Every captured commit receives deterministic security triage and a separate communication-quality score. Security candidates and broader second-pass signals receive full-patch Ollama analysis.
Message quality measures whether a commit identifies its scope, purpose, rationale, testing, and supporting references. It does not change the security-severity score.
This is a routine release-candidate commit for Cake Wallet/Monero.com version 6.5.0. It bumps the Monero core library version, adds a new Robinhood Chain wallet, enables price charts and Bitcoin accounts, reverts a database table that was …
Database schema reverts creation of DeprecatedWalletSeeds table, reducing persistent seed storage surfaceAlchemy API key fallback hardcoded to empty string, preventing unintended use of a bundled/secret key for Alchemy RPC endpointsmonero_c dependency updated to a newer commit, which may include upstream Monero fixes, but the specific changes are not shown in this diff
This commit removes a feature that automatically cranked screen brightness to maximum when showing a wallet's seed/keys as a QR code. In some cases the brightness stayed stuck at max after closing the QR screen, which could let someone nea…
Removal of forced-max-brightness wrapper around sensitive QR displayPotential shoulder-surf / camera-surveillance risk from bright screen showing seed/keysState-cleanup bug in brightness restoration on non-normal route returns
This commit is a routine product update for the Cake Wallet app. It swaps in new Robinhood-themed icons and card backgrounds, adjusts a color gradient, adds Robinhood to integration-test wallet lists, fixes a QR-code image reference to poi…
This commit adds support for a new blockchain, "Robinhood Chain" (chain ID 4663), to the Cake Wallet app. It is a large feature patch that wires the new chain into wallet creation, sending, receiving, exchange providers, transaction histor…
New EVM chain integration with custom transaction signing path (RobinhoodClient forces gasPrice instead of EIP-1559)New third-party RPC endpoints added to default node list (PublicNode, NOWNodes, Robinhood, Alchemy)New API secret (ALCHEMY_API_KEY) written into generated secrets file in CI workflows
This commit is an infrastructure change: Cake Wallet moved its automated build system from GitHub's standard runners to a third-party hosted service ('puzl-ubuntu-latest') and split the build into many smaller parallel jobs. It also adds a…
Third-party CI runner label `puzl-ubuntu-latest` replaces GitHub-managed `ubuntu-24.04`Committed RSA private key and self-signed certificate (`scripts/android/dev-test-key.pem`, `scripts/android/dev-test-key.crt`) used only for debug/CI keystoresCI jobs now log in to GHCR using `secrets.GITHUB_TOKEN` and run Docker with broad socket permissions (`sudo chmod 666 /var/run/docker.sock`)
This commit prepares Cake Wallet to remove support for Zano and Decred wallets. It adds a new database table to store encrypted seed phrases for wallets that are being deprecated, shows warning popups to users so they back up their seeds, …
New database table stores seed/passphrase for deprecated walletsUI added to warn users to back up seeds before wallet type removalWallet type removal prevents future creation of Zano/Decred wallets
This commit changes how Cake Wallet verifies whether stored Bitcoin and Bitcoin Cash addresses belong to the 'hidden' (change) side of a wallet. Previously, the app re-checked every address on every wallet open, which could flip address la…
Address label (hidden/visible) correctness affects which addresses users believe are receive vs change addressesRepeated re-derivation on every startup removed, reducing side-channel/performance exposureLogic change prevents arbitrary flipping of `isHidden` for addresses that do not match either derivation path
This commit fixes a bug where a Bitcoin wallet's displayed balance could become stale or be overwritten with an outdated value. The changes make balance updates copy the new value instead of sharing a reference, recalculate balances per ac…
Balance display correctness bug fixedReference sharing replaced with explicit copy to avoid stale shared-mutable stateNetwork disconnect guard added before persisting fetched balance
This is a large feature commit that adds multi-account support for Bitcoin wallets in Cake Wallet, along with a 'quick sync' optimization. It changes how addresses, transactions, balances, and unspent coins are tracked per account. The cha…
Multi-account key derivation path now uses accountIndex from address record rather than parsing derivation path, reducing risk of deriving wrong account keysUTXO selection and transaction building restricted to current account's unspent coins (unspentCoinsForCurrentAccount)Address generation throws UnsupportedAddressTypeForAccountException for unsupported account/type combinations, preventing accidental key derivation for invalid paths
