Envoy
com.foundationdevices.envoy
Zapstore _@zapstore.dev Republished from GitHub / F-Droid by the Zapstore main account.
Envoy is a simple Bitcoin wallet with powerful account management and privacy features. Use Envoy alongside your Passport hardware wallet for setup, firmware updates, and more. Envoy offers the following features: 1. Magic Backups. Get up and running with self-custody in only 60 seconds with automatic encrypted backups. Seed words optional. 2. Manage your mobile wallet and Passport hardware wallet accounts in the same app. 3. Send and receive Bitcoin in a zen-like interface. 4. Connect your Passport hardware wallet for setup, firmware updates, and support videos. Use Envoy as your software wallet connected to your Passport. 5. Fully open source and privacy preserving. Envoy optionally connects to the Internet with Tor for maximum privacy. 6. Optionally connect your own Bitcoin node.
First release: Aug 14, 2025, 14 total releases.
Most recent release: Sep 15, 2026.
Appears in 2 app stacks.
0 sats / 0 zaps received in the past year.
Sats Received
Underlying data available via MCP: app_zaps, app_releases.
Zap Count
Underlying data available via MCP: app_zaps, app_releases.
Releases
- Sep 15, 2026 2.3.4<img width="1920" height="1080" alt="image" src="https://github.com/user-attachments/assets/7cfb1077-1de2-4d55-a427-ef0239f0b38a" /> ### What's Changed Envoy 2.3.4 focuses on reliability. Passport Prime firmware updates now resume after an interruption rather than starting again, Tor connections recover more cleanly, and Magic Backup stores and removes wallet data more precisely on iOS and Android. Android releases are also now reproducible, so anyone can rebuild Envoy from source and confirm it matches the APK we publish. ### New Features - Envoy Android releases are now reproducible. With pinned Nix dependencies, anyone can independently rebuild Envoy from source and verify that their local build byte-for-byte matches the APK we publish on GitHub and the Play Store.
More…
### Improvements - Passport Prime firmware updates now resume instead of restarting. Envoy streams firmware patches with transport-level resume support, so a slow connection that stalls no longer discards the transfer and starts from zero. Envoy also acknowledges firmware fetches to Passport Prime before preparing the patch, so the device's transfer watchdog no longer times out during preparation. - Passport Prime onboarding is now more forgiving on slow networks. Connectivity checks give Tor enough time to complete a cold bootstrap before reporting disconnection, so onboarding no longer fails while Tor is still coming online. - Tor connectivity is more resilient. Envoy recovers from Tor startup failures, prevents automatic Tor recovery from becoming permanently wedged, and uses a single consistent TLS validation policy for personal Electrum nodes reached over onion addresses. - Improved how Magic Backup stores and removes wallet data on iOS and Android. - Learn video downloads now surface errors properly instead of leaving the Learn UI waiting forever when a download stalls, errors, or is cancelled. ### Bug Fixes - Fixed a bug where a timed-out Bluetooth write during a Passport Prime firmware update could permanently wedge all subsequent communication with Passport Prime, including heartbeats and exchange rates, until Envoy was restarted. - Fixed a bug where a failed Passport Prime update check could cause the next successful check to display the stale error, blocking users from installing an available update. - Fixed a bug where manual and periodic wallet syncs could overlap and duplicate work. - Fixed a bug where a single Electrum sync round with several concurrent descriptor failures could falsely turn the Tor shield red even when Tor itself was healthy. - Aug 27, 2026 2.3.3<img width="1920" height="1080" alt="image" src="https://github.com/user-attachments/assets/8fc70625-b9a5-4c34-b90a-c86c9d2994cf" /> ### What's Changed Envoy 2.3.3 is a point release that makes Passport Prime pairing more reliable, and fixes a visual bug in the seed verification puzzle at above-standard zoom levels. ### Improvements - Passport Prime pairing is now more reliable. Envoy automatically retries the pairing request if no response is received within 2 seconds, and better tolerates small differences in Passport Prime's clock, making onboarding smoother.
