Every captured commit receives deterministic security triage and a separate communication-quality score. Security candidates and broader second-pass signals receive full-patch Ollama analysis.
Message quality measures whether a commit identifies its scope, purpose, rationale, testing, and supporting references. It does not change the security-severity score.
This commit is a routine product update for the Cake Wallet app. It swaps in new Robinhood-themed icons and card backgrounds, adjusts a color gradient, adds Robinhood to integration-test wallet lists, fixes a QR-code image reference to poi…
This commit adds support for a new blockchain, "Robinhood Chain" (chain ID 4663), to the Cake Wallet app. It is a large feature patch that wires the new chain into wallet creation, sending, receiving, exchange providers, transaction histor…
New EVM chain integration with custom transaction signing path (RobinhoodClient forces gasPrice instead of EIP-1559)New third-party RPC endpoints added to default node list (PublicNode, NOWNodes, Robinhood, Alchemy)New API secret (ALCHEMY_API_KEY) written into generated secrets file in CI workflows
This commit is an infrastructure change: Cake Wallet moved its automated build system from GitHub's standard runners to a third-party hosted service ('puzl-ubuntu-latest') and split the build into many smaller parallel jobs. It also adds a…
Third-party CI runner label `puzl-ubuntu-latest` replaces GitHub-managed `ubuntu-24.04`Committed RSA private key and self-signed certificate (`scripts/android/dev-test-key.pem`, `scripts/android/dev-test-key.crt`) used only for debug/CI keystoresCI jobs now log in to GHCR using `secrets.GITHUB_TOKEN` and run Docker with broad socket permissions (`sudo chmod 666 /var/run/docker.sock`)
This commit prepares Cake Wallet to remove support for Zano and Decred wallets. It adds a new database table to store encrypted seed phrases for wallets that are being deprecated, shows warning popups to users so they back up their seeds, …
New database table stores seed/passphrase for deprecated walletsUI added to warn users to back up seeds before wallet type removalWallet type removal prevents future creation of Zano/Decred wallets
This commit changes how Cake Wallet verifies whether stored Bitcoin and Bitcoin Cash addresses belong to the 'hidden' (change) side of a wallet. Previously, the app re-checked every address on every wallet open, which could flip address la…
Address label (hidden/visible) correctness affects which addresses users believe are receive vs change addressesRepeated re-derivation on every startup removed, reducing side-channel/performance exposureLogic change prevents arbitrary flipping of `isHidden` for addresses that do not match either derivation path
This commit fixes a bug where a Bitcoin wallet's displayed balance could become stale or be overwritten with an outdated value. The changes make balance updates copy the new value instead of sharing a reference, recalculate balances per ac…
Balance display correctness bug fixedReference sharing replaced with explicit copy to avoid stale shared-mutable stateNetwork disconnect guard added before persisting fetched balance
This is a large feature commit that adds multi-account support for Bitcoin wallets in Cake Wallet, along with a 'quick sync' optimization. It changes how addresses, transactions, balances, and unspent coins are tracked per account. The cha…
Multi-account key derivation path now uses accountIndex from address record rather than parsing derivation path, reducing risk of deriving wrong account keysUTXO selection and transaction building restricted to current account's unspent coins (unspentCoinsForCurrentAccount)Address generation throws UnsupportedAddressTypeForAccountException for unsupported account/type combinations, preventing accidental key derivation for invalid paths
This commit changes the wallet's rescan screen so that, for Monero and Zcash wallets, the starting block height is automatically filled in with the wallet's saved restore/birth height. This is a convenience feature that helps users avoid t…
UI convenience change, no cryptographic or network code modifiedNo input validation changes; prefill only occurs when field is empty and height > 0Reduces likelihood of user error (e.g., rescanning from genesis or an incorrect height)
This commit fixes flaky integration tests in the project's automated CI pipeline and makes a small UI cleanup change in the app's authentication screen. It does not appear to fix a security vulnerability. The auth-page change replaces a di…
No security-relevant signals in commit title or messageNo CVE, advisory, or security disclosure references presentAuth page change is defensive UI hardening, not an access-control or cryptographic fix
This commit fixes how the app dismisses on-screen notification banners (called 'flushbars') during login. Previously, the code tried to dismiss a banner even when it wasn't currently shown, which could cause the app to crash or behave oddl…
