fix: resolve real-device blockers for vault open, biometrics, and AutoFill
- FileBookmarkService: hold a security scope while creating the bookmark, fixing "file doesn't exist" on iCloud Drive-backed vaults (NSCocoaErrorDomain Code=4), which only surfaced on a real device since the Simulator strips entitlements needed to reproduce this. - Fix Keychain access group missing the Team ID prefix, which silently broke saving the master password so Face ID was never offered after backgrounding. - Add the autofill-credential-provider entitlement to the main app target (previously only on the extension) and declare ProvidesPasswords in the extension's Info.plist, so MyPass now registers as a selectable AutoFill Passwords provider. - CredentialMatcher: fall back to a scheme-prefixed re-parse when extracting a host, since KDBX entries commonly store bare domains (e.g. "allocine.fr") that URL(string:).host can't parse without an authority component. Fixes AutoFill suggestions being unranked/wrong for such entries.
This commit is contained in:
@@ -25,7 +25,14 @@ public enum CredentialMatcher {
|
||||
}
|
||||
|
||||
private static func host(from urlString: String) -> String? {
|
||||
URL(string: urlString)?.host
|
||||
// KDBX entries and AutoFill service identifiers commonly omit the scheme
|
||||
// (e.g. "allocine.fr"), but URL(string:) only populates `.host` when an
|
||||
// authority component ("//") is present -- without it, the whole string
|
||||
// is parsed as a relative path and `.host` is nil.
|
||||
if let host = URL(string: urlString)?.host, !host.isEmpty {
|
||||
return host
|
||||
}
|
||||
return URL(string: "https://" + urlString)?.host
|
||||
}
|
||||
|
||||
private static func hostsMatch(_ a: String, _ b: String) -> Bool {
|
||||
|
||||
Reference in New Issue
Block a user