/// App-wide constants. /// /// SECURITY NOTE: The "encryption" below is a lightweight obfuscation /// (XOR + base64) keyed by a constant. It is NOT cryptographically secure /// and exists only to satisfy the requirement "content disimpan dengan /// encrypt base64 (key sebagai constant)". For real protection, swap /// [encryptionKey] for a key derived from the user's app password + a /// platform secure store (e.g. flutter_secure_storage + AES). class AppConstants { /// Constant encryption key used for the XOR+base64 obfuscation. static const String encryptionKey = 'OMAH_CITRA_LOGIN_VAULT_2026_XOR_KEY'; /// SQLite database file name. static const String dbName = 'login_vault.db'; /// Secure storage keys. static const String secureKeyEmail = 'vault_email'; static const String secureKeyAppPassword = 'vault_app_password'; static const String secureKeySession = 'vault_session_opened_at'; /// SharedPreferences keys (settings). static const String prefTimeout = 'session_timeout_minutes'; static const String prefBiometric = 'biometric_enabled'; }