Which Keepass Android app to use? (KeepassDX vs Keepass2Android?)
Am I just overthinking this?
I like Keepass2Android because of it's "QuickUnlock" feature, but it looks very old, is mainly distributed via Google Play and not on the official Fdroid repo. (Also, doesn't google now have the signing keys of all apps now? Kinda sus if Google could just sign updates and bypass the developers)
KeepassDX seems more secure, since the Fdroid and Google Play versions are separate, using (I assume) separate signing keys, so Google cant sign an update for the Fdroid version. Looks more "Modern" but it lacks the "Quick Unlock" feature, so biometrics is the only convient way to quickly unlock it, I prefer something like "Quick Unlock" feels more secure (since theres no shenanigans like replicating a fingerprint to fool the biometrics scanner).
TLDR: I really want the "QuickUnlock" feature of Keepass2Android, but with the Google policy of having the signing keys, I'm kinda sus.
Man, at this point you should think about your treat model. Are you a high profile target?
If so, choose security over convenience, but if you only want your privacy, you probably can have a comfortable balance between security and convenience.