More…
- Removed a hardcoded Stripe test key from Envoy ### Bug Fixes - Fixed a visual bug where the seed verification puzzle could push some words outside the viewable area when above-standard zoom levels are selected on the phone - Aug 20, 2026 2.3.2<img width="1920" height="1080" alt="image" src="https://github.com/user-attachments/assets/d5fea972-0b70-4666-9fc0-35997fbc8fac" /> ### What's Changed Envoy 2.3.2 is a maintenance release focused on stability and security. It includes fixes across Passport Prime onboarding, account handling and the send flow, along with several dependency security updates. ### Improvements - Updates that require Passport Prime to reboot can now be delivered on their own, separately from the updates that follow them
More…
- The "What's New" section now sources KeyOS release notes from the correct release stream - Increased the touch area of the addresses button so it is easier to tap - Updated multiple dependencies ### Bug Fixes - Fixed a bug where Passport Prime onboarding could reject a genuine device and show a counterfeit warning if the security challenge timed out or a network hiccup interrupted the check - Fixed a bug where a previously synchronized Passport Prime passphrase account could still appear in the Transfer flow and other account selectors, even when no passphrase was active on the connected device - Fixed a bug where pressing Enter in the send address field would insert a newline instead of dismissing the keyboard - Fixed a visual bug where the Advanced onboarding screen opened slightly pre-scrolled on first launch, partially cutting off the Magic Backups header - Fixed a visual bug where margins were off in the send flow - Fixed a bug on iOS where Passport Prime devices with a custom Bluetooth name would not appear in the accessory picker during pairing - Aug 11, 2026 2.3.1<img width="1920" height="1080" alt="image" src="https://github.com/user-attachments/assets/09a2d5c7-48df-40ae-a2c5-b2f48b2dad7d" /> ### What's Changed Envoy 2.3.1 is a follow-up release to 2.3.0 focused on important bug fixes and reliability improvements. This release fixes a privacy issue where passphrase-account transactions could appear in the global Activity feed, restores message signing from non-zero accounts when using Passport Prime, and corrects the "latest" firmware version shown for Passport Prime on the Devices tile. We've also improved Tor connectivity in networks where Google is blocking Tor exit nodes, resolved a repeated Tor restart loop, restored QuantumLink Bluetooth pairing on Android 10 and 11, and shipped security updates to wallet dependencies. For more details on each of the changes, keep reading below! ### Improvements
More…
- Improved Tor connectivity in situations where Google was blocking Envoy's traffic through certain Tor exit nodes - Removed the Buy bitcoin option from Envoy - Upgraded Envoy's embedded Tor client (Arti) to 2.5.0 to pick up upstream Tor connectivity and stability improvements - Upgraded Envoy's Flutter framework to 3.44.2 to pick up upstream stability and performance improvements ### Bug Fixes - Fixed a bug that could prevent Passport Prime's clock from correctly syncing with Envoy - Fixed a privacy bug where transactions from passphrase-protected accounts could still appear in the global Activity feed while the passphrase was not active - the Activity feed now correctly hides these transactions until the passphrase is entered - Fixed a bug that prevented signing messages from non-zero accounts on Passport Prime - the address Envoy displays now matches the address Passport Prime signs with - Fixed a bug where the Devices tile could show an intermediate patch as the "latest" Passport Prime firmware instead of the true tip of the update chain, causing an incorrect red-dot update badge - Fixed an issue where Envoy could get stuck in a loop of repeatedly restarting Tor after persistent post-bootstrap connectivity failures - Fixed a bug where QuantumLink Bluetooth pairing could fail on Android 10 and 11 devices due to missing runtime Bluetooth permissions - Fixed a minor visual bug where an unwanted gap could appear on the account cards screen - Jun 22, 2026 2.3.0<img width="1920" height="1080" alt="image" src="https://github.com/user-attachments/assets/3b2bbded-e5d5-450b-bce9-68f72d379b75" /> ### What's Changed Envoy 2.3.0 is a major release packed with new features and improvements. This release introduces a redesigned Send flow, the ability to transfer funds between your own accounts without copy-pasting addresses, message signing with Envoy, a new Address Explorer, sub-sat fee rates, and adjustable QR code density for faster Passport signing. We've also added support for custom block explorers, improvements in pairing Passport Prime devices, and manual account rescans. Under the hood, this release brings major Passport Prime pairing and Bluetooth reliability improvements, security fixes, dozens of dependency security updates, and a long list of bug fixes across coin control, fee picking, onboarding, navigation, and translations. For more details on each of the changes, keep reading below! ### New Features
