-
-
Notifications
You must be signed in to change notification settings - Fork 17
Description
"Hello! Great app, I enjoy using it.
I kindly request that you add the ability to increase the number of PBKDF2 iterations above 500,000 (for example, to 1–2–4 million or at least to 1 million).
Why is this important?
OWASP 2025–2026 recommends a minimum of 600,000 iterations for PBKDF2-HMAC-SHA256, and 1 million+ for paranoid protection.
On modern flagships (Snapdragon 8 Gen 3/4, Dimensity 9300+, Tensor G4, etc.), even 1–2 million iterations provide an acceptable first vault opening time (3–8 seconds), and protection against brute-force/offline attacks increases significantly.
For users who store highly sensitive data (personal photos/videos, documents), this is critical — especially if the vault may be subject to forensic analysis (Cellebrite/Oxygen, etc.).
Currently, 500k is already good, but the option to increase it to 1M+ will make the app one of the most secure FOSS vaults on Android.
Thank you in advance, this will really increase the level of privacy for many! 🔒