This project only finds the local storage flaw in the iOS app, because earlier projects already covered the techniques needed to find the other three flaws.
I tested several other apps from that developer and found that they all had similar flaws. I notified the developer on 1-7-17 and got no response.
I see no reason to bother notifying them again about the iOS vulnerabilities--it's obvious that they don't care.
Register an account with the password
topsecret3-YOURNAME
Relace "YOURNAME" with a version of your name that doesn't contain any spaces.
https://macroplant.com/iexplorer/tutorials/how-to-browse-files-on-iphone-ipad-ipod
Download and install iExplorer.
On your computer, launch iExplorer.
Click "Continue with Demo".
iExplorer shows the contents of your phone, as shown below.
In iExplorer, click Files, Apps.
In the Apps page, expand these items, as shown below.
Drag the file__0.localstorage file out and drop it on your desktop.
Open the file with a hex editor. If you don't have one, install one of these:
Scroll through the file to see your stored password, which should contain your name, as shown below.
Capture a full-screen image.
YOU MUST SUBMIT A FULL-SCREEN IMAGE FOR FULL CREDIT!
Save the image with the filename "YOUR NAME Proj 13", replacing "YOUR NAME" with your real name.