While Android Pay may have stolen the thunder in terms of Google's various methods of moving money from one party to another, Wallet is still up and running for those times when you've just got to move a few bucks between friends. The latest update looks basically identical to the last few versions, but a teardown of the app shows there are going to be a few changes to the security model that should reduce a little bit of friction and make the app much more convenient than it was in the past.
Google Account PIN and Fingerprint support are now live
It didn't take too long, but the switch to Google Account PIN has gone live in the Wallet app. Along with it is expected support for the fingerprint sensor to bypass the PIN security.
You'll be prompted to enter your old PIN the first time Wallet launches, but the prompt to switch to Google Account PIN comes immediately after. There's no option to stay on the old PIN, so you have to either make the switch or go PIN-less. After accepting the new PIN method, you'll also be prompted to use the fingerprint reader if your phone has one.
I'm not sure show much the switch to Google Account PIN will affect people, but support for the fingerprint reader is a massive improvement.
The features discussed below are probably not live yet, or may only be live for a small percentage of users. Unless stated otherwise, don't expect to see these features if you install the apk.
The fingerprint scanner on most modern phones is a massive time saver for those of us that have our phones secured. In fact, it has become a pretty standard feature for apps that handle financial transactions. Actually, I bet most people would doubt me if I said the Google Wallet app doesn't currently allow speedy access with a fingerprint, but it's true. But fortunately, that won't be the case for much longer. Some new strings in the v20 update show that fingerprint scanner support is coming soon.
<string name="fingerprint_enabled">Fingerprint enabled</string>
<string name="fingerprint_settings_setup_info">Set up fingerprint on your device first</string>
<string name="fingerprint_sign_in_message">Confirm your fingerprint</string>
<string name="fingerprint_sign_in_title">Unlock Wallet</string>
<string name="fingerprint_sign_in_waiting_for_touch">Touch sensor</string>
<string name="fingerprint_status_not_recognized">Fingerprint not recognized</string>
<string name="fingerprint_status_recognized">Fingerprint recognized</string>
<string name="fingerprint_verify_message">Its a quick, easy way to unlock Wallet</string>
<string name="fingerprint_verify_title">Turn on fingerprint</string>
<string name="fingerprint_verify_waiting_for_touch">Touch sensor to turn on</string>
The new lines look consistent with similar apps, so there's nothing special to reveal beyond simply saying fingerprint support is coming. Of course, that's enough to significantly improve Wallet since the PIN entry gets to be quite annoying, especially if you're using it so infrequently that the PIN becomes forgettable. And that happens to be a perfect lead-in to the next topic...
Changing the PIN rules and switching to a Google Account PIN
PIN codes are often used to add a little more security to debit and credit cards, bank accounts, and various other systems that deserve a little more protection than just a password. The problem with attaching PIN codes to everything is that they are easy to forget, especially if there are too many and they aren't used frequently. This is probably a common problem with Google Wallet, which requires a PIN code to access the app.
It looks like Google recognizes that too many separate products use distinct PINs and decided to do away with Google Wallet's dedicated system. Taking its place is the Google Account PIN, a more universal system that has been adopted across a handful of Google's other services and apps. Google Play and G Suite already support Google Account PINs, so many people may already have one. If not, Wallet will offer to set one up.
<string name="pin_migration_setup_gaia_pin_message">Google Wallet will no longer use the Payments PIN. If you'd like to continue using a PIN to access your Wallet app, you'll need to create a Google Account PIN. This PIN is used for other Google apps, too.</string>
<string name="pin_migration_switch_to_gaia_pin_message">Google Wallet will no longer use the Payments PIN, which means one less PIN for you to remember. Since you already have a Google Account PIN, you'll just need to switch over.</string>
<string name="pin_migration_button_switch_to_gaia_pin">Switch to Google Account PIN</string>
<string name="pin_migration_button_create_gaia_pin">Create Google Account PIN</string>
<string name="pin_migration_finished_message_fingerprint">From now on, you'll use this PIN to access your Google Wallet app. You can also use fingerprint.</string>
<string name="pin_migration_finished_message_fingerprint_not_available">From now on, you'll use this PIN to access your Google Wallet app.</string>
<string name="pin_migration_finished_title">Switched to Google Account PIN</string>
<string name="pin_migration_setup_gaia_pin_title">Wallet supports the Google Account PIN</string>
As Google's text points out, the major advantage of this is that many people will have one fewer PIN to remember. Of course, there are plenty of people that don't have a Google Account PIN, so this won't change much for them.
"Your Google Account PIN is different from PINs you might have for other Google products, like Google Voice, Google Wallet, and AdWords."
- From the current Google Accounts PIN support page
Seeing as Google's support pages currently specify Wallet as one of the apps that uses a different PIN, it's safe to say the conversion hasn't begun yet, but it's probably not too far off.
That's not where things stop, though; Google appears to be relaxing the security rules in another way. Two final lines make it look like Wallet users may finally get the option to drop the PIN code requirement entirely.
<string name="pin_migration_button_turn_off_pin">Don't use pin anymore</string>
<string name="pin_migration_pin_turned_off_toast">You no longer need a PIN to access Wallet.</string>
This will be the perfect solution for those that keep their phones securely locked most of the time or don't have any payment methods set up in Wallet. For everybody else, it's probably still advisable to keep security enabled, but that shouldn't be nearly as annoying once we can use a fingerprint for security.
The APK is signed by Google and upgrades your existing app. The cryptographic signature guarantees that the file is safe to install and was not tampered with in any way. Rather than wait for Google to push this download to your devices, which can take days, download and install it just like any other APK.