-
Notifications
You must be signed in to change notification settings - Fork 198
chore: update dev with staging 09/06/25 #1007
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
* update workflow to use workload identity federation * add token permissions * correct provider name * chore: incrementing android build version for version 2.6.4 [github action] --------- Co-authored-by: Self GitHub Actions <[email protected]>
* SDK Go version (#920) * feat: helper functions and constant for go-sdk * feat: formatRevealedDataPacked in go * chore: refactor * feat: define struct for selfBackendVerifier * feat: verify function for selfBackendVerifier * feat(wip): custom hasher * feat: SelfVerifierBacked in go * test(wip): scope and userContextHash is failing * test: zk proof verified * fix: MockConfigStore getactionId function * chore: refactor * chore: remove abi duplicate files * chore: move configStore to utils * chore: modified VcAndDiscloseProof struct * chore: more review changes * feat: impl DefaultConfig and InMemoryConfigStore * chore: refactor and export functions * fix: module import and README * chore: remove example folder * chore: remove pointers from VerificationConfig * chore: coderabbit review fixes * chore: more coderabbit review fix * chore: add license * fix: convert attestationIdd to int * chore: remove duplicate code --------- Co-authored-by: ayman <[email protected]> * Moving proving Utils to common (#935) * remove react dom * moves proving utils to the common * need to use rn components * fix imports * add proving-utils and dedeuplicate entry configs for esm and cjs. * must wrap in text component * fix metro bundling * fix mock import * fix builds and tests * please save me * solution? * fix test * Move proving inputs to the common package (#937) * create ofactTree type to share * move proving inputs from app to register inputs in common * missed reexport * ok * add some validations as suggested by our ai overlords * Fix mock passport flow (#942) * fix dev screens * add hint * rename * fix path * fix mobile-ci path * fix: extractMRZ (#938) * fix: extractMRZ * yarn nice && yarn types * fix test: remove unused * fix mobile ci * add script --------- Co-authored-by: Justin Hernandez <[email protected]> * Move Proving attest and cose (#950) * moved attest and cose utils to common with cursor converted tests in common to use vitest and converted coseVerify.test to vitest after moving from app to common what does cryptoLoader do? * moved away * get buff Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> --------- Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> * SELF-253 feat: add user email feedback (#889) * feat: add sentry feedback * add sentry feedback to web * feat: add custom feedback modal & fix freeze on IOS * yarn nice * update lock * feat: show feedback widget on NFC scan issues (#948) * feat: show feedback widget on NFC scan issues * fix ref * clean up * fix report issue screen * abstract send user feedback email logic * fixes * change text to Report Issue * sanitize email and track event messge * remove unnecessary sanitization * add sanitize error message tests * fix tests * save wip. almost done * fix screen test * fix screen test * remove non working test --------- Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> * chore: centralize license header checks (#952) * chore: centralize license header scripts * chore: run license header checks from root * add header to other files * add header to bundle * add migration script and update check license headers * convert license to mobile sdk * migrate license headers * remove headers from common; convert remaining * fix headers * add license header checks * update unsupported passport screen (#953) * update unsupported passport screen * yarn nice --------- Co-authored-by: Vishalkulkarni45 <[email protected]> Co-authored-by: ayman <[email protected]> Co-authored-by: Aaron DeRuvo <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Seshanth.S🐺 <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com>
* update lock files * bump and build android * update build artifacts * show generate mock document button * update lock * fix formatting and update failing e2e test * revert podfile * fixes
…ction] (#976) Co-authored-by: remicolin <[email protected]>
…ction] (#987) Co-authored-by: remicolin <[email protected]>
…n mobile deploy workflow" This reverts commit 60fc1f2.
* fix android french id card * fix common ci cache * feat: log apdu (#988) --------- Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Seshanth.S🐺 <[email protected]>
WalkthroughUpdates CI/workflow triggers to PR-only (adds Changes
Sequence Diagram(s)sequenceDiagram
autonumber
actor Dev as Developer
participant GH as GitHub Actions
participant ADC as ADC/WIF
participant Build as Builder
participant Fastlane as Fastlane
participant Py as upload_to_play_store.py
participant Play as Google Play API
Dev->>GH: Open PR (target: staging / dev / main)
GH->>ADC: Request id-token / ADC (id-token: write)
ADC-->>GH: Credentials
GH->>Build: Checkout `staging` (fetch-depth:0), run Build Dependencies
alt Android build_only
GH->>Fastlane: fastlane android build_only
Fastlane-->>GH: produce AAB
GH->>Py: upload_to_play_store.py --aab
Py->>ADC: obtain scoped credentials
Py->>Play: create edit, upload bundle, update track, commit
Play-->>Py: response (versionCode)
Py-->>GH: result
end
GH->>GH: Open PRs for build/version bumps (if needed)
sequenceDiagram
autonumber
participant App as App
participant DL as deeplinks.ts
participant Splash as SplashScreen
participant Nav as navigationRef
App->>DL: setupUniversalLinkListenerInNavigation()
DL->>DL: queuedInitialUrl = url (defer handling)
Splash->>DL: setDeeplinkParentScreen(parent)
Splash->>DL: getAndClearQueuedUrl()
alt queued URL exists
Splash->>DL: handleUrl(url)
DL->>Nav: reset({ index:1, routes: [{name: parent}, {name: target}] })
else
Splash->>Nav: navigate(parent)
end
sequenceDiagram
autonumber
participant RN as RNPassportReaderModule
participant Service as PassportService
participant Logger as APDULogger
participant Analytics as Analytics
RN->>Logger: setContext(session_id)
RN->>Service: addAPDUListener(Logger)
loop NFC flow
Service-->>Logger: exchangedAPDU(event)
Logger->>Analytics: log nfc_apdu_exchange
end
RN->>Logger: clearContext()
Estimated code review effort🎯 4 (Complex) | ⏱️ ~75 minutes Possibly related PRs
Suggested labels
Suggested reviewers
Poem
Warning Review ran into problems🔥 ProblemsGit: Failed to clone repository. Please run the 📜 Recent review detailsConfiguration used: Path: .coderabbit.yaml Review profile: CHILL Plan: Pro 📒 Files selected for processing (3)
🚧 Files skipped from review as they are similar to previous changes (3)
⏰ Context from checks skipped due to timeout of 300000ms. You can increase the timeout in your CodeRabbit configuration to a maximum of 15 minutes (900000ms). (4)
✨ Finishing Touches🧪 Generate unit tests
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
abe99cc to
3627364
Compare
| @@ -1,13 +1,9 @@ | |||
| name: Circuits Build | |||
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
@remicolin migrated your changes over
| @@ -0,0 +1,114 @@ | |||
| package io.tradle.nfc | |||
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
@seshanthS migrating this over to dev
|
|
||
| We are actively looking for contributors. Please check the [open issues](https://github.com/selfxyz/self/issues) if you don't know were to start! We offer bounties for significant contributions. | ||
|
|
||
| > **Important:** Please open your pull request from the `staging` branch. Pull requests from other branches will be automatically closed. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
opening from staging makes sense 👍
| // SPDX-License-Identifier: BUSL-1.1 | ||
| // NOTE: Converts to Apache-2.0 on 2029-06-11 per LICENSE. | ||
|
|
||
| import { useCallback, useEffect, useState } from 'react'; |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
accidentally removed this screen in this pr - https://github.com/selfxyz/self/pull/994/files#diff-c2729da81fe0f51e63433d07376e4db00e1643cfefc5c7605cc775c158bf6e99
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Actionable comments posted: 21
Caution
Some comments are outside the diff and can’t be posted inline due to platform limitations.
⚠️ Outside diff range comments (7)
packages/mobile-sdk-alpha/tests/processing/mrz.test.ts (1)
7-8: Use package import path in tests (per repo guidelines)Avoid relative src imports in package tests; import via the package to exercise the public API and prevent path coupling.
Proposed change (adjust if these are re-exported at the entrypoint):
-import { MrzParseError } from '../../src/errors'; -import { extractMRZInfo, formatDateToYYMMDD } from '../../src/processing/mrz'; +import { MrzParseError, extractMRZInfo, formatDateToYYMMDD } from '@selfxyz/mobile-sdk-alpha/processing/mrz';Verify exports with:
#!/bin/bash # Check source exports rg -nP "export\s+(?:type\s+)?\{?[^}]*\b(extractMRZInfo|formatDateToYYMMDD|MrzParseError)\b" packages/mobile-sdk-alpha/src -C2 # Check package entrypoint re-exports fd -a 'index.ts|main.ts|exports.ts' packages/mobile-sdk-alpha/src | xargs -I{} rg -n "export .*from .*mrz" {} -C2.github/workflows/qrcode-sdk-ci.yml (1)
51-63: Replace direct actions/cache with shared cache-yarn.Repo guideline: use composite caching actions; avoid actions/cache for dependency caches.