More…
- You can now use the redesigned Send flow, with a clearer, faster transaction-building experience - You can now Transfer funds directly between your own Envoy accounts, without having to copy and paste addresses - You can now craft messages in Envoy for Passport, for example as proof you control a particular address - You can now browse the full list of receive and change addresses for any account using the new Address Explorer - You can now choose sub-sat fee rates, with full support across all Foundation public servers - You can now adjust QR code density when signing transactions with Passport, dramatically speeding up large multi-input signing flows - You can now set a custom block explorer in Envoy - You can now manually rescan accounts to recover transactions and balances after migrations or other syncing issues ### Improvements - The fee picker has been polished with new info banners, with improvements done to the estimated times, and fiat value now updates as the fee selection changes - Many previously hardcoded strings across the QuantumLink transfer flow, region pickers, onboarding, the Azteco modal, toasts, exchange rate labels, and testnet texts have been translated - Improved Portuguese time translations and completed missing translations across Spanish, Catalan, and Portuguese - Redesigned existing warning messages and connection dialogs across the app for clarity and consistency - Passport Prime accounts now derive their color from the account index, so each Prime account gets a distinct color instead of every account showing the same LightCopper - The Receive screen and descriptor card have been updated to use the latest pill button design - Improved the design of the "cancel transaction" screen so it matches the rest of designs in the app - Redesigned the three dot menus to look cleaner - The close (X) button on the QR scanner now has a larger tap target so it's easier to dismiss - Envoy now sends an extra balance graph update right after onboarding completes, so the graph appears fully refreshed instead of showing "Last Update 2 mins ago" - Envoy 2.3.0 is now compliant with Android's 16 KB page size requirement - Number formatting throughout Envoy now follow more consistent grouping, spacing, and coloring conventions - Transaction details now include the number of confirmations alongside the "Confirmed" status after tapping to expand - Added a dedicated dialog to a failed-PSBT error that previously threw an unexpected system error - Improved the account loading UI to more clearly communicate what's happening and to easier distinguish it from an account with hidden balance - The 24-word seed input screen now uses one box per row, matching the seed-quiz layout for easier reading and entry for users with extreme levels of zoom - Envoy now supports pairing to a specific Passport Prime device when there are multiple Primes nearby, using the device name embedded in the pairing QR - Envoy now correctly handles unpair events from KeyOS, and shows a clear "paired but not connected" state when Passport Prime is out of range or Bluetooth is off - Added a deferred deeplink flow for mini-clip onboarding for iOS users that didn't have envoy installed the first time they scan Passport Prime's QR - Hid the onboarding setup option for Passport Core firmware versions before 2.3.5 - Added a warning modal that appears when receiving to a mobile hot wallet and you have at least one Passport paired, to make it clear that is not the account secured by Passport - Added an option to resurface all previously dismissed "don't show again" popups - Added drag-and-drop reordering for paired devices, matching the behavior on the accounts screen - Added Bitaroo as a public Electrum server option - Updated several dependencies to address security advisories, including multiple high-severity