UI state handling bug fixPotential null/invalid route dereference mitigatedNo explicit security claim in commit message or diff
This commit updates Cake Wallet's built-in lists of cryptocurrency network servers. It replaces some single Tor/onion server addresses with new load-balanced Tor frontends, adds missing Tor server options for Bitcoin and Litecoin, and make…
Adds Tor/onion routing for Bitcoin fee estimatesReplaces single Tor nodes with load-balanced onionbalance frontendsMarks Cake Wallet Tor nodes as official in default node lists
This commit fixes a user-interface bug when receiving Bitcoin over the Lightning Network in Cake Wallet. Previously, the app showed the invoice amount in whole Bitcoin (BTC) instead of satoshis (sats), because an internal currency code was…
No memory-safety, cryptographic, or authorization changes observedNo input validation, parsing, or serialization changes observedNo network, wallet-seed, or key-handling changes observed
This commit re-applies a change that makes wallet file encryption consistent across all platforms. It replaces an older, weaker encryption method (Salsa20) with a stronger one (XChaCha20) and adds automatic migration of old wallet files. T…
Replaces Salsa20 with XChaCha20 for wallet file encryptionAdds transparent migration path from legacy Salsa20 filesPins cake_backup dependency to a specific git commit instead of floating branch
This is a large commit that adds and reorganizes automated integration tests for the Cake Wallet app. Most of the changes are test code, CI workflow files, and small app-side widget key additions so tests can find on-screen elements. There…
Large test-only refactor with no obvious malicious codeProduction-side changes are additive widget keys and one Solana decimals fixCI now posts Slack reports and supports manual funds-spending tests with a default-off SPEND flag
This commit adds a safety check in Cake Wallet's Monero wallet code. When a user tries to send Monero, the app now checks how many separate transactions would be created. If it is not exactly one transaction, the app stops and warns the us…
Defensive guard added against multi-transaction payment splitsUser-facing error thrown instead of silent multi-tx executionPreviously commented-out status check not restored
This commit adds a new cryptocurrency price-charts feature to the Cake Wallet app. It introduces screens, data models, a price API client, local database tables to cache prices, and related UI assets. There is no direct evidence in the com…
New network client sends fiatApiKey header to prices.cakewallet.comNew SQLite tables store price data and favorite assets; migration version bumped from 12 to 13currencyFromApiString throws UnimplementedError for evm and sol token types, which could cause runtime crashes if those asset types are selected
This is a large cleanup commit that removes the old user interface code from the Cake Wallet app and switches the app to use only the new UI. It deletes many old screens, view models, fonts, and related dependency-injection registrations. …
Large-scale deletion of legacy UI code and unreachable routesRemoval of disabled/unused Yat emoji-id integration code (commented-out network calls and empty URL constants)Removal of old buy/sell webview pages that handled external payment flows
A single throw statement in the Decred wallet code was replaced with returning the string 'closed'. Previously, calling syncStatus() after the wallet was closed would crash with an error. Now it returns a status string instead. This is a m…
Removal of an exception path in wallet lifecycle state handlingChange from fail-closed (throw) to fail-open (return string) on closed walletNo input validation, bounds checking, or cryptographic changes present
This commit is a routine code cleanup in a single Flutter UI file. It replaces verbose 'return { ... }' function bodies with arrow syntax, adds 'const' keywords where Flutter can optimize widget rebuilds, and tweaks one loading-state updat…
This is a routine release-candidate commit for Cake Wallet version 6.4.5. Most of the changes are version bumps, translated changelogs, and a new user-facing string about Trezor locktime. The actual code changes are small bug fixes and usa…
Mutex release moved into finally block, reducing risk of deadlock on exception pathsMonero coin-control concurrency fix and improved coin metadata matching for hardware walletsTrezor session management changes to prevent cross-wallet session misuse
This commit removes the CI/CD workflow path that handled Android build tests for pull requests coming from external forks. It only deletes a GitHub Actions job and does not change any application code, cryptography, wallet logic, or user-facing behavior. There is no direct security vulnerability in the diff itself.