- - name: Cache Yarn dependencies - id: yarn-cache - uses: actions/cache@v4 - with: - path: | - .yarn/cache - node_modules - sdk/qrcode/node_modules - common/node_modules - key: ${{ runner.os }}-${{ env.GH_YARN_CACHE_VERSION }}-node-${{ env.NODE_VERSION_SANITIZED }}-yarn-${{ hashFiles('yarn.lock') }} - restore-keys: | - ${{ runner.os }}-${{ env.GH_YARN_CACHE_VERSION }}-node-${{ env.NODE_VERSION_SANITIZED }}-yarn- + - name: Cache Yarn dependencies + uses: ./.github/actions/cache-yarn + with: + path: | + .yarn/cache + node_modules + sdk/qrcode/node_modules + common/node_modules + cache-version: ${{ env.GH_YARN_CACHE_VERSION }}-node-${{ env.NODE_VERSION_SANITIZED }}Repeat the same replacement in quality-checks, build-verification, and integration-test jobs.
Note: Using actions/cache for build artifacts (dist) is acceptable until a shared composite exists.Also applies to: 109-121, 176-188, 236-248
.github/workflows/circuits-build.yml (1)
22-25: Stop calling actions/cache directly; use shared composites + versioned keys.Repo guideline: use composite caching actions and stable cache-version keys. Replace direct cache calls for Circom with a repo composite (e.g., cache-dir) and include GH_CACHE_VERSION.
permissions: contents: read env: + GH_CACHE_VERSION: v1 CIRCOM_VERSION: "2.1.9" CIRCOM_SHA256: "e5575829252d763b7818049df9de2ef9304df834697de77fa63ce7babc23c967" - - name: Restore Circom binary - id: circom-cache - uses: actions/cache/restore@v4 - with: - path: ~/.cache/circom - key: circom-v2.1.9 + - name: Restore Circom binary + id: circom-cache + uses: ./.github/actions/cache-dir + with: + path: ~/.cache/circom + key: ${{ env.GH_CACHE_VERSION }}-circom-v2.1.9 - - name: Save Circom cache - if: steps.circom-cache.outputs.cache-hit != 'true' - uses: actions/cache/save@v4 - with: - path: ~/.cache/circom - key: circom-v2.1.9 + - name: Save Circom cache + if: steps.circom-cache.outputs.cache-hit != 'true' + uses: ./.github/actions/cache-dir + with: + path: ~/.cache/circom + key: ${{ env.GH_CACHE_VERSION }}-circom-v2.1.9Also applies to: 44-50, 98-105
app/src/utils/deeplinks.ts (1)
102-114: Validate selfApp.sessionId before starting listener.selfApp JSON is parsed and sessionId is used without applying the same allowlist as query params. A crafted selfApp can bypass sessionId regex and trigger unintended behavior. Validate and route to QRCodeTrouble on failure.
if (selfAppStr) { try { const selfAppJson = JSON.parse(selfAppStr); - useSelfAppStore.getState().setSelfApp(selfAppJson); - useSelfAppStore.getState().startAppListener(selfAppJson.sessionId); + const sid = String(selfAppJson.sessionId ?? ''); + if (!VALIDATION_PATTERNS.sessionId.test(sid)) { + if (typeof __DEV__ !== 'undefined' && __DEV__) { + console.error('selfApp.sessionId failed validation:', sid); + } + navigationRef.reset( + createDeeplinkNavigationState('QRCodeTrouble', correctParentScreen), + ); + return; + } + useSelfAppStore.getState().setSelfApp(selfAppJson); + useSelfAppStore.getState().startAppListener(sid); // Reset navigation stack with correct parent -> ProveScreen navigationRef.reset( createDeeplinkNavigationState('ProveScreen', correctParentScreen), );app/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/RNPassportReaderModule.kt (3)
603-617: Fix crash: dg2File is used before initialization (DG2 read is commented out).DG2 reading is commented out earlier, but passive auth still computes dg2Hash from dg2File. This will throw UninitializedPropertyAccessException at runtime on first scan.
Apply one of the following minimal fixes.
Option A — re-enable DG2 read (recommended for full SOD verification):
@@ - // eventMessageEmitter("Reading DG2.....") - // val dg2In = service.getInputStream(PassportService.EF_DG2) - // dg2File = DG2File(dg2In) + eventMessageEmitter(Messages.READING_DG2) + val dg2In = service.getInputStream(PassportService.EF_DG2) + dg2File = DG2File(dg2In) + logAnalyticsEvent("nfc_reading_dg2_completed") + eventMessageEmitter(Messages.READING_DG2_SUCCEEDED)Option B — skip DG2 hashing when DG2 isn’t read (quickest unblock):
@@ - val dg2Hash = digest.digest(dg2File.encoded) + // DG2 not read in this flow; avoid touching uninitialized dg2File + // val dg2Hash = digest.digest(dg2File.encoded)
208-213: Avoid getBoolean() throwing on missing keys; don’t use Elvis on a non-nullable.ReadableMap.getBoolean throws if the key is absent/mistyped; the Elvis here won’t help. Compute flags with hasKey guards to avoid runtime exceptions and noisy error analytics.
- logAnalyticsEvent("nfc_scan_started", mapOf( - "use_can" to (opts.getBoolean(PARAM_USE_CAN) ?: false), - "has_document_number" to (!opts.getString(PARAM_DOC_NUM).isNullOrEmpty()), - "has_can_number" to (!opts.getString(PARAM_CAN).isNullOrEmpty()), - "platform" to "android" - )) + val useCan = opts.hasKey(PARAM_USE_CAN) && opts.getBoolean(PARAM_USE_CAN) + val hasDocNum = opts.hasKey(PARAM_DOC_NUM) && !opts.getString(PARAM_DOC_NUM).isNullOrEmpty() + val hasCan = opts.hasKey(PARAM_CAN) && !opts.getString(PARAM_CAN).isNullOrEmpty() + logAnalyticsEvent("nfc_scan_started", mapOf( + "use_can" to useCan, + "has_document_number" to hasDocNum, + "has_can_number" to hasCan, + "platform" to "android" + ))
771-779: Align Android payload with JS parser (documentSigningCertificate, eContent/signature base64).JS expects
documentSigningCertificateto be a JSON string with a PEM field, and also relies on base64 forms of eContent/signature. Current payload overwritesdocumentSigningCertificatetwice and may break parsers.Patch to keep backward compatibility and add the expected fields:
@@ - passport.putString("documentSigningCertificate", certificateBase64) + // Keep base64 under a distinct key + passport.putString("documentSigningCertificateBase64", certificateBase64) @@ - passport.putString("dataGroupHashes", gson.toJson(sodFile.dataGroupHashes)) - passport.putString("eContent", gson.toJson(sodFile.eContent)) - passport.putString("encryptedDigest", gson.toJson(sodFile.encryptedDigest)) + passport.putString("dataGroupHashes", gson.toJson(sodFile.dataGroupHashes)) + // Provide both JSON-array and base64 forms for cross‑platform parity + passport.putString("eContent", gson.toJson(sodFile.eContent)) + passport.putString("eContentBase64", Base64.encodeToString(sodFile.eContent, Base64.NO_WRAP)) + passport.putString("encryptedDigest", gson.toJson(sodFile.encryptedDigest)) + passport.putString("signatureBase64", Base64.encodeToString(sodFile.encryptedDigest, Base64.NO_WRAP)) @@ - val pemCert = "-----BEGIN CERTIFICATE-----\n" + Base64.encodeToString(docSigningCert.encoded, Base64.DEFAULT) + "-----END CERTIFICATE-----" - passport.putString("documentSigningCertificate", pemCert) + val pemCert = "-----BEGIN CERTIFICATE-----\n" + Base64.encodeToString(docSigningCert.encoded, Base64.DEFAULT) + "-----END CERTIFICATE-----" + passport.putString("documentSigningCertificate", JSONObject().put("PEM", pemCert).toString()) + + // Add alias matching existing TypeScript naming + passport.putString("encapsulatedContentDigestAlgorithm", sodFile.digestAlgorithm)Run this quick check to validate the current JS expectations before merging:
#!/bin/bash # Look for parsers expecting JSON{PEM} and specific field names rg -nC2 -g 'app/**' -S \ 'JSON\.parse\(\s*parsed\?\.\s*documentSigningCertificate' \ 'encapsulatedContentDigestAlgorithm' \ 'eContentBase64' \ 'signatureBase64'Also applies to: 803-812, 827-830
🧹 Nitpick comments (13)
packages/mobile-sdk-alpha/tests/processing/mrz.test.ts (1)
65-83: Deduplicate TD1 MRZ tests to reduce noise and runtimeThis block repeats the same three TD1 cases already covered earlier (Lines 45-63). Keep a single canonical set.
