Skip to content

Commit 3736fd4

Browse files
committed
app: refactor: drop the last findings reference from the manifest resources
network_security_config.xml still pointed at FINDINGS_APP_VULN V13. It sits outside the Kotlin sources so the previous pass missed it. The comment already explains why cleartext is blocked app-wide, so only the pointer goes. Signed-off-by: ravindu644 <droidcasts@protonmail.com>
1 parent 2331521 commit 3736fd4

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

‎Android/app/src/main/res/xml/network_security_config.xml‎

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@
33
Droidspaces talks only to HTTPS endpoints (the rootfs manifest + downloads).
44
Block all cleartext traffic app-wide so a repackage, a lowered targetSdk, or a
55
user-added http:// custom repo cannot silently expose the rootfs supply chain
6-
to MITM. See FINDINGS_APP_VULN V13.
6+
to MITM.
77
-->
88
<network-security-config>
99
<base-config cleartextTrafficPermitted="false" />

0 commit comments

Comments
 (0)