When iPhone Face ID fails it should have a strong fallback
Currently Face ID failure reverts to phone passcode. It would be more secure to require login again or a master password.
-
N commented
Or even a 6 digit pin that isn't the iPhone pin.
-
H Sha commented
On competing platforms (bitwarden, nordpass, etc) when Face ID does not recognize the user the master password is required to unlock the vault. This protects the accounts from shoulder surfing attacks as currently if you are the victim of a shoulder surfing attack, the attacker could gain access to your emails and secure drive.
-
Daniel commented
Agreed, especially if you’re using it for secure and confidential information. This shouldn’t be a difficult addition because it’s on the Proton Drive app.
-
David commented
Setting a specific passcode/master password only for Proton Pass would really be crucial. Currently, if somebody figuers out my phone passcode, they can also access this app.