Apply this diff to remove the duplicate block:
- it('parses valid TD1 MRZ', () => { - const info = extractMRZInfo(sampleTD1); - expect(info.documentNumber).toBe('X4RTBPFW4'); - expect(info.issuingCountry).toBe('FRA'); - expect(info.dateOfBirth).toBe('900713'); - expect(info.dateOfExpiry).toBe('300211'); - expect(info.validation?.overall).toBe(true); - }); - - it('rejects invalid TD1 MRZ', () => { - const invalid = `FRAX4RTBPFW46`; - expect(() => extractMRZInfo(invalid)).toThrow(); - }); - - it('Fails overall validation for invalid TD1 MRZ', () => { - const invalid = `IDFRAX4RTBPFW46`; - const info = extractMRZInfo(invalid); - expect(info.validation?.overall).toBe(false); - });README.md (1)
89-90: Clarify source vs target branch policy.State explicitly that the PR’s source branch must be staging (targets may be dev/main). Prevent confusion with the updated CI triggers.
Apply:
- > **Important:** Please open your pull request from the `staging` branch. Pull requests from other branches will be automatically closed. + > **Important:** Open pull requests with `staging` as the source branch. PRs opened from any other source branch will be automatically closed. Target branches may be `dev` or `main` per CI policy..github/workflows/web.yml (1)
18-26: Add shared Yarn cache to speed builds (and follow repo policy).Use the composite cache-yarn action before install.
- uses: actions/checkout@v4 + - name: Cache Yarn + uses: ./.github/actions/cache-yarn + with: + path: | + .yarn/cache + node_modules + app/node_modules + cache-version: ${{ env.GH_CACHE_VERSION || 'v1' }} - name: Install Dependencies uses: ./.github/actions/yarn-install.github/workflows/mobile-ci.yml (1)
241-258: Avoid direct actions/cache; extract Xcode caches to a shared composite.Stay consistent with repo policy (use .github/actions composites). Suggest introducing cache-xcode and cache-xcode-index composites.
Example usage after adding composites:
- - name: Cache Xcode build - uses: actions/cache@v4 + - name: Cache Xcode build + uses: ./.github/actions/cache-xcode with: path: | app/ios/build ~/Library/Developer/Xcode/DerivedData ~/Library/Caches/com.apple.dt.Xcode - key: ${{ runner.os }}-xcode-${{ env.XCODE_VERSION }}-${{ hashFiles('app/ios/Podfile.lock', 'app/ios/OpenPassport.xcworkspace/contents.xcworkspacedata', 'app/ios/Self.xcworkspace/contents.xcworkspacedata') }} - restore-keys: | - ${{ runner.os }}-xcode-${{ env.XCODE_VERSION }}-${{ hashFiles('app/ios/Podfile.lock') }}- - ${{ runner.os }}-xcode-${{ env.XCODE_VERSION }}- + cache-version: ${{ env.GH_CACHE_VERSION }}-xcode-${{ env.XCODE_VERSION }}Do the same for “Cache Xcode Index.”
.github/workflows/circuits.yml (1)
1-10: Optional: add concurrency to cancel superseded runs.Matches other workflows; reduces queue waste on active PRs.
on: pull_request: branches: - dev - staging - main paths: - "circuits/**" +concurrency: + group: circuits-ci-${{ github.workflow }}-${{ github.ref }} + cancel-in-progress: true.github/workflows/mobile-e2e.yml (1)
66-71: Unify caching via composites for consistency and policy compliance.Per repo policy, avoid direct actions/cache. Consider adding a generic cache-dir composite and using it for Maestro and DerivedData to standardize TTL, restore-keys, and logging.
- - name: Cache Maestro - id: cache-maestro - uses: actions/cache@v4 + - name: Cache Maestro + id: cache-maestro + uses: ./.github/actions/cache-dir with: path: ~/.maestro key: ${{ runner.os }}-maestro-${{ env.MAESTRO_VERSION }} - - name: Cache DerivedData - uses: actions/cache@v4 + - name: Cache DerivedData + uses: ./.github/actions/cache-dir with: path: app/ios/build key: ${{ runner.os }}-derived-data-${{ env.XCODE_VERSION }}-${{ hashFiles('app/ios/Podfile.lock', 'app/ios/OpenPassport.xcworkspace/contents.xcworkspacedata', 'app/ios/Self.xcworkspacedata') }} restore-keys: | ${{ runner.os }}-derived-data-${{ env.XCODE_VERSION }}-${{ hashFiles('app/ios/Podfile.lock') }}- ${{ runner.os }}-derived-data-${{ env.XCODE_VERSION }}-Also applies to: 212-219
app/fastlane/Fastfile (1)
404-413: Prefer explicit tasks/flags in fastlane gradle invocationEmbedding multiple tasks and flags in a single task string is brittle.
- gradle( - task: "clean bundleRelease --stacktrace --info", + gradle( + tasks: ["clean", "bundleRelease"], + flags: "--stacktrace --info", project_dir: "android/", properties: { "MYAPP_UPLOAD_STORE_FILE" => ENV["ANDROID_KEYSTORE_PATH"], "MYAPP_UPLOAD_STORE_PASSWORD" => ENV["ANDROID_KEYSTORE_PASSWORD"], "MYAPP_UPLOAD_KEY_ALIAS" => ENV["ANDROID_KEY_ALIAS"], "MYAPP_UPLOAD_KEY_PASSWORD" => ENV["ANDROID_KEY_PASSWORD"] == "EMPTY" ? "" : ENV["ANDROID_KEY_PASSWORD"], }, )app/tests/utils/deeplinks.test.ts (2)
31-57: Add coverage for new splash coordination APIs (parent screen + queuing).The new flow introduces setDeeplinkParentScreen() and getAndClearQueuedUrl(), but tests don’t assert them. Add cases to:
- verify parent override (e.g., parent='Splash' -> [Splash, ProveScreen])
- verify initial URL is queued by setupUniversalLinkListenerInNavigation() and drained once via getAndClearQueuedUrl()
Here’s a minimal addition:
@@ describe('deeplinks', () => { beforeEach(() => { @@ }); + it('respects setDeeplinkParentScreen when navigating', () => { + const { setDeeplinkParentScreen, handleUrl } = require('@/utils/deeplinks'); + setDeeplinkParentScreen('Splash'); + handleUrl('scheme://open?sessionId=xyz'); + const { navigationRef } = require('@/navigation'); + expect(navigationRef.reset).toHaveBeenCalledWith({ + index: 1, + routes: [{ name: 'Splash' }, { name: 'ProveScreen' }], + }); + }); + + it('queues initial URL and clears it exactly once', async () => { + const { + setupUniversalLinkListenerInNavigation, + getAndClearQueuedUrl, + } = require('@/utils/deeplinks'); + (Linking.getInitialURL as jest.Mock).mockResolvedValue('scheme://open?sessionId=abc'); + setupUniversalLinkListenerInNavigation(); + // allow the promise microtask to resolve + await Promise.resolve(); + expect(getAndClearQueuedUrl()).toBe('scheme://open?sessionId=abc'); + expect(getAndClearQueuedUrl()).toBeNull(); + });
150-166: Exercise the web platform guard.Add a test to assert that Platform.OS === 'web' does not trigger a QRCodeTrouble reset (current branch intentionally no-ops). This prevents regressions that would misroute web users.
@@ describe('handleUrl', () => { + it('no-ops on web platform', () => { + jest.doMock('react-native', () => ({ + Platform: { OS: 'web' }, + Linking, + })); + jest.resetModules(); + const { handleUrl } = require('@/utils/deeplinks'); + const { navigationRef } = require('@/navigation'); + handleUrl('scheme://open?foo=bar'); + expect(navigationRef.reset).not.toHaveBeenCalled(); + });app/src/utils/deeplinks.ts (2)
126-130: Guard reset calls on navigator readiness or defer safely.If handleUrl fires before the navigator is ready, reset may no-op or throw depending on integration. Add a readiness check with a fallback queue.
