So don't copy passwords into your clipboard!
So don't copy passwords into your clipboard!
On Windows Phone 8 and Windows Mobile 10, a background app doesn’t have access to the clipboard. The API is just blocked for background apps regardless on those application-wide permission settings.
https://msdn.microsoft.com/en-us/library/windows/apps/hh2029...
https://msdn.microsoft.com/en-us/library/windows/apps/window...
But personally I’m happy with my Lumia 930. It’s old but still works fine (replaced a battery once) and is updated to latest WM10. I don’t care about OS market share as long as my own copy works.
On a positive note, I am seeing on consumer stores here in Germany the space that was used by hybrid Android tablets, being increasingly replaced by W10 netbooks and hybrid tablets.
CopperheadOS patched this in late 2016. https://copperhead.co/android/docs/technical_overview
https://developer.apple.com/reference/uikit/uipasteboard
Then there's the usual "no running in the background" obstacles, but assuming you can get around that…
These days, I pretty much don't install apps on my phone. I just use it as an everywhere web browser and live with the web version of various things.
My 'SLA' for facebook messages is about 24 hours, and people who send me things there learn that over time. I generally just tell them why I don't see their messages right away.
In general, I make a point of not being too responsive with any online/async notification systems, except for SMS. It's one way I keep myself from being so scattered.
You could actually do that through the Facebook.com web interface much longer than you could through the FB mobile app. Of course, you can still do it on the web, though it's a separate domain (just as, on mobile, it's a separate app.)
But since they really want you to use the Messenger mobile app, to use the web interface on mobile you have to use "Request desktop site".
Yet you still have to bring the app to the foreground, but this is potentially a huge privacy leak IMHO.
The "doodle fruit ninja run" game I play don't need to now that my girlfriend left me so they can display a tinder ad...
(Oh, god if an evil ad developer come here don't take this as a good idea)
I know this because I wrote an app[1] that does precisely this and looks for a specific URL in the clipboard. I was surprised when I found out I don't need to ask for permission to read clipboard changes.
[1] https://play.google.com/store/apps/details?id=net.schueller....
I'd even settle for the ability to put stuff in the clipboard programmatically ...
This is a case of overly broad security imho.
Can websites running in background tabs access the clipboard contents on the Desktop?
There are steps people can take to maintain the "safety" of their information -- but not many do, instead they complain loudly and hope a first-party will give them the controls instead. This is basically never going to happen.
Using AOSP, CyanogenMod/LineageOS, CopperheadOS builds are one of the first steps. If you (not you, but persons) can't climb over that relatively low barrier, it's likely that they're going to be stuck at the level of complaining loudly until someone provides the equivalent of a pacifier -- something to quiesce, but not actually provide any real controls.
[0]. It's XPrivacy, and yes, it requires XPosed, which requires a modified system partition, which generally requires root, which most people won't give up mobile payments for. It all comes back to security vs convenience. There's always a choice, most people are picking the "wrong" one and complaining about it.
Let's accept it, most of the people are going to use the default settings, it does help to shout about your issues, and the first-parties do listen if you shout loud enough.
In other words: Some devices are more equal than others, Android isn't a really open platform and your suggestion, while something I personally sympathize with, is impossible in general. :/
I assume (hope) the others do it the same way. Clipboard memory has _never_ been safe not on PC and not on phones.
[0]. https://play.google.com/store/apps/details?id=keepass2androi...
Keepass for windows and linux use autotyping or clears the buffer after a few seconds if you copy.
Treat your phone like you've always treated your desktop - only install trusted applications and use tools like XPrivacy to analyze sketchy applications and block "features" for the ones you absolutely need to use.
Maybe I'm wrong, but at the very least, XPrivacy indicates it accesses clipboard shortly after requesting auto-fill - don't have a hook for setting text there.