rust-openssl issues, libcrux-ml-dsa AVX2 signature verification, rustls-webpki CRL handling, AWS-LC PKCS7 certificate validation, and additional issues in webpki, bytes, rand, and the rsa crate ### Bug Fixes - Fixed a critical Passport Prime security check (SCV) vulnerability where a device error response could be incorrectly reported as a successful verification - Fixed a Magic Backup server vulnerability that allowed unauthenticated listing, downloading, and deletion of backup data. We have the certainty this has not been exploited in the wild and a generous bounty was paid to the researcher that responsibly disclosed it. Thank you. - Fixed a bug where starting a new Keycard backup and backing up before completing it could erase the previous Shamir share form Envoy, leaving the user without a valid backup - Fixed the NGU server price endpoints, which were failing for several fiat currencies - Fixed a bug where a passphrased account from Passport Prime would disappear from Envoy after the device was reconnected - Fixed the UR transfer progress calculation so the percentage is now based on actual received-vs-expected bytes - Addressed three medium-severity findings from the ngwallet security audit: Electrum TLS domain validation is no longer disabled when a SOCKS proxy is configured, malformed untrusted PSBT scripts no longer panic the parser, and "do not spend" UTXO locks are properly enforced even for selected outputs - Hardened Bluetooth auto-reconnection between Passport Prime and Envoy, which could previously fail to re-establish reliably after sleep or backgrounding - Fixed a bug where the "What's new in ..." button could open a 404 GitHub page after updating firmware from settings - Fixed a bug where Envoy could continue showing a firmware version as available after it had been pulled from the release channel - Fixed a bug where account balances would briefly show 0 when pairing or removing a device - Fixed an Insufficient Funds error that could appear for some users even when the wallet had enough balance to cover the transaction - Fixed a bug where confirmed transactions could stay stuck in the "awaiting confirmation" state until the app was force-closed and reopened - Fixed a regression where the firmware-update red dot would not appear after pairing a Founder's Edition Passport - Fixed a regression where the Secure Bluetooth indicator was missing its icon - Fixed a visual glitch where the bottom navigation icons briefly appeared behind the hamburger menu while it was closing - Fixed a rare crash on iOS caused by Tor - Fixed a bug on iOS where the seed could persist after the app was reinstalled, causing the "Set up Mobile Wallet" screen to be skipped - Fixed a bug where the wrong Passport Prime icon could appear when pairing an account before the device itself - Fixed a rare bug where the screen could turn black after dismissing the Tor toast - Fixed a bug where some seed words were displayed too small to read on the view-seed screen - Fixed a bug where activity transactions could appear out of chronological order - Fixed a bug where the Save button in the add-note popup was hard to tap because the popup was not scrollable on big zoom levels - Fixed a bug where tapping back twice after creating a hot wallet would land on an unintended screen - Fixed a bug on Android where the back gesture did not behave correctly during coin selection review, the send screen, and the About screens - Fixed a bug where the camera would fail to close after a successful QR scan that followed a previous scan error - Fixed a regression where the network (testnet/mainnet) preference was not respected when restoring a backup from file - Fixed a bug where Envoy could not connect to a Fulcrum server over TLS - Fixed a bug where longer seed words could be truncated in the view-seed modal - Fixed a crash that could occur when scanning a random unrelated QR code during the Passport Security Check - Fixed a bug where the Prime version update message could be incorrect after a user cancelled an update - Fixed a layout bug on Android where a button could be hidden behind the system navigation bar - Fixed a bug where the incoming BTC graph data could stop updating on Passport Prime after pairing - Fixed a bug where long-pressing the amount field to paste non-numeric content could set the fiat value to 0 - Fixed a bug where the keyboard could open unexpectedly on the Magic Backup screen after exiting the personal node Privacy screen - Fixed a bug