- navigationRef.reset( - createDeeplinkNavigationState('ProveScreen', correctParentScreen), - ); + if (navigationRef.isReady?.()) { + navigationRef.reset( + createDeeplinkNavigationState('ProveScreen', correctParentScreen), + ); + } else { + queuedInitialUrl = uri; + }Apply similarly to other reset sites (QRCodeTrouble, MockDataDeepLink).
Also applies to: 156-167, 175-177
43-73: Avoid double-decoding unless required.query-string.parseUrl() decodes by default; decodeURIComponent again can surface “malformed URI” for edge inputs and adds cost. If you keep it for hardening, document the intent and gate it per key; otherwise, drop the extra decode to rely on parseUrl’s decoder.
Also applies to: 186-207
app/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/APDULogger.kt (2)
14-27: Make sessionContext thread-safe and sanitize values.APDU events may arrive off the UI thread while context is mutated elsewhere. Use a ConcurrentHashMap and restrict values to primitives/strings to avoid serialization surprises.
- private val sessionContext = mutableMapOf<String, Any>() + private val sessionContext: java.util.concurrent.ConcurrentMap<String, Any> = + java.util.concurrent.ConcurrentHashMap() @@ - fun setContext(key: String, value: Any) { - sessionContext[key] = value - } + fun setContext(key: String, value: Any) { + when (value) { + is String, is Number, is Boolean -> sessionContext[key] = value + else -> sessionContext[key] = value.toString() + } + }Also applies to: 39-63
49-51: Locale-stable hex formatting.Use Locale.ROOT to avoid locale-specific uppercasing.
- statusWordHex = "0x${response.sw.toString(16).uppercase().padStart(4, '0')}", + statusWordHex = "0x" + response.sw.toString(16).uppercase(java.util.Locale.ROOT).padStart(4, '0'),
📜 Review details
Configuration used: Path: .coderabbit.yaml
Review profile: CHILL
Plan: Pro
⛔ Files ignored due to path filters (1)
app/Gemfile.lockis excluded by!**/*.lock
📒 Files selected for processing (30)
.coderabbit.yaml(1 hunks).github/workflows/circuits-build.yml(1 hunks).github/workflows/circuits.yml(1 hunks).github/workflows/contracts.yml(1 hunks).github/workflows/mobile-ci.yml(1 hunks).github/workflows/mobile-deploy.yml(20 hunks).github/workflows/mobile-e2e.yml(1 hunks).github/workflows/qrcode-sdk-ci.yml(1 hunks).github/workflows/web.yml(1 hunks)README.md(1 hunks)app/android/app/build.gradle(1 hunks)app/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/APDULogger.kt(1 hunks)app/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/RNPassportReaderModule.kt(16 hunks)app/fastlane/Fastfile(5 hunks)app/fastlane/README.md(1 hunks)app/ios/Self.xcodeproj/project.pbxproj(2 hunks)app/scripts/upload_to_play_store.py(1 hunks)app/src/navigation/devTools.ts(2 hunks)app/src/navigation/index.tsx(1 hunks)app/src/screens/dev/DevPrivateKeyScreen.tsx(1 hunks)app/src/screens/dev/DevSettingsScreen.tsx(2 hunks)app/src/screens/document/DocumentNFCScanScreen.tsx(1 hunks)app/src/screens/settings/ManageDocumentsScreen.tsx(1 hunks)app/src/screens/system/SplashScreen.tsx(4 hunks)app/src/utils/deeplinks.ts(5 hunks)app/tests/src/navigation.test.ts(1 hunks)app/tests/utils/deeplinks.test.ts(7 hunks)app/version.json(1 hunks)app/vite.config.ts(1 hunks)packages/mobile-sdk-alpha/tests/processing/mrz.test.ts(1 hunks)
🧰 Additional context used
📓 Path-based instructions (9)
app/android/**/*
⚙️ CodeRabbit configuration file
app/android/**/*: Review Android-specific code for:
- Platform-specific implementations
- Performance considerations
- Security best practices for mobile
Files:
app/android/app/build.gradleapp/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/APDULogger.ktapp/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/RNPassportReaderModule.kt
.github/workflows/**/*.{yml,yaml}
📄 CodeRabbit inference engine (AGENTS.md)
.github/workflows/**/*.{yml,yaml}: In GitHub Actions workflows, use shared composite caching actions from .github/actions (cache-yarn, cache-bundler, cache-gradle, cache-pods)
Do not call actions/cache directly; rely on the shared composite caching actions
When using cache actions, optionally pass cache-version (often with GH_CACHE_VERSION and tool version) for stable keys
Files:
.github/workflows/mobile-ci.yml.github/workflows/mobile-e2e.yml.github/workflows/qrcode-sdk-ci.yml.github/workflows/web.yml.github/workflows/circuits-build.yml.github/workflows/circuits.yml.github/workflows/contracts.yml.github/workflows/mobile-deploy.yml
**/*.{ts,tsx}
📄 CodeRabbit inference engine (.cursor/rules/technical-specification.mdc)
**/*.{ts,tsx}: Define IdentityCommitment with fields: commitment (Poseidon hash), nullifier (domain-separated), timestamp (UTC number), version (circuit version), documentType ('passport' | 'eu_id_card')
Define DSCKeyCommitment with fields: publicKeyHash (Poseidon hash), certificateChain (hashes), revocationStatus (boolean), issuer (country code)
Define VerificationConfig with fields: circuitVersion (semver), complianceRules array, timeWindow (seconds, 24h), clockDrift (±5 min), trustAnchors, revocationRoots, timeSource (NTP), nullifierScope (domain separation)
Files:
app/src/navigation/index.tsxapp/vite.config.tsapp/tests/src/navigation.test.tsapp/src/screens/settings/ManageDocumentsScreen.tsxapp/src/screens/system/SplashScreen.tsxapp/src/screens/dev/DevPrivateKeyScreen.tsxpackages/mobile-sdk-alpha/tests/processing/mrz.test.tsapp/src/navigation/devTools.tsapp/src/utils/deeplinks.tsapp/tests/utils/deeplinks.test.tsapp/src/screens/dev/DevSettingsScreen.tsxapp/src/screens/document/DocumentNFCScanScreen.tsx
app/src/**/*.{ts,tsx,js,jsx}
⚙️ CodeRabbit configuration file
app/src/**/*.{ts,tsx,js,jsx}: Review React Native TypeScript code for:
- Component architecture and reusability
- State management patterns
- Performance optimizations
- TypeScript type safety
- React hooks usage and dependencies
- Navigation patterns
Files:
app/src/navigation/index.tsxapp/src/screens/settings/ManageDocumentsScreen.tsxapp/src/screens/system/SplashScreen.tsxapp/src/screens/dev/DevPrivateKeyScreen.tsxapp/src/navigation/devTools.tsapp/src/utils/deeplinks.tsapp/src/screens/dev/DevSettingsScreen.tsxapp/src/screens/document/DocumentNFCScanScreen.tsx
**/*.{test,spec}.{ts,js,tsx,jsx}
⚙️ CodeRabbit configuration file
**/*.{test,spec}.{ts,js,tsx,jsx}: Review test files for:
- Test coverage completeness
- Test case quality and edge cases
- Mock usage appropriateness
- Test readability and maintainability
Files:
app/tests/src/navigation.test.tspackages/mobile-sdk-alpha/tests/processing/mrz.test.tsapp/tests/utils/deeplinks.test.ts
app/ios/**/*
⚙️ CodeRabbit configuration file
app/ios/**/*: Review iOS-specific code for:
- Platform-specific implementations
- Performance considerations
- Security best practices for mobile
Files:
app/ios/Self.xcodeproj/project.pbxproj
packages/mobile-sdk-alpha/{**/*.test.{ts,tsx},**/__tests__/**/*.{ts,tsx}}
📄 CodeRabbit inference engine (packages/mobile-sdk-alpha/AGENTS.md)
packages/mobile-sdk-alpha/{**/*.test.{ts,tsx},**/__tests__/**/*.{ts,tsx}}: Do NOT mock @selfxyz/mobile-sdk-alpha in tests (avoid jest.mock('@selfxyz/mobile-sdk-alpha') and replacing real functions with mocks)
Use actual imports from @selfxyz/mobile-sdk-alpha in tests
Write integration tests that exercise the real validation logic (not mocks)
Test isPassportDataValid() with realistic synthetic passport data (never real user data)
Verify extractMRZInfo() using published sample MRZ strings (e.g., ICAO examples)
Ensure parseNFCResponse() works with representative, synthetic NFC data
Never use real user PII in tests; use only synthetic, anonymized, or approved test vectors
Files:
packages/mobile-sdk-alpha/tests/processing/mrz.test.ts
packages/mobile-sdk-alpha/**/*.{ts,tsx}
📄 CodeRabbit inference engine (packages/mobile-sdk-alpha/AGENTS.md)
packages/mobile-sdk-alpha/**/*.{ts,tsx}: Use strict TypeScript type checking across the codebase
Follow ESLint TypeScript-specific rules
Avoid introducing circular dependencies
Files:
packages/mobile-sdk-alpha/tests/processing/mrz.test.ts
packages/mobile-sdk-alpha/**/*.{ts,tsx,js,jsx}
⚙️ CodeRabbit configuration file
packages/mobile-sdk-alpha/**/*.{ts,tsx,js,jsx}: Review alpha mobile SDK code for:
- API consistency with core SDK
- Platform-neutral abstractions
- Performance considerations
- Clear experimental notes or TODOs
Files:
packages/mobile-sdk-alpha/tests/processing/mrz.test.ts
🧠 Learnings (28)
📓 Common learnings
Learnt from: CR
PR: selfxyz/self#0
File: app/AGENTS.md:0-0
Timestamp: 2025-08-29T15:30:12.210Z
Learning: App builds successfully on target platforms before PR
📚 Learning: 2025-07-29T01:08:28.530Z
Learnt from: transphorm
PR: selfxyz/self#795
File: app/android/app/build.gradle:157-158
Timestamp: 2025-07-29T01:08:28.530Z
Learning: For this React Native project, the team prefers build flexibility over fail-fast behavior for release builds in app/android/app/build.gradle. They intentionally allow fallback to debug signing for local development runs, relying on Google Play Console validation to catch any improperly signed releases during upload.
Applied to files:
app/android/app/build.gradle
📚 Learning: 2025-08-23T02:02:02.556Z
Learnt from: transphorm
PR: selfxyz/self#942
File: app/vite.config.ts:170-0
Timestamp: 2025-08-23T02:02:02.556Z
Learning: In the selfxyz/self React Native app, devTools from '@/navigation/devTools' are intentionally shipped to production builds for testing purposes, not excluded as is typical in most applications.
Applied to files:
app/src/navigation/index.tsxapp/vite.config.tsapp/src/navigation/devTools.tsapp/tests/utils/deeplinks.test.ts
📚 Learning: 2025-08-24T18:52:25.796Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursorrules:0-0
Timestamp: 2025-08-24T18:52:25.796Z
Learning: Applies to src/navigation/**/*.{ts,tsx} : Use react-navigation/native with createStaticNavigation for type-safe navigation
Applied to files:
app/src/navigation/index.tsx
📚 Learning: 2025-08-24T18:52:25.796Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursorrules:0-0
Timestamp: 2025-08-24T18:52:25.796Z
Learning: Applies to src/navigation/**/*.{ts,tsx} : Set platform-specific initial routes: web → Home, mobile → Splash
Applied to files:
app/src/navigation/index.tsxapp/vite.config.tsapp/src/screens/system/SplashScreen.tsxapp/src/utils/deeplinks.ts
📚 Learning: 2025-08-24T18:52:25.796Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursorrules:0-0
Timestamp: 2025-08-24T18:52:25.796Z
Learning: Applies to src/**/screens/**/*.{ts,tsx} : Lazy load screens and components to improve performance
Applied to files:
app/src/navigation/index.tsxapp/vite.config.tsapp/src/navigation/devTools.ts
📚 Learning: 2025-08-25T14:25:57.586Z
Learnt from: aaronmgdr
PR: selfxyz/self#951
File: app/src/providers/authProvider.web.tsx:17-18
Timestamp: 2025-08-25T14:25:57.586Z
Learning: The selfxyz/mobile-sdk-alpha/constants/analytics import path is properly configured with SDK exports, Metro aliases, and TypeScript resolution. Import changes from @/consts/analytics to this path are part of valid analytics migration, not TypeScript resolution issues.
Applied to files:
app/src/navigation/index.tsx
📚 Learning: 2025-08-24T18:52:25.796Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursorrules:0-0
Timestamp: 2025-08-24T18:52:25.796Z
Learning: Applies to src/**/screens/**/*.{ts,tsx} : Lazy load screens using React.lazy()
Applied to files:
app/vite.config.tsapp/src/navigation/devTools.ts
📚 Learning: 2025-08-24T18:52:25.796Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursorrules:0-0
Timestamp: 2025-08-24T18:52:25.796Z
Learning: Organize screens by feature modules (passport, home, settings, etc.)
Applied to files:
app/vite.config.ts
📚 Learning: 2025-08-24T18:52:25.796Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursorrules:0-0
Timestamp: 2025-08-24T18:52:25.796Z
Learning: Use yarn scripts: yarn ios/android for builds, yarn test for unit tests, and Fastlane for deployments
Applied to files:
app/fastlane/README.md.github/workflows/mobile-deploy.yml
📚 Learning: 2025-08-24T18:52:25.796Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursorrules:0-0
Timestamp: 2025-08-24T18:52:25.796Z
Learning: Applies to native/android/**/*.{kt,kts} : Android NFC: implement RNPassportReaderModule in Kotlin
Applied to files:
app/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/APDULogger.ktapp/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/RNPassportReaderModule.kt
📚 Learning: 2025-08-24T18:52:25.796Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursorrules:0-0
Timestamp: 2025-08-24T18:52:25.796Z
Learning: Applies to native/ios/**/*.{swift} : iOS NFC: implement custom PassportReader as a Swift module
Applied to files:
app/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/APDULogger.ktapp/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/RNPassportReaderModule.kt
📚 Learning: 2025-08-29T15:31:15.924Z
Learnt from: CR
PR: selfxyz/self#0
File: packages/mobile-sdk-alpha/AGENTS.md:0-0
Timestamp: 2025-08-29T15:31:15.924Z
Learning: Applies to packages/mobile-sdk-alpha/{**/*.test.{ts,tsx},**/__tests__/**/*.{ts,tsx}} : Verify extractMRZInfo() using published sample MRZ strings (e.g., ICAO examples)
Applied to files:
packages/mobile-sdk-alpha/tests/processing/mrz.test.ts
📚 Learning: 2025-08-29T15:31:15.924Z
Learnt from: CR
PR: selfxyz/self#0
File: packages/mobile-sdk-alpha/AGENTS.md:0-0
Timestamp: 2025-08-29T15:31:15.924Z
Learning: Applies to packages/mobile-sdk-alpha/{**/*.test.{ts,tsx},**/__tests__/**/*.{ts,tsx}} : Test isPassportDataValid() with realistic synthetic passport data (never real user data)
Applied to files:
packages/mobile-sdk-alpha/tests/processing/mrz.test.tsapp/src/utils/deeplinks.tsapp/tests/utils/deeplinks.test.ts
📚 Learning: 2025-08-29T15:31:15.924Z
Learnt from: CR
PR: selfxyz/self#0
File: packages/mobile-sdk-alpha/AGENTS.md:0-0
Timestamp: 2025-08-29T15:31:15.924Z
Learning: Applies to packages/mobile-sdk-alpha/{**/*.test.{ts,tsx},**/__tests__/**/*.{ts,tsx}} : Ensure parseNFCResponse() works with representative, synthetic NFC data
Applied to files:
packages/mobile-sdk-alpha/tests/processing/mrz.test.ts
📚 Learning: 2025-08-24T18:54:04.809Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursor/rules/mobile-sdk-migration.mdc:0-0
Timestamp: 2025-08-24T18:54:04.809Z
Learning: Applies to packages/mobile-sdk-alpha/src/processing/** : Place MRZ processing helpers in packages/mobile-sdk-alpha/src/processing/
Applied to files:
packages/mobile-sdk-alpha/tests/processing/mrz.test.ts
📚 Learning: 2025-08-29T15:31:15.924Z
Learnt from: CR
PR: selfxyz/self#0
File: packages/mobile-sdk-alpha/AGENTS.md:0-0
Timestamp: 2025-08-29T15:31:15.924Z
Learning: Applies to packages/mobile-sdk-alpha/{**/*.test.{ts,tsx},**/__tests__/**/*.{ts,tsx}} : Use actual imports from selfxyz/mobile-sdk-alpha in tests
Applied to files:
app/tests/utils/deeplinks.test.ts
📚 Learning: 2025-08-24T18:54:04.809Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursor/rules/mobile-sdk-migration.mdc:0-0
Timestamp: 2025-08-24T18:54:04.809Z
Learning: Applies to app/jest.setup.js : Provide comprehensive Jest setup in app/jest.setup.js with required mocks
Applied to files:
app/tests/utils/deeplinks.test.ts
📚 Learning: 2025-08-24T18:52:25.796Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursorrules:0-0
Timestamp: 2025-08-24T18:52:25.796Z
Learning: Applies to jest.setup.js : Maintain comprehensive mocks in jest.setup.js for all native modules
Applied to files:
app/tests/utils/deeplinks.test.ts
📚 Learning: 2025-08-29T15:31:15.924Z
Learnt from: CR
PR: selfxyz/self#0
File: packages/mobile-sdk-alpha/AGENTS.md:0-0
Timestamp: 2025-08-29T15:31:15.924Z
Learning: Applies to packages/mobile-sdk-alpha/{**/*.test.{ts,tsx},**/__tests__/**/*.{ts,tsx}} : Do NOT mock selfxyz/mobile-sdk-alpha in tests (avoid jest.mock('selfxyz/mobile-sdk-alpha') and replacing real functions with mocks)
Applied to files:
app/tests/utils/deeplinks.test.ts
📚 Learning: 2025-08-24T18:55:07.940Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursor/rules/technical-specification.mdc:0-0
Timestamp: 2025-08-24T18:55:07.940Z
Learning: Establish NFC secure channels using PACE/BAC
Applied to files:
app/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/RNPassportReaderModule.kt
📚 Learning: 2025-08-24T18:52:25.796Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursorrules:0-0
Timestamp: 2025-08-24T18:52:25.796Z
Learning: Support MRZ-derived keys, CAN, PACE, and BAC fallback for NFC authentication
Applied to files:
app/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/RNPassportReaderModule.kt
📚 Learning: 2025-08-24T18:52:25.796Z
Learnt from: CR
PR: selfxyz/self#0
File: .cursorrules:0-0