This commit changes the wallet's rescan screen so that, for Monero and Zcash wallets, the starting block height is automatically filled in with the wallet's saved restore/birth height. This is a convenience feature that helps users avoid t…
UI convenience change, no cryptographic or network code modifiedNo input validation changes; prefill only occurs when field is empty and height > 0Reduces likelihood of user error (e.g., rescanning from genesis or an incorrect height)
This commit fixes flaky integration tests in the project's automated CI pipeline and makes a small UI cleanup change in the app's authentication screen. It does not appear to fix a security vulnerability. The auth-page change replaces a di…
No security-relevant signals in commit title or messageNo CVE, advisory, or security disclosure references presentAuth page change is defensive UI hardening, not an access-control or cryptographic fix
This commit fixes how the app dismisses on-screen notification banners (called 'flushbars') during login. Previously, the code tried to dismiss a banner even when it wasn't currently shown, which could cause the app to crash or behave oddl…
UI state handling bug fixPotential null/invalid route dereference mitigatedNo explicit security claim in commit message or diff
This commit updates Cake Wallet's built-in lists of cryptocurrency network servers. It replaces some single Tor/onion server addresses with new load-balanced Tor frontends, adds missing Tor server options for Bitcoin and Litecoin, and make…
Adds Tor/onion routing for Bitcoin fee estimatesReplaces single Tor nodes with load-balanced onionbalance frontendsMarks Cake Wallet Tor nodes as official in default node lists
This commit fixes a user-interface bug when receiving Bitcoin over the Lightning Network in Cake Wallet. Previously, the app showed the invoice amount in whole Bitcoin (BTC) instead of satoshis (sats), because an internal currency code was…
No memory-safety, cryptographic, or authorization changes observedNo input validation, parsing, or serialization changes observedNo network, wallet-seed, or key-handling changes observed
This commit re-applies a change that makes wallet file encryption consistent across all platforms. It replaces an older, weaker encryption method (Salsa20) with a stronger one (XChaCha20) and adds automatic migration of old wallet files. T…
Replaces Salsa20 with XChaCha20 for wallet file encryptionAdds transparent migration path from legacy Salsa20 filesPins cake_backup dependency to a specific git commit instead of floating branch
This is a large commit that adds and reorganizes automated integration tests for the Cake Wallet app. Most of the changes are test code, CI workflow files, and small app-side widget key additions so tests can find on-screen elements. There…
Large test-only refactor with no obvious malicious codeProduction-side changes are additive widget keys and one Solana decimals fixCI now posts Slack reports and supports manual funds-spending tests with a default-off SPEND flag
This commit adds a safety check in Cake Wallet's Monero wallet code. When a user tries to send Monero, the app now checks how many separate transactions would be created. If it is not exactly one transaction, the app stops and warns the us…
Defensive guard added against multi-transaction payment splitsUser-facing error thrown instead of silent multi-tx executionPreviously commented-out status check not restored
This commit adds a new cryptocurrency price-charts feature to the Cake Wallet app. It introduces screens, data models, a price API client, local database tables to cache prices, and related UI assets. There is no direct evidence in the com…
New network client sends fiatApiKey header to prices.cakewallet.comNew SQLite tables store price data and favorite assets; migration version bumped from 12 to 13currencyFromApiString throws UnimplementedError for evm and sol token types, which could cause runtime crashes if those asset types are selected
This is a large cleanup commit that removes the old user interface code from the Cake Wallet app and switches the app to use only the new UI. It deletes many old screens, view models, fonts, and related dependency-injection registrations. …
Large-scale deletion of legacy UI code and unreachable routesRemoval of disabled/unused Yat emoji-id integration code (commented-out network calls and empty URL constants)Removal of old buy/sell webview pages that handled external payment flows
A single throw statement in the Decred wallet code was replaced with returning the string 'closed'. Previously, calling syncStatus() after the wallet was closed would crash with an error. Now it returns a status string instead. This is a m…
Removal of an exception path in wallet lifecycle state handlingChange from fail-closed (throw) to fail-open (return string) on closed walletNo input validation, bounds checking, or cryptographic changes present
Expand any commit for its author, full message, clarity score, changed files, triage signals, analysis, and source link.
