automatic logout for app - security flaw in app found
The app needs an automatic logout feature with user selected amount of time to log out, which completely logs out and removes the user name and cache.
The current setup is not secure in case of a lost or stolen phone. The pin lock feature does not actually log out, and it shows the inbox for a split second before entering the pin.
For those who want this feature a lost but unlocked phone should just give access to an empty app, not the contents of the account.
1
vote

-
Mike commented
yes