AI review queueddebugging workflowby OmarHatem · 045bc0aa · Dec 11, 2025 · 1 fileMessage 18 · OpaqueInformational 15Details
Commit message · OmarHatem
debugging workflow
18/100 · OpaqueMessage clarity
✓ Subject identifies a change! Too few words to establish purpose! No meaningful explanatory body
This commit only edits a GitHub Actions workflow file used for testing pull requests. It renames comments, reformats YAML syntax, and changes the runner label from 'ubuntu-latest' to a custom label '[Linux, amd64, forlinux]'. There is no change to application code, wallet logic, cryptography, or user data handling.
AI review queueddebugging workflowby OmarHatem · 85e746b6 · Dec 11, 2025 · 1 fileMessage 18 · OpaqueInformational 15Details
Commit message · OmarHatem
debugging workflow
18/100 · OpaqueMessage clarity
✓ Subject identifies a change! Too few words to establish purpose! No meaningful explanatory body
This commit removes a single comment line in a GitHub Actions workflow file used to test Android builds for pull requests. It makes no functional change to the build process, app code, or security controls.
AI review queueddebugging workflowby OmarHatem · dc4a3eef · Dec 11, 2025 · 1 fileMessage 18 · OpaqueLow 39Details
Commit message · OmarHatem
debugging workflow
18/100 · OpaqueMessage clarity
✓ Subject identifies a change! Too few words to establish purpose! No meaningful explanatory body
This commit changes a GitHub Actions workflow file. It adds triggers for pull requests and pull_request_target events, switches the runner label, and adds spacing. The pull_request_target trigger is notable because it can run workflows in the context of the base repository when a pull request comes from a fork, which can be risky if secrets or write permissions are exposed to untrusted code. However, this commit also adds a guard limiting that trigger to fork PRs and routes it through an 'external_contributors' environment, which suggests an attempt to isolate untrusted builds. There is no direct evidence in the diff of a vulnerability being introduced or fixed.
AI review queueddebugging workflowby OmarHatem · 7abd82c1 · Dec 11, 2025 · 1 fileMessage 18 · OpaqueInformational 15Details
Commit message · OmarHatem
debugging workflow
18/100 · OpaqueMessage clarity
✓ Subject identifies a change! Too few words to establish purpose! No meaningful explanatory body
This commit only moves a 'use bash shell' setting from the top of a GitHub Actions workflow file into a specific job block. It does not change any app code, secrets, permissions, or security behavior. There is no security relevance visible in the diff.
AI review queueddebugging workflowby OmarHatem · 96490b0a · Dec 11, 2025 · 1 fileMessage 18 · OpaqueInformational 15Details
Commit message · OmarHatem
debugging workflow
18/100 · OpaqueMessage clarity
✓ Subject identifies a change! Too few words to establish purpose! No meaningful explanatory body
This commit changes a GitHub Actions workflow so it runs on every code push instead of only on pull requests. There is no direct security vulnerability in the change itself. It is a CI/CD configuration tweak, likely for debugging build issues.
AI review queueddebugging workflowby OmarHatem · 7dc665a6 · Dec 11, 2025 · 1 fileMessage 18 · OpaqueInformational 15Details
Commit message · OmarHatem
debugging workflow
18/100 · OpaqueMessage clarity
✓ Subject identifies a change! Too few words to establish purpose! No meaningful explanatory body
This commit is a routine GitHub Actions workflow tweak. It simplifies when the Android test build runs (only on pull_request events) and changes the runner label to a custom label. There is no user-facing app change, no wallet code change, and no security-relevant behavior visible in the diff.
AI review queueddebugging workflowby OmarHatem · 6eefbbee · Dec 11, 2025 · 1 fileMessage 18 · OpaqueInformational 21Details
Commit message · OmarHatem
debugging workflow
18/100 · OpaqueMessage clarity
✓ Subject identifies a change! Too few words to establish purpose! No meaningful explanatory body
This commit adds a temporary debugging step to an Android build workflow. It prints out details about the GitHub environment and pull request, such as repository name, fork status, and commit ID. This is a diagnostic change and does not appear to introduce a security vulnerability on its own, though it does expose some repository metadata in build logs.
