Skip to content

PGPony Android 3.1.0

Choose a tag to compare

@norsehorse-dev norsehorse-dev released this 04 Jul 03:35

PGPony 3.1.0 brings full PGP/MIME support, a card PIN cache, and complete support for offline-primary hardware key layouts — reaching feature parity with PGPony iOS 7.1.

PGP/MIME messages with attachments

  • Decrypting a PGP/MIME message (from Thunderbird and other mail clients) now shows the message body with its attachments as individual items — open, save, or share each one, or share them all at once.
  • New Bundle mode on the Encrypt screen: write a message, attach photos and files, and encrypt everything into a single output — save or share as a standards-compliant .eml (RFC 3156) or as a plain .asc.
  • Share multiple files into PGPony at once to start an encrypted bundle.
  • Opening or sharing in a .eml routes to the right place automatically.

Hardware keys

  • Remember card PIN (Settings → Security, off by default): keeps your user PIN in memory for a chosen duration (1 min – 1 hour) so it isn't retyped for every NFC tap. Never written to disk; cleared by a wrong PIN, closing the app, the timer, or the new Clear button — with a live countdown in Settings.
  • Offline-primary layouts fully supported. Cards carrying only subkeys (primary key kept offline) now link to the correct keyring entry on import instead of creating a duplicate, produce signatures with the correct signing-subkey issuer (verified against GnuPG), and work across every encrypt, decrypt, and sign flow.

Interoperability

  • Messages encrypted by modern GnuPG using AEAD/OCB ("tag 20") are now accepted — previously rejected with a false "no integrity protection" error despite being fully authenticated.
  • Password-based encryption already interoperates with gpg -c in both directions.

Encrypt screen

  • Redesigned mode row: Text, Sign, File, Bundle — with password encryption available as an "Encrypt with" choice inside Text and File modes (matching iOS).
  • Send as Email: send encrypted output straight to your mail app — inline in the body (PGP-aware clients decrypt automatically), as a .asc attachment, or both (Settings → Email).
  • Sign by default option: start new messages with signing enabled using your default key.
  • Encrypt inputs are cleared automatically after you close a