AI review queuedfix padding on NewWalletTypePage (#3333)by malik1004x · dbbd06aa · Jun 13, 2026 · 1 fileMessage 53 · ThinInformational 15Details
Commit message · malik1004x
fix padding on NewWalletTypePage (#3333)
53/100 · ThinMessage clarity
✓ Descriptive subject✓ Names a concrete action or component✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Informational 15/100
This commit is a routine user-interface layout fix. It changes how the wallet-type list scrolls and adjusts padding on the 'New Wallet Type' screen so the page displays correctly. There is no security-relevant change.
Lower-priorityfix lnurl from scan button (#3332)by malik1004x · 3eaf0731 · Jun 13, 2026 · 2 filesMessage 53 · ThinTriage 0Details
Commit message · malik1004x
fix lnurl from scan button (#3332)
53/100 · ThinMessage clarity
✓ Descriptive subject✓ Names a concrete action or component✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
✓ Descriptive subject✓ Names a concrete action or component✓ Provides detailed explanatory context✓ Links an issue, advisory, or supporting reference
AI review queuedRemove path from error messageby Omar · ff2a9958 · Jun 11, 2026 · 1 fileMessage 45 · ThinLow 37Details
Commit message · Omar
Remove path from error message
45/100 · ThinMessage clarity
✓ Descriptive subject✓ Names a concrete action or component! No meaningful explanatory body
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Low 37/100
This commit removes file paths from error messages shown to users when Monero transactions fail. The change prevents error messages from leaking internal source-code locations (like which C++ file and line number caused the error), which could help attackers learn about the app's internal structure. It also applies the same cleanup to more transaction error paths than before.
Lower-priorityfeat: randomize icon based on branch (thx :konsti:) (#3328)by cyan · 32091d9d · Jun 11, 2026 · 3 filesMessage 70 · AdequateTriage 0Details
Commit message · cyan
feat: randomize icon based on branch (thx :konsti:) (#3328)
70/100 · AdequateMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Uses a recognizable type or scope✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
Lower-priorityfix: use buy-specific address for buy/sell flow and restrict lightning invoice generation to bitcoin walletsby Omar · dc1b369e · Jun 10, 2026 · 2 filesMessage 62 · AdequateTriage 0Details
Commit message · Omar
fix: use buy-specific address for buy/sell flow and restrict lightning invoice generation to bitcoin wallets
62/100 · AdequateMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Uses a recognizable type or scope! No meaningful explanatory body
Lower-priorityfix: propagate buy/sell crypto address to providers without needing to focus the field (#3324)by David Adegoke · 782253a6 · Jun 10, 2026 · 1 fileMessage 70 · AdequateTriage 0Details
Commit message · David Adegoke
fix: propagate buy/sell crypto address to providers without needing to focus the field (#3324)
70/100 · AdequateMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Uses a recognizable type or scope✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
AI review queuedfeat: Add token to recieve address QR and link to pay anything flow on Solana and Tron, also fix token not showing on evm wallets QRs when scanned from dashboard (#3320)by David Adegoke · 99f96b0a · Jun 10, 2026 · 5 filesMessage 70 · AdequateLow 27Details
Commit message · David Adegoke
feat: Add token to recieve address QR and link to pay anything flow on Solana and Tron, also fix token not showing on evm wallets QRs when scanned from dashboard (#3320)
70/100 · AdequateMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Uses a recognizable type or scope✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Low 27/100
This commit changes how Cake Wallet builds and reads QR-code payment links for Solana and Tron tokens, and fixes a bug where EVM token QR codes did not include the token identifier. It also refactors how the app looks up a token from its contract/mint address. The changes are feature additions and a bug fix; there is no direct evidence in the diff of a security vulnerability, but any change to payment URI parsing and token lookup can affect whether a user sends funds to the wrong token or wrong address.