AI review queuedtestby OmarHatem · 56748ebe · Dec 11, 2025 · 1 fileMessage 0 · OpaqueInformational 12Details
Commit message · OmarHatem
test
0/100 · OpaqueMessage clarity
✓ Mentions testing or verification! Generic or placeholder subject! Too few words to establish purpose! No meaningful explanatory body
This commit is a test change to a GitHub Actions workflow file. It tweaks how pull requests from internal branches versus external forks are detected and triggered, but it does not introduce any obvious security vulnerability. The change appears to be routine CI/CD maintenance with no clear malicious or risky intent.
AI review queuedtestby OmarHatem · 85042886 · Dec 11, 2025 · 1 fileMessage 0 · OpaqueInformational 15Details
Commit message · OmarHatem
test
0/100 · OpaqueMessage clarity
✓ Mentions testing or verification! Generic or placeholder subject! Too few words to establish purpose! No meaningful explanatory body
This commit only reformats the YAML syntax that controls when an Android build test runs in GitHub. It changes one line into three lines with the exact same meaning: the workflow still triggers on both 'pull_request' and 'pull_request_target' events. There is no functional or security change.
AI review queuedtestby OmarHatem · 0731d2de · Dec 11, 2025 · 1 fileMessage 0 · OpaqueInformational 15Details
Commit message · OmarHatem
test
0/100 · OpaqueMessage clarity
✓ Mentions testing or verification! Generic or placeholder subject! Too few words to establish purpose! No meaningful explanatory body
This commit only adds a default shell setting ('bash') to a GitHub Actions workflow file used for building Android apps on pull requests. It does not change application code, handle secrets, alter permissions, or modify how user data is processed. There is no apparent security relevance.
AI review queuedtestby OmarHatem · 94bd3cae · Dec 11, 2025 · 1 fileMessage 0 · OpaqueInformational 15Details
Commit message · OmarHatem
test
0/100 · OpaqueMessage clarity
✓ Mentions testing or verification! Generic or placeholder subject! Too few words to establish purpose! No meaningful explanatory body
This commit only changes a GitHub Actions workflow file. It simplifies how the workflow is triggered, switching from explicit event types to a shorthand syntax. There is no change to application code, no fix for a security flaw, and no indication of malicious intent in the diff itself.
AI review queuedUpdate CIby OmarHatem · 009b3a1f · Dec 10, 2025 · 1 fileMessage 0 · OpaqueModerate 53Details
Commit message · OmarHatem
Update CI
0/100 · OpaqueMessage clarity
! Very short subject! Too few words to establish purpose! No meaningful explanatory body
This commit changes the Android CI workflow so that pull requests from outside contributors run using 'pull_request_target' and a dedicated 'external_contributors' environment. That combination is a well-known GitHub Actions anti-pattern: it can let a malicious pull request steal repository secrets or modify the repository, because the workflow runs in the context of the base repository with access to its secrets, while still processing code from the pull request. The change itself is small, but the security risk is real if the workflow later checks out or runs untrusted PR code.
✓ Descriptive subject✓ Names a concrete action or component✓ Provides an explanatory body✓ Links an issue, advisory, or supporting reference
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Informational 18/100
This is a small user-interface fix for the desktop version of Cake Wallet. After switching wallets, the dropdown list of wallets is now refreshed so the displayed name stays correct. There is no indication this change addresses a security problem.
AI review queuedv5.6.2by OmarHatem · 42fcc946 · Dec 10, 2025 · 7 filesMessage 0 · OpaqueLow 26Details
Commit message · OmarHatem
v5.6.2
0/100 · OpaqueMessage clarity
! Very short subject! No meaningful explanatory body
Why it was queued
signing or wallet pathsecond-pass: opaque commit messagesecond-pass: security-sensitive path
AI analysis · Low 26/100
This is a routine version bump from 5.6.1 to 5.6.2 for the Cake Wallet/Monero.com apps. The release notes say it fixes QR scanning and includes UI enhancements and bug fixes. The code changes include a safer way to handle socket write errors, showing the 'scan secret' field only for Litecoin wallet restores, and a small Flutter widget-state fix. There is no clear security vulnerability being patched in the diff itself, and no external security advisory or researcher credit is provided.
