"destruk" wrote:
Sideloading a pkg file and running it on the roku does work. I tried it a couple weeks ago and it was fine.
The 'passwords' to key an app aren't insecure. If you kept the password safe then I don't think anyone would be able to brute force it open.
If you can side-load (which I just tested, and can verify does work, despite the documentation.. even if your dev key doesn't match :?), then you can debug, which gives access to the full source code as you step through it (which I also just tested). It wouldn't be easy to capture, but it certainly wouldn't be impossible with a scriptable telnet client, and it doesn't require brute force.
Roku, please revisit this functionality, so it works as the documentation suggests...
My Channels: http://roku.permanence.com - Twitter: @TheEndlessDev
Instant Watch Browser (NetflixIWB), Aquarium Screensaver (AQUARIUM), Clever Clocks Screensaver (CLEVERCLOCKS), iTunes Podcasts (ITPC), My Channels (MYCHANNELS)