Timestamp: 2025-08-24T18:52:25.796Z
Learning: Handle multiple BAC attempts with delays and degrade from PACE to BAC gracefully with real-time status updates and haptic feedback
Applied to files:
app/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/RNPassportReaderModule.kt
📚 Learning: 2025-08-29T15:30:12.210Z
Learnt from: CR
PR: selfxyz/self#0
File: app/AGENTS.md:0-0
Timestamp: 2025-08-29T15:30:12.210Z
Learning: Verify iOS build succeeds via yarn ios
Applied to files:
.github/workflows/mobile-deploy.yml
📚 Learning: 2025-08-29T15:29:47.727Z
Learnt from: CR
PR: selfxyz/self#0
File: AGENTS.md:0-0
Timestamp: 2025-08-29T15:29:47.727Z
Learning: Applies to .github/workflows/**/*.{yml,yaml} : When using cache actions, optionally pass cache-version (often with GH_CACHE_VERSION and tool version) for stable keys
Applied to files:
.github/workflows/mobile-deploy.yml
📚 Learning: 2025-08-29T15:29:47.727Z
Learnt from: CR
PR: selfxyz/self#0
File: AGENTS.md:0-0
Timestamp: 2025-08-29T15:29:47.727Z
Learning: Applies to .github/workflows/**/*.{yml,yaml} : In GitHub Actions workflows, use shared composite caching actions from .github/actions (cache-yarn, cache-bundler, cache-gradle, cache-pods)
Applied to files:
.github/workflows/mobile-deploy.yml
📚 Learning: 2025-08-29T15:30:12.210Z
Learnt from: CR
PR: selfxyz/self#0
File: app/AGENTS.md:0-0
Timestamp: 2025-08-29T15:30:12.210Z
Learning: Verify Android build succeeds via yarn android
Applied to files:
.github/workflows/mobile-deploy.yml
📚 Learning: 2025-08-29T15:29:47.727Z
Learnt from: CR
PR: selfxyz/self#0
File: AGENTS.md:0-0
Timestamp: 2025-08-29T15:29:47.727Z
Learning: Before committing, run repository checks (yarn nice, yarn lint, yarn build, contracts build, yarn types)
Applied to files:
.github/workflows/mobile-deploy.yml
🧬 Code graph analysis (3)
packages/mobile-sdk-alpha/tests/processing/mrz.test.ts (2)
app/src/utils/utils.ts (1)
extractMRZInfo(7-23)app/src/utils/cameraScanner.ts (1)
mrzInfo(35-56)
app/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/RNPassportReaderModule.kt (2)
app/ios/PassportReader.swift (1)
iOS(32-364)app/src/utils/nfcScanner.ts (4)
response(116-185)response(187-262)setModalProofStep(49-79)setModalProofStep(81-114)
app/src/screens/document/DocumentNFCScanScreen.tsx (1)
app/src/utils/nfcScanner.ts (5)
setModalProofStep(49-79)setModalProofStep(14-47)setModalProofStep(81-114)response(187-262)response(116-185)
⏰ Context from checks skipped due to timeout of 300000ms. You can increase the timeout in your CodeRabbit configuration to a maximum of 15 minutes (900000ms). (2)
- GitHub Check: build-ios
- GitHub Check: e2e-ios
🔇 Additional comments (47)
.github/workflows/web.yml (1)
4-8: Good shift to PR-based triggers across dev/staging/main..github/workflows/contracts.yml (2)
6-6: Staging added to PR branches looks right.
52-54: Contract tests are hard-disabled. What’s the re-enable plan?
if: falsedrops safety nets. Consider running but marking non-blocking, or gating via label.- # skip until they get fixed - if: false - run: yarn test + # Temporarily non-blocking while fixing tests + continue-on-error: true + run: yarn test.github/workflows/qrcode-sdk-ci.yml (1)
13-16: Branch filter aligns with repo policy..github/workflows/mobile-ci.yml (1)
19-23: PR-based trigger set matches main/dev/staging policy..github/workflows/circuits.yml (1)
6-6: Staging branch inclusion LGTM..coderabbit.yaml (1)
18-18: Add staging to base_branches — correct and schema-compliant.app/version.json (1)
7-8: Align Android build numbers across repo before releasing.version.json has android.build = 96, but the PR summary notes app/android/app/build.gradle versionCode = 90. This mismatch can break Play uploads and CI gating. Please reconcile.
#!/bin/bash # Compare versionCode in Gradle vs version.json gradle_code=$(rg -nP 'versionCode\s+(\d+)' app/android/app/build.gradle | sed -E 's/.*versionCode\s+([0-9]+).*/\1/' | tail -1) json_build=$(jq -r '.android.build' app/version.json) echo "Gradle versionCode: $gradle_code" echo "version.json build: $json_build" test "$gradle_code" = "$json_build" || { echo "❌ Mismatch"; exit 1; } echo "✅ Match".github/workflows/circuits-build.yml (2)
143-148: Ensure artifact upload path matches build output directory.If circuits build emits into circuits/output, update the upload path accordingly to avoid uploading nothing.
- - name: Upload Artifact + - name: Upload Artifact uses: actions/upload-artifact@b4b15b8c7c6ac21ea08fcf65892d2ee8f75cf882 # v4 with: name: circuits - path: output/ + path: circuits/output/
121-142: ```shell
#!/bin/bash
set -eecho "Locating build_cpp.sh"
build_script=$(find . -type f -name build_cpp.sh | head -n1)
if [ -z "$build_script" ]; then
echo "build_cpp.sh not found"
exit 1
fi
echo "Found build_cpp.sh at: $build_script"
echo "----- build_cpp.sh content (first 200 lines) -----"
head -n200 "$build_script"
echo "--------------------------------------------------"echo "Searching for 'output' references in circuits/scripts"
grep -R "output" -n circuits/scripts || echo "No 'output' references found in circuits/scripts"echo "Checking for composite cache action at .github/actions/cache-dir"
if [ -d ".github/actions/cache-dir" ]; then
echo "Found composite action directory: .github/actions/cache-dir"
echo "----- action.yml (first 50 lines) -----"
head -n50 .github/actions/cache-dir/action.yml
echo "----------------------------------------"
else
echo "Directory .github/actions/cache-dir not found"
fi</blockquote></details> <details> <summary>app/fastlane/README.md (1)</summary><blockquote> `83-90`: **Doc addition looks good and matches the new lane.** The “android build_only” docs are clear and aligned with the workflow changes. </blockquote></details> <details> <summary>app/ios/Self.xcodeproj/project.pbxproj (1)</summary><blockquote> `426-426`: **Build number bump acknowledged. Ensure release tooling stays in sync.** CURRENT_PROJECT_VERSION = 169 matches version.json (iOS). Verify any Fastlane bump actions don’t overwrite this unexpectedly during deploys. Also applies to: 567-567 </blockquote></details> <details> <summary>app/fastlane/Fastfile (7)</summary><blockquote> `123-126`: **iOS version sync after semver bump looks good** Keeps MARKETING_VERSION consistent with package.json. --- `304-314`: **New android build_only lane is a good separation of concerns** Clean way to reuse build path without upload. --- `357-357`: **Boolean parsing for skip_upload is fine** Covers string/boolean inputs from CI. --- `376-378`: **Local-only requirement for JSON key is correct** Matches ADC/WIF use in CI. --- `396-401`: **Local-only JSON key validation is appropriate** Prevents unnecessary checks in CI. --- `408-411`: **Verify Gradle picks up MYAPP_UPLOAD_* props (signing could fail otherwise)** Ensure android/app/build.gradle reads these properties for signingConfigs. If not, release builds will be unsigned. Run this to confirm gradle usage: ```shell #!/bin/bash # Look for MYAPP_UPLOAD_* usage in Gradle files rg -nP -C2 '(MYAPP_UPLOAD_STORE_FILE|MYAPP_UPLOAD_STORE_PASSWORD|MYAPP_UPLOAD_KEY_ALIAS|MYAPP_UPLOAD_KEY_PASSWORD)' -- android
427-435: No changes needed for fastlane supply WIF credentials support
fastlane supply’sjson_key_dataoption (viaSUPPLY_JSON_KEY_DATAor thejson_key_dataparameter) works with both service-account JSON and external_account (Workload Identity Federation) credentials in versions including the 2024–2025 WIF support PRs. Ensure your CI is using a fastlane release that contains that change..github/workflows/mobile-deploy.yml (23)
33-33: id-token: write is necessary for WIFGood addition for OIDC-based auth.