AI review queuedNew design for wallet connection guide (#2706)by malik1004x · 3bdfb5bc · Dec 8, 2025 · 7 filesMessage 68 · AdequateInformational 15Details
Commit message · malik1004x
New design for wallet connection guide (#2706)
* new design for wallet connection guide
* fix: cleanup
68/100 · AdequateMessage clarity
✓ Descriptive subject✓ Names a concrete action or component✓ Provides an explanatory body✓ Links an issue, advisory, or supporting reference
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Informational 15/100
This commit is a purely cosmetic redesign of the on-screen guide that explains how to connect a hardware wallet. It swaps text step labels for new SVG icons and updates the layout, colors, and scroll behavior of the help sheet. There is no security-relevant change.
AI review queuedrefactor: remove double `_nextIndex` increment in `wallet_hardware_restore_view_model` (#2703)by Konstantin Ullrich · f0d42914 · Dec 4, 2025 · 1 fileMessage 70 · AdequateInformational 15Details
Commit message · Konstantin Ullrich
refactor: remove double `_nextIndex` increment in `wallet_hardware_restore_view_model` (#2703)
70/100 · AdequateMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Uses a recognizable type or scope✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Informational 15/100
This commit removes an extra counter advance in the hardware-wallet account discovery screen. Previously, after loading a batch of accounts from a hardware wallet, the app advanced its internal index twice, which could cause some accounts to be skipped when the user scrolled to load more. The fix makes account listing more complete and predictable, but it is a UI/logic bug rather than a direct security vulnerability.
AI review queuedpatch version 5.6.1by OmarHatem · d788a844 · Dec 4, 2025 · 6 filesMessage 38 · OpaqueLow 36Details
Commit message · OmarHatem
patch version 5.6.1
38/100 · OpaqueMessage clarity
✓ Subject identifies a change✓ Names a concrete action or component! No meaningful explanatory body
Why it was queued
second-pass: opaque commit message
AI analysis · Low 36/100
This is a routine version bump to 5.6.1. The only functional change is that one third-party exchange integration, SwapsXyzExchangeProvider, has been commented out and is no longer offered to users. The rest of the patch only updates version and build numbers across Android, iOS, Linux, macOS, and Windows. There is no explicit security explanation in the commit, but removing an exchange provider could be a response to a trust, reliability, or security concern.
AI review queuedCW-994 mweb enhancements (#2204)by Matthew Fosse · 20022c03 · Dec 2, 2025 · 4 filesMessage 76 · AdequateLow 32Details
✓ Descriptive subject✓ Names a concrete action or component✓ Provides detailed explanatory context✓ Links an issue, advisory, or supporting reference
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Low 32/100
This update improves how Cake Wallet handles Litecoin's optional privacy feature (MWEB). It fixes a bug where the wallet might accidentally try to spend MWEB coins even when MWEB was turned off, which could cause failed or confusing transactions. It also makes the wallet more precise about detecting MWEB addresses and adds a link to a MWEB block explorer in transaction details. There is no clear evidence this is a security emergency, but it does fix a functional bug that could affect user funds or transaction reliability.
AI review queuedminor fixes [skip ci]by OmarHatem · ae81b11f · Nov 28, 2025 · 7 filesMessage 28 · OpaqueInformational 15Details
Commit message · OmarHatem
minor fixes [skip ci]
28/100 · OpaqueMessage clarity
✓ Subject identifies a change! No meaningful explanatory body
Why it was queued
parser or protocol pathsecond-pass: opaque commit messagesecond-pass: security-sensitive path
AI analysis · Informational 15/100
This commit contains only cosmetic and build-version housekeeping changes. It updates release notes wording, adjusts a button padding, updates an internal line-number reference in an exception ignore-list, and bumps build numbers across Android, iOS, Linux, and macOS. There is no visible security-relevant code change.
AI review queuedpass 0 as amount to prevent no element issues, it is not displayed anywhere anyway (#2684)by cyan · 194c2199 · Nov 26, 2025 · 2 filesMessage 70 · AdequateInformational 15Details
Commit message · cyan
pass 0 as amount to prevent no element issues, it is not displayed anywhere anyway (#2684)
70/100 · AdequateMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Explains rationale or failure mode✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Informational 15/100
This commit makes two small changes to the Litecoin wallet code. First, it replaces a calculation that added up all transaction output amounts with a fixed value of 0, because the amount field is not shown to users anyway and the old code could crash when a transaction had no outputs. Second, it removes a leftover debug print statement. There is no clear security vulnerability here; it appears to be a bug-fix and cleanup change.
