Skip to content

[PM-43126] Add NixgramX to FIDO2 community privileged allow list - #7358

Open
Anndy999 wants to merge 1 commit into
bitwarden:mainfrom
Anndy999:add-nixgramx-privileged-app
Open

[PM-43126] Add NixgramX to FIDO2 community privileged allow list#7358
Anndy999 wants to merge 1 commit into
bitwarden:mainfrom
Anndy999:add-nixgramx-privileged-app

Conversation

@Anndy999

@Anndy999 Anndy999 commented Sep 5, 2026

Copy link
Copy Markdown

Summary

Adds app.nixgramx.android to fido2_privileged_community.json so Bitwarden can honor Credential Manager setOrigin(https://telegram.org) from this open-source Telegram client fork.

Official Telegram uses telegram.org Digital Asset Links (unavailable to forks). Without an allowlist entry, passkeys fail with origin/signature errors unless the user somehow trusts the caller.

App details

  • Package: app.nixgramx.android
  • Release cert SHA-256: 52:54:81:59:97:91:41:62:6E:E5:B4:07:B8:4E:E7:0A:33:44:ED:91:29:7F:5F:BE:8E:91:DF:8F:0C:29:A3:1C
  • Source: https://github.com/Anndy999/NixgramX

Test plan

  • Asset/JSON CI checks pass
  • Bitwarden build with this entry: NixgramX passkey flow with preferred provider Bitwarden

Telegram Android forks use Credential Manager setOrigin(https://telegram.org)
for passkeys (same pattern as browsers calling on behalf of an RP).

Package: app.nixgramx.android
Release SHA-256: 52:54:81:59:97:91:41:62:6E:E5:B4:07:B8:4E:E7:0A:33:44:ED:91:29:7F:5F:BE:8E:91:DF:8F:0C:29:A3:1C
Repo: https://github.com/Anndy999/NixgramX
@Anndy999
Anndy999 requested review from a team and david-livefront as code owners September 5, 2026 07:58
@CLAassistant

Copy link
Copy Markdown

CLA assistant check
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.


NixgramX seems not to be a GitHub user. You need a GitHub account to be able to sign the CLA. If you have already a GitHub account, please add the email address used for this commit to your account.
You have signed the CLA already but the status is still pending? Let us recheck it.

1 similar comment
@CLAassistant

Copy link
Copy Markdown

CLA assistant check
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.


NixgramX seems not to be a GitHub user. You need a GitHub account to be able to sign the CLA. If you have already a GitHub account, please add the email address used for this commit to your account.
You have signed the CLA already but the status is still pending? Let us recheck it.

@bitwarden-bot

Copy link
Copy Markdown
Collaborator

Thank you for your contribution! We've added this to our internal tracking system for review.
ID: PM-43126
Link: https://bitwarden.atlassian.net/browse/PM-43126

Details on our contribution process can be found here: https://contributing.bitwarden.com/contributing/pull-requests/community-pr-process.

@bitwarden-bot bitwarden-bot changed the title Add NixgramX to FIDO2 community privileged allow list [PM-43126] Add NixgramX to FIDO2 community privileged allow list Sep 5, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants