Ecosystem metrics
- New Repos
- 12
- New
- Commits
- 722
- up 7.1%
- Releases
- 6
- up 500.0%
- Contributors
- 51
- up 18.6%
- Merges
- 19
- down 20.8%
Activity Overview
Commits and releases over time
- Commits
- Releases
- Authors
Repository Explorer
No repositories match that filter.
8364 commits in all time
Jul 11, 2026 23:27 – Oct 09, 2026 23:27 UTC
Fix audit findings AW-2026-059..066, 068..070 (test-first)
- Wallet persistence: merge accounts added in another tab, refuse to overwrite a record that cannot be decrypted and lock the stale tab, allow-list what enters the encrypted blob, createWallet logs out first, 8 character password minimum - dApp requests: group completeness on all transports, genesis hash check that blocks signing, WalletConnect v1 requests through the shared admission - Direct: network-change warning, application calls refused on unknown networks, popup resize only after origin verification - signer cache cleared on logout - New unit specs and a two-tab E2E spec; registry and changelog updated Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com>
59686781
fix/audit-2026-10-10
29/995 ++ 153 --
Audit: update risk registry and add report for 2026-10-10 audit findings
a8b02741
fix/audit-2026-10-10
2/84 ++ 4 --
CI: log in to Docker Hub before setting up Buildx
The "Build and deploy the main branch" workflow set up Buildx (which pulls the
moby/buildkit helper image from Docker Hub) before logging in. That pull is
anonymous and goes through a shared runner account; a slow token request on
auth.docker.io then failed the whole deploy ("Client.Timeout exceeded while
awaiting headers"), before any repository code ran. Log in first so the pull is
authenticated with this account's limits.
Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
604098ad
fix/ci-docker-login-before-buildx
1/8 ++ 3 --
Direct: match known networks on the full genesis hash, verified signing env
Known networks are recognised only by an exact match of the full 32-byte genesis hash (a CAIP-2 prefix is not enough). An unknown network may not carry a known network's genesis ID. The popup passes the verified network env to signing instead of the transaction's own genesis ID. sign_data without genesisHash now says no network was named. Adds the missing connect.close_to locale key. Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com>
dc857623
feat/direct-any-network
20/295 ++ 52 --
Direct: sign on every network and show which one
The popup no longer refuses requests for a network other than the wallet's selected one. It resolves the network from the request's genesis hash, shows it on every request (name, test badge, unknown-network warning, differs-from-wallet note) and hides wallet-network enrichment for foreign networks. Transactions must carry the request's genesis hash and, for known networks, the matching genesis ID. Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com>
945d771f
feat/direct-any-network
22/772 ++ 294 --
Merge 221608ed0919d5a88039790bb066ffeb49fd15a0 into e0afdfc0e635493da9c0f7450d269c120b784f32
14dbd035
pull/6761/merge
9/323 ++ 135 --
add Go Benchmark (go) benchmark result for e0afdfc0e635493da9c0f7450d269c120b784f32
3c667d73
gh-pages
1/445 ++ 1 --
tests: fix TestLedgerVerifiesOldStateProofs race (#6757)
Co-authored-by: nullun <git@nullun.com>
e0afdfc0
master
3/46 ++ 42 --
feat: add in falcon-1024 support for trusty applet
4789e4c5
trusty
48/22,731 ++ 305 --