where an old bottom-sheet modal could reappear unexpectedly - Fixed a bug where the Devices screen would flash and refresh whenever a new QuantumLink connection was established - Fixed a visual bug where deleting the mobile hot wallet account could turn the app black; users are now correctly routed to the Backups screen - Fixed a bug where the fee picker could jump unexpectedly between very different sats/vbyte values - Fixed a minor visual bug showing a stray dotted line in the UI - Fixed an incorrect icon in the onboarding scanner animation, which now shows a device instead of a bare QR - Fixed spacing on the Backups screen when Magic Backup was turned off - Fixed a bug where the Retry button did not work after an invalid QR scan during pairing - Fixed a bug where a renamed Passport Prime name was not stored in Magic Backup, causing the name to revert to the default after restore - Fixed an Android camera leak by checking camera status before each QR plugin call - Fixed a bug where Envoy would ping Vimeo over the network in Tor mode even when no video was being loaded - Fixed a bug where a repeated word could appear in the seed verification quiz - Fixed an unnecessary scrollbar that appeared in some Spanish-localized screens due to header overflow - Fixed a bug where account swipe bubbles could get stuck after a vertical scroll started on top of them - Apr 23, 2026 2.2.14<img width="1920" height="1080" alt="image" src="https://github.com/user-attachments/assets/f1a31aa3-ee87-4103-a009-fb8e593839f9" /> ### What's Changed Envoy 2.2.14 is a maintenance release focused on stability and bug fixes. This update hardens iOS Bluetooth connectivity, fixes several Passport Prime account display and Magic Backup bugs, addresses a handful of coin control and fee flow issues, and includes some updated localizations. For more details on each of the changes, keep reading below! ### Improvements
More…
- Envoy now resets the failed Foundation server connection counter when the app is restored from the background, so transient network issues no longer prevent reconnection - Hardened the iOS Bluetooth connection, resolving some connectivity issues for some users - Debug logs now capture up to 1000 lines for more thorough troubleshooting - Updated translations ### Bug Fixes - Fixed a bug where sometimes the Envoy seed could be screenshotted on certain iOS devices - Fixed a bug that could cause crashing on some older Android devices - Fixed a bug where sometimes the Passport Prime account would not display in Envoy - Fixed a bug where re-adding a Magic Backup could sometimes cause the account to load indefinitely - Fixed a bug where Passport Prime would default to SegWit even when the user's address type preference was set to Taproot - Fixed a bug where a device rename was not immediately reflected in the accounts view - Fixed a bug where the fee setting would revert after tapping 'Review' on coin selection - Fixed a bug where sometimes the fee slider would show incorrect numbers on very low send amounts - Fixed a bug where the UI would not update after modifying the last coin in a tag - Fixed a bug where sometimes existing tags could get renamed to Untagged - Fixed a bug where fiat values were not shown when scanning a BIP21 QR code - Fixed a bug where pasting a small fiat amount might not work correctly - Fixed a bug where the "Don't show again" option was not respected for the transaction ID copy confirmation - Fixed a bug where some flows were unreachable for users with very high zoom levels - Fixed a bug on iOS where recovering from a QR-encoded seed would sometimes restart the onboarding flow - Fixed a bug where sometimes blog images would not load when connected over Tor - Fixed a version parsing issue that could cause update checks to fail - Fixed a bug where the "Empty your wallet" warning could appear on an already-empty wallet - Fixed a minor visual bug where the boost icon could be displayed out of place - Fixed a minor visual bug on the transaction tile - Apr 9, 2026 2.2.13<img width="1920" height="1080" alt="envoy_release_2213" src="https://github.com/user-attachments/assets/655d6428-d3ce-4775-b7dd-54e1087516a5" /> ### What's changed Envoy 2.2.13 is a maintenance release focused on stability and bug fixes. This update addresses several Passport Prime onboarding issues, fixes an iOS share sheet bug, and includes a security-related dependency update. For more details on each of the changes, keep reading below! ### Improvements
More…