Lower-priorityfix: nft popup error triggering multiple times on error or internet failure (#3321)by David Adegoke · 30314305 · Jun 10, 2026 · 1 fileMessage 70 · AdequateTriage 0Details
Commit message · David Adegoke
fix: nft popup error triggering multiple times on error or internet failure (#3321)
70/100 · AdequateMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Uses a recognizable type or scope✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
AI review queuedfix: remove _incoming and _outgoing tags from tx Ids, fixes blockchain links too. (#3323)by David Adegoke · 67b04331 · Jun 10, 2026 · 1 fileMessage 70 · AdequateInformational 19Details
Commit message · David Adegoke
fix: remove _incoming and _outgoing tags from tx Ids, fixes blockchain links too. (#3323)
70/100 · AdequateMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Uses a recognizable type or scope✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Informational 19/100
This commit fixes a display bug in Cake Wallet's Solana transaction history. Previously, the app added '_incoming' or '_outgoing' tags to the end of real Solana transaction IDs. This caused blockchain explorer links and copied transaction IDs to be invalid because those extra tags are not part of the real transaction hash. The fix strips those tags before showing or sharing the transaction ID. There is no direct evidence this was a security vulnerability, but it could confuse users or make it harder to verify payments on a blockchain explorer.
Lower-priorityfix: linux CI, strip inner wrapper dir from monero_c RC2 bundle (#3325)by David Adegoke · 9ba53878 · Jun 10, 2026 · 1 fileMessage 70 · AdequateTriage 0Details
Commit message · David Adegoke
fix: linux CI, strip inner wrapper dir from monero_c RC2 bundle (#3325)
70/100 · AdequateMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Uses a recognizable type or scope✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
Why it was queued
documentation-only discount
Lower-priorityUpdate single coin route to use HardwareWalletViewModel (#3317)by redsh4de · 1f7b57ee · Jun 10, 2026 · 1 fileMessage 58 · ThinTriage 0Details
Commit message · redsh4de
Update single coin route to use HardwareWalletViewModel (#3317)
58/100 · ThinMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
AI review queued26-06-09_Update Translation_de_DEby bsn21m · 74039e44 · Jun 9, 2026 · 1 fileMessage 35 · OpaqueInformational 15Details
Commit message · bsn21m
26-06-09_Update Translation_de_DE
35/100 · OpaqueMessage clarity
✓ Descriptive subject! No meaningful explanatory body
Why it was queued
second-pass: opaque commit message
AI analysis · Informational 15/100
This commit only adds German translations for new user-interface labels in the Cake Wallet app. There are no code changes, no security fixes, and no behavior changes. It is a routine localization update.
AI review queuedtentative fix for evm wallet creation issue after backup restore (#3316)by David Adegoke · f462f0a2 · Jun 8, 2026 · 2 filesMessage 58 · ThinInformational 23Details
Commit message · David Adegoke
tentative fix for evm wallet creation issue after backup restore (#3316)
58/100 · ThinMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Informational 23/100
This commit is a bug-fix patch for Cake Wallet that addresses a problem where creating or restoring EVM (Ethereum-compatible) wallets would hang or fail after a backup restore. The changes add timeouts to WalletConnect initialization calls and move the WalletConnect setup off the main path so that if it fails, it does not block the wallet from being created or opened. There is no direct evidence in the commit of a security vulnerability being exploited; it appears to be a reliability fix that may reduce the risk of denial-of-service style hangs.
