NEC-148: An open vault never re-checks for a pending reset, so Cancel reset may not appear #210
No reviewers
Labels
No labels
area:docs
area:identity
area:ops
area:plugin
area:server
channel:community
channel:direct
channel:owned
channel:press
channel:social
e2ee-constrained
gate:at-ga
gate:pre-ga
marketing
parity
relay:absent
relay:planned
relay:requested
relay:supported
risk:additive
risk:contract
risk:none
usability
No milestone
No project
No assignees
2 participants
Notifications
Due date
No due date set.
Dependencies
No dependencies set
Reference
Nectenda/nectenda!210
Loading…
Reference in a new issue
No description provided.
Delete branch "worktree-nec-148-an-open-vault-never-re-checks-for-a-pend"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Task: NEC-148 — https://projectron.nerchure.com/tasks/156
An open vault now re-checks for a pending account reset (start over) at least hourly and on window focus, so the Cancel reset notice reaches a device left open for days: the defence CRYPTO-098 relies on against a hijacked mailbox. The check asks /api/me alone. On an expired access token the hourly check rotates only the tokens, through a refresh gate that never hands a full-refresh caller a token-only rotation and never presents one refresh token twice. It does not do the full refresh, which would restart sync. Focus checks never rotate, to limit the lost-reply session risk (server-side fix filed as NEC-152). Two review rounds and two user decisions are recorded in docs/changes/NEC-148-release-recheck/spec.md.
Spec:
docs/changes/NEC-148-release-recheck/spec.mdChangelog
A vault left open now notices within the hour, or on returning to the window, when someone asks to reset your account, so you can cancel it.
9d8883ba470c0f2cbb5e