- The device selector now defaults to showing Passport Prime when no device is paired - Updated dependencies ### Bug Fixes - Fixed an issue where the Passport Prime onboarding connectivity check would load indefinitely when Tor was slow or unreachable - Fixed a bug where the share sheet would not appear on some iOS devices - Envoy now checks for available updates during the onboarding connectivity check to avoid skipping a mandatory update by mistake if onboarding through deepscan - Fixed a bug where the firmware version would not be fetched for Passport Core devices - Fixed the "Envoy update available" link not working taking the user to the correct download location - Fixed a minor visual bug where the bottom navigation bar had incorrect padding - Passport Prime Magic Backups no longer depend on the Envoy Magic Backup status - Mar 13, 2026 2.2.12<img width="1920" height="1080" alt="image" src="https://github.com/user-attachments/assets/9daff4f4-5bf4-4935-acce-bc38f68c02cd" /> ### What's changed Envoy 2.2.12 is a major update focused on Passport Prime support. This release introduces multi-device pairing and an improved connection experience for Passport Prime. We've also made significant Bluetooth reliability improvements, refined the Tor connectivity experience, and squashed dozens of bugs across BLE pairing, QuantumLink stability, and the Passport Prime onboarding flow. For more details on each of the changes, keep reading below! ### New Features
More…
- Envoy now supports pairing to multiple Passport Prime devices! ### Improvements - Tor connectivity UX has been improved - Envoy now provides a grace period when enabling Tor, preventing temporary connection failures from showing unnecessary error messages while Tor circuits are being established - Improved device connection statuses - Envoy now shows clearer and more accurate connection states for paired devices - Updated multiple dependencies ### Bug Fixes - Fixed multiple Passport Prime related bugs - Fixed a bug where scanning a Passport Core setup QR code would not work correctly if biometrics were enabled - Fixed a minor visual bug where the loading animation would continue spinning after a Magic Backup was not found - Fixed a delay in the animation appearance when creating an Envoy seed - Fixed the post-tutorial transition to be smoother - Fixed a rare crash related to Tor that could cause Envoy to freeze - Fixed a minor visual bug where scrolling was possible in a screen where it shouldn't be - Fixed map data errors that could appear in the logs - Fixed a gray screen that could appear when removing devices - Fixed a missing icon screen that could appear after exiting onboarding - Fixed an incorrect popup appearing during device operations - Fixed a 'MissingPluginException' that could appear in logs on Android - Fixed a bug where the total balance of a recovered wallet could fail to load - Fixed logs sharing on iOS - Feb 15, 2026 2.2.6Updated Envoy Server Tor endpoint
- <img width="1920" height="1080" alt="image" src="https://github.com/user-attachments/assets/689b490f-584d-45e9-9652-4153ea53a3ec" /> ### What's changed In Envoy 2.2.5 we've focused heavily on refinements to the Passport Prime onboarding and device management. For more details on each of the changes, keep reading below!
More…
### Improvements - Improved tor reliability by adding a tor endpoint to the supply chain verification for Passport Prime - Envoy now checks for internet connectivity before allowing users to start setting up their Passport Prime - Better error messaging for different failure modes during supply chain verification of Passport Prime - Bumped Envoy's bluetooth protocol to version 1 ### Bug Fixes - Fixed a bug where the bitcoin price would not update upon reconnecting Passport Prime - Fixed a rare bug that prevented users from onboarding to Passport Prime if they failed to complete the supply chain verification flow - Fixed a bug that could cause issues during onboarding if camera permission was denied - Fixed a bug where scanning a deeplink with a menu open in Envoy would no properly load the deeplink information - <img width="1920" height="1080" alt="image" src="https://github.com/user-attachments/assets/b67f6833-9bfe-482f-ba2b-b5bea682ea48" /> ### What's changed On Envoy 2.2.1 we focused mostly on the upcoming Passport Prime integration, but we also focused efforts on improving our tor integration and fixing many bugs. For more details on each of the changes, keep reading below!