110-113: Checkout pinned to staging — confirm intentThis builds staging regardless of the triggering ref. If that’s intentional for deploys, OK. Otherwise consider checking out the event ref.
127-144: Branch/commit verification step adds a useful guardrailHelps avoid accidental non-staging builds.
174-178: Primary Yarn cache key includes SHA with restore-keys fallbackLooks fine; expect lower primary-hit rate but acceptable with restores.
186-189: Bundler restore-keys are reasonableWorks across runs while isolating by Ruby version.
198-199: Pods cache-version includes SHAFine; aligns with your cache invalidation approach.
442-449: Pre-building iOS SDK deps is a good perf winReduces surprises during Fastlane build.
609-616: Staging checkout + WIF auth for Android looks consistentMatches the staging-first flow and enables ADC.
618-623: Early JDK setup for keytool is goodCatches keystore issues faster.
625-628: Keystore decode step is fineWrites into app path under a fixed location.
630-673: Android secret verification is thoroughValidates ADC, keystore, alias, and entry type — solid.
687-703: Branch/commit verification for Android is helpfulPrevents drift from staging.
713-717: Yarn cache keys on Android mirror iOS approachLooks good.
734-735: Gradle composite cache usage is aligned with repo guidanceGood.
788-833: Robust NDK/CMake install with retries is great for flaky sdkmanagerReduces CI noise.
835-838: Raising Gradle heap to 4G is reasonableHelps native builds; scoped to CI.
839-844: Python deps for Play upload are fineConsider pinning versions later for reproducibility.
845-852: Pre-building Android SDK deps mirrors iOSGood parity.
853-881: Build AAB via Fastlane build_only matches Fastfile changesKeeps upload concerns out of Fastlane in CI.
882-899: Upload to Play via WIF Python script is the right callAvoids service-account keys in CI; path and track wiring look correct.
961-966: Staging checkout for version update job is consistentMakes sense with the staging-first model.
1011-1024: PR to update version files after deployment is cleanGood separation to avoid races.
1039-1040: Staging checkout for tag creation is aligned with flowNo issues.
app/src/navigation/index.tsx (1)
19-19: Switch to devTools screens import is fineMatches the repo’s intentional inclusion of dev tools in production for testing.
app/vite.config.ts (1)
176-176: LGTM: dev chunk points to devTools.tsThe manual chunk now targets the new dev navigation module. This matches the app’s nav import switch and the known requirement to ship devTools in prod. No action needed.
app/tests/src/navigation.test.ts (1)
19-19: LGTM: test updated for DevPrivateKey routeNew screen is included and ordering remains correct with the pre-sort. Looks good.
app/src/screens/system/SplashScreen.tsx (1)
27-32: LGTM: queued deeplink bootstrap and parent screen selectionSetting the deeplink parent based on registration state and deferring URL handling until after init is a solid approach. Error path also resets parent to Launch.
Also applies to: 75-87, 90-90
app/android/react-native-passport-reader/android/src/main/java/io/tradle/nfc/RNPassportReaderModule.kt (1)
470-485: Post-auth SELECT handling and 0x6982 tolerance look good.Deferring SELECT until after PACE/BAC and proceeding on 6982 reduces fragile flows across chip variants.
| if: ${{ !env.ACT && success() }} | ||
| uses: ./.github/actions/push-changes | ||
| uses: peter-evans/create-pull-request@v6 | ||
| with: | ||
| commit_message: "incrementing ios build number for version ${{ env.VERSION }}" | ||
| commit_paths: "./app/version.json" | ||
| title: "chore: bump iOS build for ${{ env.VERSION }}" | ||
| body: "Automated bump of iOS build number by CI" | ||
| commit-message: "chore: incrementing ios build number for version ${{ env.VERSION }} [github action]" | ||
| branch: ci/bump-ios-build-${{ github.run_id }} | ||
| base: staging | ||
| add-paths: | | ||
| app/version.json |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🛠️ Refactor suggestion
Avoid opening PRs in test_mode
Currently still opens a bump PR when test_mode=true.
- - name: Open PR for iOS build number bump
- if: ${{ !env.ACT && success() }}
+ - name: Open PR for iOS build number bump
+ if: ${{ !env.ACT && success() && inputs.test_mode != true }}📝 Committable suggestion
‼️ IMPORTANT
Carefully review the code before committing. Ensure that it accurately replaces the highlighted code, contains no missing lines, and has no issues with indentation. Thoroughly test & benchmark the code to ensure it meets the requirements.
| if: ${{ !env.ACT && success() }} | |
| uses: ./.github/actions/push-changes | |
| uses: peter-evans/create-pull-request@v6 | |
| with: | |
| commit_message: "incrementing ios build number for version ${{ env.VERSION }}" | |
| commit_paths: "./app/version.json" | |
| title: "chore: bump iOS build for ${{ env.VERSION }}" | |
| body: "Automated bump of iOS build number by CI" | |
| commit-message: "chore: incrementing ios build number for version ${{ env.VERSION }} [github action]" | |
| branch: ci/bump-ios-build-${{ github.run_id }} | |
| base: staging | |
| add-paths: | | |
| app/version.json | |
| - name: Open PR for iOS build number bump | |
| if: ${{ !env.ACT && success() && inputs.test_mode != true }} | |
| uses: peter-evans/create-pull-request@v6 | |
| with: | |
| title: "chore: bump iOS build for ${{ env.VERSION }}" | |
| body: "Automated bump of iOS build number by CI" | |
| commit-message: "chore: incrementing ios build number for version ${{ env.VERSION }} [github action]" | |
| branch: ci/bump-ios-build-${{ github.run_id }} | |
| base: staging | |
| add-paths: | | |
| app/version.json |
🤖 Prompt for AI Agents
.github/workflows/mobile-deploy.yml lines 560-569: the create-pull-request step
still runs when test_mode=true; update its if condition to prevent PR creation
in test mode by adding a check for the TEST_MODE env var (e.g. change the if to
include && env.TEST_MODE != 'true' or the equivalent expression you use for
falsey test mode), so the step only runs when not ACT, success() and TEST_MODE
is not 'true'.
| - name: Cache Android NDK | ||
| id: ndk-cache | ||
| uses: actions/cache@v4 | ||
| with: | ||
| path: ${{ env.ANDROID_SDK_ROOT }}/ndk/${{ env.ANDROID_NDK_VERSION }} | ||
| key: ${{ runner.os }}-ndk-${{ env.ANDROID_NDK_VERSION }} | ||
| key: ${{ runner.os }}-ndk-${{ env.ANDROID_NDK_VERSION }}-${{ github.sha }} | ||
|
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🛠️ Refactor suggestion
Replace direct actions/cache for NDK with a composite action
Repo standard forbids calling actions/cache directly; add a ./.github/actions/cache-ndk composite for consistency.
