Right, so when will an online client be ready that is secure?
Never, relying on a 3rd party can't be secure.
Not 100%ly secure, but your online client is so damm unsecure it's insane to use or offer it at all.
I don't want to trashtalk my investment here, but from my perspective you all have shown far too little sensitivity for security to run a closed source project with such enomous requirements on security. If you can't fix the perspective from outsiders about your security effords noone would buy any of your coins.
I don't think you are, but you do look very incompetent on this for an outsider.
Change your altitude towards security, and stop to offer help in a way that rings every alarm bell on everyone with brains. Requesting keys via PM is a nice way to help people, but if I had read something like that bevor I wouldn't have bought any coins at all. The way you handled the initial distribution is extemly incompetent and I don't even see how others could check the whole initial block. Asking someone to set up a VPN so you could configure his machine is madness!