✓ Descriptive subject✓ Names a concrete action or component! No meaningful explanatory body
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Informational 15/100
This commit simply changes the text of an error message shown when a user cancels QR code scanning. It does not alter security behavior, fix a vulnerability, or introduce any new risk.
AI review queuedv5.6.0 Early RC (#2647)by Omar Hatem · 7386e135 · Nov 25, 2025 · 8 filesMessage 69 · AdequateLow 27Details
Commit message · Omar Hatem
v5.6.0 Early RC (#2647)
* v5.6.0 Early RC - EVM enhancements and fee corrections - Auto node switching enhancements - Pay anything enhancements - Sync bar ETA enhancements - Solana fixes
* prevent multiple creation of wallets by spam tapping the button
* Last RC :3
Improve wallets performance Litecoin and MWEB support in Cupcake Ethereum and EVM chains enhancements Improved EVM fee estimation Improvements for AnyPay Better automatic node switching New navbar/tab navigation WalletConnect enhancements Add Dark and tintable app icons Bug fixes
* fix: properly prevent create function from being called multiple times at once (#2679)
---------
Co-authored-by: cyan <cyjan@mrcyjanek.net>
69/100 · AdequateMessage clarity
✓ Subject identifies a change✓ Names a concrete action or component✓ Provides detailed explanatory context✓ Links an issue, advisory, or supporting reference
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Low 27/100
This commit is a release-candidate version bump for Cake Wallet/Monero.com v5.6.0. The only functional code change is a guard added to the wallet-creation screen to stop the create button from being triggered multiple times if a user taps it rapidly. The rest of the diff updates release notes and build version numbers. The repeated-creation guard fixes a minor reliability/UX bug, but it is not a clear-cut security vulnerability on its own.
AI review queuedfix: ltc wallets not syncing (address generation issue) (#2676)by cyan · 98babacc · Nov 25, 2025 · 12 filesMessage 85 · StrongLow 32Details
Commit message · cyan
fix: ltc wallets not syncing (address generation issue) (#2676)
* fix: ltc freezing and address generation
* revert: go back to network (fixme), feeRatePerKb
85/100 · StrongMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Uses a recognizable type or scope✓ Provides an explanatory body✓ Links an issue, advisory, or supporting reference
Why it was queued
signing or wallet pathparser or protocol pathsecond-pass: security-sensitive path
AI analysis · Low 32/100
This commit fixes Litecoin wallet syncing and address-generation problems in Cake Wallet. It swaps the MWEB helper service from a Unix-domain socket to a TCP loopback socket, regenerates the matching protobuf bindings, and hardens Dart code so that missing or empty MWEB secrets no longer crash the app. It also filters out empty addresses when fetching balances and makes script-hash failures return an empty string instead of throwing. The changes are framed by the vendor as a bug fix, not a security fix.
AI review queuedrefactor: simplify hashed wallet identifier creation by optimizing seed and address handling logic (#2675)by Konstantin Ullrich · efc99c14 · Nov 24, 2025 · 1 fileMessage 70 · AdequateLow 38Details
Commit message · Konstantin Ullrich
refactor: simplify hashed wallet identifier creation by optimizing seed and address handling logic (#2675)
70/100 · AdequateMessage clarity
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Uses a recognizable type or scope✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
Why it was queued
signing or wallet pathsecond-pass: security-sensitive path
AI analysis · Low 38/100
This commit changes how Cake Wallet creates a unique, privacy-protecting identifier for a wallet. Previously, the identifier was based only on the wallet's secret seed phrase. Now, if no seed is available, it falls back to using the wallet's main public receiving address. The change is described as a simplification/refactor, but it alters the privacy assumptions of the identifier: a public address is less sensitive than a seed, but it is still wallet-specific information. There is no direct evidence this introduces a security vulnerability, but it changes what data feeds into the hash and could affect how wallets are grouped or recognized across backups/restores.