Join Nostr
2026-08-20 13:50:42 UTC
in reply to

ChipTuner on Nostr: I know nothing about android webview stuff, but I assume the nsec-based signing code ...

I know nothing about android webview stuff, but I assume the nsec-based signing code was in the native side of the app not inside the JS vm and therefore the XSS shouldn't be able to escape it?