More…
### New Features - Envoy is now ready for your Passport Prime! ### Improvements - Tor connectivity has been improved - added onion native endpoints for all the calls Envoy needs to make, and bumped Arti to 1.7.0 - Upgraded Rive to 0.14 - Buy Bitcoin feature has been temporarily halted (we are working on adding a new provider) - Importing Magic Backups for an app that's already in use will not overwrite settings or user preference - If the user was using a deprecated default node, this version will update it to foundation.xyz - Improved logic around available firmware versions when restoring from Magic Backup - Magic Backup scope has been expanded to include more metadata - Many minor visual improvements ### Bug Fixes - Fixed a bug where Tor could indefinitely open new connections if the first one failed. This could lead to some phones becoming laggy and frozen at times - Fixed a bug where sometimes Magic Backups would not be recovered if the user was connected via tor - Fixed a bug where sometimes some accounts would take longer than usual to load on iOS - Fixed a fiat input bug that affected French Envoy users - Fixed a visual bug where coin tags would not be capitalized even if saved like that - Fixed a minor bug where if the user renamed an empty coin tag it would be deleted - Fixed an issue where sometimes Envoy would temporarily show an incorrect name for a Passport Core account when interacting with similarly numbered accounts in passphrase and non-passphrase accounts - Fixed a minor issue where Android users could see incorrect screens when using Android's native back gesture - Fixed a minor visual bug where users could end up seeing fiat values for testnet coins - Fixed an issue resulting in incorrect next block fee estimates for testnet 4 - Fixed a rare issue where sometimes the shield would not appear when using tor after closing the app - Fixed an issue where sometimes locally saved Magic Backups could not be loaded if the user overwrote a previously existing Magic Backup file - Fixed an edge case where some users with Magic Backups would restore it even if they explicitly asked not to during manual onboarding with the same seed - Fixed a minor visual bug where the three dots menu of the buy flow could disappear - Fixed an issue where sometimes the screen could go to black when dismissing a Tor connectivity toast - Fixed a minor visual bug where sometimes a 0 would be flashed when the user moved to the review screen after typing the send amount - Fixed a visual bug where subsat fees would be incorrectly displayed in Envoy - Fixed an issue where Android's native back gesture would not work in Envoy's menu - Fixed an issue where sometimes the custom fee wouldn't properly adjust when tapping Send Max - Fixed an issue where the "don't show again" prompt wouldn't work in the Open in Explorer dialog - Fixed a bug where some iOS users would not be able to recover from their Magic Backup - Fixed an issue where sometimes Envoy could freeze on GrapheneOS devices - Fixed a rare issue where sometime Envoy would not be able to correctly parse Passport Core security check QRs - Fixed a very rare loop some users could be trapped in if they performed some specific steps when recovering from a Magic Backup - Fixed an edge case where recovering a Magic Backup on an already existing wallet could overwrite some accounts - ### Bug Fixes * Fixed an issue where upgrading from a previous Envoy version could overwrite personal node settings.
