You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
There is a security issue where, after a persona is toggled to private in the app, the previously active chat link remains accessible. This exposes all past conversation data, potentially allowing unauthorized users to access sensitive information.
Steps to Reproduce
Go to profile and make a persona public (using the toggle)
Issue Description
There is a security issue where, after a persona is toggled to private in the app, the previously active chat link remains accessible. This exposes all past conversation data, potentially allowing unauthorized users to access sensitive information.
Steps to Reproduce
Expected Behavior
When a persona is set to private, all existing links should be immediately invalidated and access should be revoked.
Current Behavior
Security Implications
This vulnerability exposes user data and conversations that users believe to be private, creating a significant privacy breach.
Suggested Fix
Additional Information
This issue affects the personas.omi.me service and the privacy controls in the mobile app.
The text was updated successfully, but these errors were encountered: