacts' option in the settings. Alice's interface shoes online contacts at the top, and offline contacts below them in the list.

Bob, however, only wants to see people with whom he may be able to converse. He knows that Alice rarely appears offline when she's actually online, but that Charlie is almost always available for urgent communication, even when he appears offline. Bob edits his settings for Charlie, checking the 'show in the contact list even when offline' box. Bob's contact list always shows Charlie, whatever his status, but when Alice is offline, she does not appear in Bob's contact list.

Login on jabber.ccc.de unreliable?

It happened that after login on jabber.ccc.de (with TLS, no verification) that Gibberbot told it was signed in, but all contacts in the roster were shown offline (although they weren't).
The user itself was not shown online at the peer's roster.
It looks as if the login was not successful although shown as such.

Later, one of two peer contacts were shown as online in Gibberbot's roster, although both were online.

Code base as of march 28th was used for testing.

Gibberbot always fails during install

Device: Motorola Droid
Build: FRG83G
Release 2.2.2

DDMS Log output:
04-08 12:31:57.616: INFO/ActivityManager(1086): Starting activity: Intent { cmp=info.guardianproject.otr.app.im/.ui.AccountWizardActivity }
04-08 12:31:58.296: INFO/ActivityManager(1086): Displayed activity info.guardianproject.otr.app.im/.ui.AccountWizardActivity: 665 ms (total 665 ms)
04-08 12:32:13.725: INFO/global(15242): Default buffer size used in BufferedReader constructor. It would be better to be explicit if an 8k-char buffer is required.
04-08 12:32:13.967: DEBUG/dalvikvm(15242): GC_FOR_MALLOC freed 1370 objects / 238176 bytes in 75ms
04-08 12:32:14.132: DEBUG/dalvikvm(1086): GC_EXPLICIT freed 17289 objects / 805256 bytes in 126ms
04-08 12:32:14.616: DEBUG/dalvikvm(15242): GC_FOR_MALLOC freed 5698 objects / 322432 bytes in 46ms
04-08 12:32:23.053: INFO/ActivityManager(1086): Starting activity: Intent { cmp=info.guardianproject.otr.app.im/.ui.MainActivity (has extras) }
04-08 12:32:23.155: DEBUG/AndroidRuntime(15355): Shutting down VM
04-08 12:32:23.155: WARN/dalvikvm(15355): threadid=1: thread exiting with uncaught exception (group=0x4001d7e0)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): FATAL EXCEPTION: main
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): java.lang.RuntimeException: Unable to resume activity {info.guardianproject.otr.app.im/info.guardianproject.otr.app.im.ui.MainActivity}: java.lang.NullPointerException
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at android.app.ActivityThread.performResumeActivity(ActivityThread.java:3128)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at android.app.ActivityThread.handleResumeActivity(ActivityThread.java:3143)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at android.app.ActivityThread.handleLaunchActivity(ActivityThread.java:2684)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at android.app.ActivityThread.access$2300(ActivityThread.java:125)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at android.app.ActivityThread$H.handleMessage(ActivityThread.java:2033)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at android.os.Handler.dispatchMessage(Handler.java:99)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at android.os.Looper.loop(Looper.java:123)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at android.app.ActivityThread.main(ActivityThread.java:4627)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at java.lang.reflect.Method.invokeNative(Native Method)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at java.lang.reflect.Method.invoke(Method.java:521)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at com.android.internal.os.ZygoteInit$MethodAndArgsCaller.run(ZygoteInit.java:858)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at com.android.internal.os.ZygoteInit.main(ZygoteInit.java:616)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at dalvik.system.NativeStart.main(Native Method)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): Caused by: java.lang.NullPointerException
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at info.guardianproject.otr.app.im.ui.MainActivity.showUI(MainActivity.java:109)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at info.guardianproject.otr.app.im.ui.MainActivity.onResume(MainActivity.java:177)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at android.app.Instrumentation.callActivityOnResume(Instrumentation.java:1149)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at android.app.Activity.performResume(Activity.java:3823)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): at android.app.ActivityThread.performResumeActivity(ActivityThread.java:3118)
04-08 12:32:23.210: ERROR/AndroidRuntime(15355): ... 12 more
04-08 12:32:23.225: WARN/ActivityManager(1086): Force finishing activity info.guardianproject.otr.app.im/.ui.MainActivity
04-08 12:32:23.233: WARN/ActivityManager(1086): Force finishing activity info.guardianproject.otr.app.im/.ui.AccountWizardActivity
04-08 12:32:23.733: WARN/ActivityManager(1086): Activity pause timeout for HistoryRecord{449b7e70 info.guardianproject.otr.app.im/.ui.MainActivity}
04-08 12:32:33.071: WARN/ActivityManager(1086): Launch timeout has expired, giving up wake lock!
04-08 12:32:33.405: ERROR/Tethering(1086): active iface (usb0) reported as added, ignoring
04-08 12:32:33.762: WARN/ActivityManager(1086): Activity idle timeout for HistoryRecord{44920028 info.guardianproject.otr.app.im/.ui.MainActivity}
04-08 12:32:38.920: WARN/ActivityManager(1086): Activity destroy timeout for HistoryRecord{44cd5ee0 info.guardianproject.otr.app.im/.ui.AccountWizardActivity}
04-08 12:32:38.920: WARN/ActivityManager(1086): Activity destroy timeout for HistoryRecord{449b7e70 info.guardianproject.otr.app.im/.ui.MainActivity}
04-08 12:32:45.725: DEBUG/AlarmManagerService(1086): Kernel timezone updated to 240 minutes west of GMT
04-08 12:32:45.733: DEBUG/SystemClock(1157): Setting time of day to sec=1302280364
04-08 12:32:44.224: DEBUG/dalvikvm(1086): GC_EXPLICIT freed 13017 objects / 584320 bytes in 153ms
04-08 12:32:44.278: DEBUG/MobileDataStateTracker(1086): replacing old mInterfaceName (ppp0) with ppp0 for hipri
04-08 12:32:44.278: DEBUG/MobileDataStateTracker(1086): replacing old mInterfaceName (ppp0) with ppp0 for mms
04-08 12:32:44.286: DEBUG/MobileDataStateTracker(1086): default Received state= CONNECTED, old= CONNECTED, reason= (unspecified), apnTypeList= default,mms,hipri
04-08 12:32:44.356: DEBUG/NetworkLocationProvider(1086): onDataConnectionStateChanged 2
04-08 12:32:44.747: INFO/ActivityManager(1086): Start proc com.android.alarmclock for broadcast com.android.alarmclock/com.android.deskclock.AlarmInitReceiver: pid=15448 uid=10008 gids={}
04-08 12:32:45.020: DEBUG/AlarmManagerService(1086): Kernel timezone updated to 240 minutes west of GMT
04-08 12:32:45.231: INFO/ActivityThread(15448): Publishing provider com.android.deskclock: com.android.deskclock.AlarmProvider
04-08 12:32:46.279: INFO/ActivityManager(1086): Process com.android.defcontainer (pid 15198) has died.
04-08 12:32:46.419: INFO/ActivityManager(1086): Process com.noshufou.android.su (pid 15178) has died.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.