- <img width="1920" height="1080" alt="image" src="https://github.com/user-attachments/assets/82c44600-9ba7-4d0d-92dc-55462c90687e" /> ### What's changed In Envoy v2.1.0 we squashed a lot of bugs so we encourage all our users to update to have a more smooth and solid Envoy experience. Since Magic Backups have also been improved, we encourage everyone to perform a Magic Backup after the upgrade! For more details on each of the changes, keep reading below! ### Improvements
More…
- Improved the Magic Backup restoring flow - if the user changes any privacy settings during onboarding, these will prevail over those defined in the Magic Backup file - Improved the Personal Node selection. Previously, if you defined a Personal Node, then changed to a predefined node, then back to Personal Node, the field was overwritten by the predefined node's address. This behavior has been updated so that the Personal Node saved remains there even when you return from a predefined node. - Major upgrade to Flutter to version 3.35.1 - The Personal Node is now saved to the Magic Backup, so make sure to update and perform a magic backup again to save this setting! - Added warnings for users that last paired their accounts before Passport Core v2.3.0, and want to either enable Taproot by default, access the taproot descriptor, or show a taproot receive address - Improved the fee display for Canceling transactions for users with very big text size - Updated multiple repositories and dependencies - Added tor endpoints for signet, so users that use tor should enjoy a more stable connection while using signet - Moving forward, user preference will be remembered between transactions in terms of send unit. Previously it would always default to BTC or Sats depending on app setting. - Added the Explorer option to the transaction ID for the Coin Details view ### Bug Fixes - Fixed a scenario where Magic Backups could be corrupted while being restored - Fixed a bug where sometimes an "Insufficient Funds" error could show up despite there being enough unlocked and confirmed coins - Fixed an edge case where sometimes two hot wallets could be created instead of one - Fixed an issue where tor would not be loaded on first app startup, and added checks to make sure tor is bootstrapped before attempting a connection to a node - Fixed a couple of issues that could err or show 0 send amount when scanning an all caps address - Fixed a visual bug where sometimes the fee would be displayed as 0 when accessing the transaction details - Fixed an issue where for some users the option to hide the Buy feature would not show up in settings -> advanced - Fixed a bug where under some scenario self-sends couldn't be boosted while using Passport - Fixed a rare bug where sometimes a hot wallet would be created but the seed would not be displayed - Fixed a minor visual spacing issue when selecting a Tag - Fixed an issue where users with big text sizes couldn't save a transaction's notes - Fixed an issue where Envoy would attempt to redeem a Lightning Network BTCPay voucher instead of throwing an error - Fixed an issue where sometimes iOS users wouldn't be able to delete an account that was still loading balance - Fixed a minor visual bug that would not provide visual feedback to the user when entering an incorrect seed - Fixed the date of the Envoy new version notifications to display the actual date of release, instead of the day the user connected to the internet and saw it - Fixed a visual bug where sometimes the red shield would not show up even if tor connection dropped - Fixed a bug where for some users Envoy could remain blurred even after unlocking the app - Fixed an issue where tor would sometimes not temporarily disable after explicitly asking it to do so - Fixed an issue where sometimes the PIN couldn't be entered after faceID failed for iOS users - Fixed an issue where sometimes if the user performed multiple back to back transactions, some of them would not be logged in the Activity tab - Fixed a minor bug where the default Note for BTCPay transaction wouldn't be pre-populated - Fixed a bug where after performing a migration a user could get stuck in the send screen because the "Send Max" option wouldn't disappear - Fixed a visual bug where the confirmation time wouldn't update as soon as the user changed fee rate in the transaction review screen - Overall improvements in the onboarding flow and other minor visual tweaks - ## Envoy 2.0.2 is a bugfix release for 2.0.0 ### Bug Fixes - Fixed an issue where a small subset of Passport passphrase users experienced duplicated accounts during the upgrade from 1.8.6 to 2.0.1. - Updated the migration screen to not rely on syncing accounts, so that users with networking issues can quickly update to the 2.0.0+ database structure and then address their networking issues. This will resolve instances where some users were stuck in the migration screen. - Fixed various tor related issues. Arti has also been updated to the latest version to help stabilize connections.
More…
- Fixed an issue that could cause some users not being able to connect to their nodes locally. - Envoy will now force a re-sync when upgrading to 2.0.2, so the balance will be refreshed and updated to its current value - Fixed a small typo in the personal node section and updated some of the options. - Fixed a bug where if users scanned a Passport 2.3.8 pairing QR with their phone camera app, the paired account may not be synced to Envoy. - Fixed some rare issues related to Envoy's hot wallet occasionally disappearing or missing a taproot descriptor - Fixed an issue related to the Buy Bitcoin button showing up in countries it shouldn't - Fixed a visual glitch where canceling a coin selection would sometimes result in some options not showing - Fixed an issue where users with multiple tags couldn't scroll them when reviewing coin selection - Fixed some "learn more" hyperlinks - Fixed a bug that prevented some Passport accounts from being exported in the BIP-329 file