fix: uri.parse throwing on invalid node address (#3314)
70/100 · AdequateMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Uses a recognizable type or scope✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
Lower-prioritymake positioned direct child of stack in scan (#3313)by malik1004x · c7275cb6 · Jun 8, 2026 · 1 fileMessage 58 · ThinTriage 0Details
Commit message · malik1004x
make positioned direct child of stack in scan (#3313)
58/100 · ThinMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
This prevents `0100000000000000000000000000000000000000000000000000000000000000` from showing up and throwing during tx creation Also bump the monero_c to fix ubuntu26.04 build issue on arm64
88/100 · StrongMessage clarity
✓ Descriptive subject✓ Names a concrete action or component✓ Uses a recognizable type or scope✓ Provides detailed explanatory context✓ Links an issue, advisory, or supporting reference
Why it was queued
privacy or spend-authorization protocolsigning or wallet path
AI analysis · Low 41/100
This commit changes a Monero wallet so it always refreshes its list of spendable coins before creating a transaction, instead of skipping the refresh when the list looked non-empty. The developer says this fixes a bug where a placeholder key image (a long string of zeros) would appear and cause transaction creation to fail. The commit also updates a dependency version for an unrelated build fix.
AI review queuedRelease fixes (#3301)by David Adegoke · 7c321faf · Jun 6, 2026 · 5 filesMessage 59 · ThinInformational 15Details
Commit message · David Adegoke
Release fixes (#3301)
* fix: Solana GMT token showing the wrong decimal place
* add badge icon to swap confirm sheet, also address book chain icons display correctly
* missing mask icon for mweb
59/100 · ThinMessage clarity
✓ Subject identifies a change✓ Provides detailed explanatory context✓ Links an issue, advisory, or supporting reference
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Informational 15/100
This commit is a routine UI polish update for an upcoming release. It adds small badge icons next to token logos in swap confirmation screens, fixes a missing icon for MWEB (Litecoin's privacy feature), corrects the decimal display for one Solana token, and swaps a plain image widget for a reusable token-image widget in a wallet selector. There is no change to security-sensitive code such as cryptography, key handling, transaction signing, network calls, or permissions.
✓ Descriptive subject✓ Names a concrete action or component✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
AI review queuedremove old ln hack in scan parsing logicby Omar · 1264fdba · Jun 5, 2026 · 1 fileMessage 25 · OpaqueInformational 17Details
Commit message · Omar
remove old ln hack in scan parsing logic
25/100 · OpaqueMessage clarity
✓ Descriptive subject✓ Names a concrete action or component! No meaningful explanatory body! Contains work-in-progress language
Why it was queued
second-pass: opaque commit message
AI analysis · Informational 17/100
This commit removes some old, disabled code paths for handling Lightning Network and OpenCryptoPay QR code scans. The removed logic is commented out with 'false &&' guards, so it was already inactive. The practical effect is that scanning certain QR codes will now fall through to the remaining handler (WalletConnect 'wc:' scheme) instead of being processed by the old Lightning-specific logic. There is no clear security fix here; it appears to be cleanup of dead code.
✓ Descriptive subject✓ Names a concrete action or component✓ Provides an explanatory body✓ Links an issue, advisory, or supporting reference
Why it was queued
signing or wallet pathsecond-pass: unusually broad changesecond-pass: security-sensitive path
AI analysis · Informational 15/100
This commit is a routine version-bump release candidate for Cake Wallet v6.2.0. It updates translated changelog text, bumps version and build numbers for Android/iOS/macOS, refreshes iOS CocoaPods plugin checksums and identifiers, changes one Bitcoin example address used in a NEAR exchange provider, and updates a page title string. There is no security-relevant code change visible in the diff.
Lower-priorityfix: Solana GMT token showing the wrong decimal place (#3300)by David Adegoke · 3bf2b180 · Jun 5, 2026 · 1 fileMessage 70 · AdequateTriage 0Details
Commit message · David Adegoke
fix: Solana GMT token showing the wrong decimal place (#3300)
70/100 · AdequateMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Uses a recognizable type or scope✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body