I can draft the composite if you want.
| - name: Open PR for Android build number bump | ||
| if: ${{ !env.ACT && success() }} | ||
| uses: ./.github/actions/push-changes | ||
| uses: peter-evans/create-pull-request@v6 | ||
| with: | ||
| commit_message: "incrementing android build version for version ${{ env.VERSION }}" | ||
| commit_paths: "./app/version.json" | ||
| title: "chore: bump Android build for ${{ env.VERSION }}" | ||
| body: "Automated bump of Android build number by CI" | ||
| commit-message: "chore: incrementing android build version for version ${{ env.VERSION }} [github action]" | ||
| branch: ci/bump-android-build-${{ github.run_id }} | ||
| base: staging | ||
| add-paths: | | ||
| app/version.json |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🛠️ Refactor suggestion
Avoid opening PRs in test_mode (Android)
Same gating issue as iOS.
- - name: Open PR for Android build number bump
- if: ${{ !env.ACT && success() }}
+ - name: Open PR for Android build number bump
+ if: ${{ !env.ACT && success() && inputs.test_mode != true }}🤖 Prompt for AI Agents
.github/workflows/mobile-deploy.yml around lines 908 to 918: the step that opens
a PR for the Android build bump currently runs in test_mode; update the step
condition to also guard against test mode (same change applied to iOS) so the
action only runs when ACT is false, the job succeeded, and TEST_MODE is not
enabled—modify the if expression to include a check like TEST_MODE != 'true' (or
the repo's test-mode env var) so PRs are not opened during test runs.
| versionCode 90 | ||
| versionName "2.6.4" | ||
| manifestPlaceholders = [appAuthRedirectScheme: 'com.proofofpassportapp'] |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Android versionCode likely out of sync with app/version.json.
AI summary indicates version.json Android build moved to 96, but Gradle uses 90. This can break Play uploads (non-monotonic versionCode).
Run to confirm and align:
#!/bin/bash
set -euo pipefail
echo "Gradle versionCode:"
rg -nP '^\s*versionCode\s+(\d+)' app/android/app/build.gradle
echo "version.json Android buildCode:"
jq '.android.buildCode' app/version.json
echo "If mismatched, update app/android/app/build.gradle versionCode to match version.json (or vice versa) and ensure monotonic increments."🤖 Prompt for AI Agents
In app/android/app/build.gradle around lines 124 to 126, versionCode is set to
90 while app/version.json indicates android.buildCode has been moved to 96;
update the versionCode value in build.gradle to match the version.json (set
versionCode to 96) or reconcile the source of truth so they align, and ensure
the final value is a monotonic increment relative to previous Play Store
uploads.
| private fun logToAnalytics(entry: APDULogEntry) { | ||
| try { | ||
| val params = mutableMapOf<String, Any>().apply { | ||
| put("timestamp", entry.timestamp) | ||
| put("command_hex", entry.commandHex) | ||
| put("response_hex", entry.responseHex) | ||
| put("status_word", entry.statusWord) | ||
| put("status_word_hex", entry.statusWordHex) | ||
| put("command_length", entry.commandLength) | ||
| put("response_length", entry.responseLength) | ||
| put("data_length", entry.dataLength) | ||
| put("is_wrapped", entry.isWrapped) | ||
| put("context", entry.context) | ||
|
|
||
| entry.plainCommandHex?.let { put("plain_command_hex", it) } | ||
| entry.plainResponseHex?.let { put("plain_response_hex", it) } | ||
| entry.plainCommandLength?.let { put("plain_command_length", it) } | ||
| entry.plainResponseLength?.let { put("plain_response_length", it) } | ||
| entry.plainDataLength?.let { put("plain_data_length", it) } | ||
| } | ||
|
|
||
| moduleReference?.logAnalyticsEvent("nfc_apdu_exchange", params) | ||
|
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Do not send raw APDU payloads to analytics (PII leakage, high risk).
command_hex/response_hex and “plain” fields can contain MRZ/DG1/DG2 and other sensitive data. Shipping these off-device violates least-privilege and may breach privacy/compliance. Log only safe metadata (timestamp, SW, lengths, wrapped flag, minimal header bytes), and gate any content logging behind an explicit debug-only flag with size caps and redaction.
@@ class APDULogger : APDUListener {
- private fun logToAnalytics(entry: APDULogEntry) {
+ private var enableSensitiveApduLogging: Boolean = false
+ fun setSensitiveApduLoggingEnabled(enabled: Boolean) { enableSensitiveApduLogging = enabled }
+
+ private fun logToAnalytics(entry: APDULogEntry) {
try {
- val params = mutableMapOf<String, Any>().apply {
+ val params = mutableMapOf<String, Any>().apply {
put("timestamp", entry.timestamp)
- put("command_hex", entry.commandHex)
- put("response_hex", entry.responseHex)
put("status_word", entry.statusWord)
put("status_word_hex", entry.statusWordHex)
put("command_length", entry.commandLength)
put("response_length", entry.responseLength)
put("data_length", entry.dataLength)
put("is_wrapped", entry.isWrapped)
put("context", entry.context)
-
- entry.plainCommandHex?.let { put("plain_command_hex", it) }
- entry.plainResponseHex?.let { put("plain_response_hex", it) }
- entry.plainCommandLength?.let { put("plain_command_length", it) }
- entry.plainResponseLength?.let { put("plain_response_length", it) }
- entry.plainDataLength?.let { put("plain_data_length", it) }
+ // Optional, debug-only: include minimal headers and cap size
+ if (enableSensitiveApduLogging) {
+ put("command_header_hex", entry.commandHex.take(8)) // CLA+INS+P1+P2
+ put("response_header_hex", entry.responseHex.take(2)) // SW1 (best-effort)
+ }
}
moduleReference?.logAnalyticsEvent("nfc_apdu_exchange", params)
} catch (e: Exception) {
Log.e("APDULogger", "Error logging to analytics", e)
}
}
@@
-data class APDULogEntry(
+data class APDULogEntry(
val timestamp: Long,
- val commandHex: String,
- val responseHex: String,
+ val commandHex: String, // retained in-memory; not sent unless debug flag
+ val responseHex: String, // retained in-memory; not sent unless debug flag
val statusWord: Int,
val statusWordHex: String,
val commandLength: Int,
val responseLength: Int,
val dataLength: Int,
val isWrapped: Boolean,
- val plainCommandHex: String?,
- val plainResponseHex: String?,
- val plainCommandLength: Int?,
- val plainResponseLength: Int?,
- val plainDataLength: Int?,
+ val plainCommandHex: String?, // never sent to analytics
+ val plainResponseHex: String?, // never sent to analytics
+ val plainCommandLength: Int?,
+ val plainResponseLength: Int?,
+ val plainDataLength: Int?,
val context: Map<String, Any>
)Follow-up:
- Consider removing even in-memory “plain*” fields in release builds.
- Add per-INS allowlist if you ever need content in debug.
Also applies to: 98-114, 39-63
| if (scanTimeoutRef.current) { | ||
| clearTimeout(scanTimeoutRef.current); | ||
| scanTimeoutRef.current = null; | ||
| } | ||
| scanTimeoutRef.current = setTimeout(() => { | ||
| scanCancelledRef.current = true; | ||
| trackEvent(PassportEvents.NFC_SCAN_FAILED, { | ||
| error: 'timeout', | ||
| }); | ||
| openErrorModal('Scan timed out. Please try again.'); | ||
| setIsNfcSheetOpen(false); | ||
| }, 30000); |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🛠️ Refactor suggestion
Consolidate timeout logic and cancel the native NFC session on timeout
There are two separate 30s timers set back-to-back; the first is immediately cleared by the second, creating dead code and confusion. Also, on timeout we should cancel the native NFC tech request to free the chip and avoid dangling sessions.
Apply this diff to remove the first timer and add explicit cancellation in the remaining one:
@@
- if (scanTimeoutRef.current) {
- clearTimeout(scanTimeoutRef.current);
- scanTimeoutRef.current = null;
- }
- scanTimeoutRef.current = setTimeout(() => {
- scanCancelledRef.current = true;
- trackEvent(PassportEvents.NFC_SCAN_FAILED, {
- error: 'timeout',
- });
- openErrorModal('Scan timed out. Please try again.');
- setIsNfcSheetIsOpen(false);
- }, 30000);
@@
// Mark NFC scanning as active to prevent analytics flush interference
setNfcScanningActive(true);
@@
if (scanTimeoutRef.current) {
clearTimeout(scanTimeoutRef.current);
scanTimeoutRef.current = null;
}
scanTimeoutRef.current = setTimeout(() => {
scanCancelledRef.current = true;
- setNfcScanningActive(false); // Clear scanning state on timeout
+ setNfcScanningActive(false); // Clear scanning state on timeout
+ // Best-effort cancel of the native NFC session
+ // (no-op if not active or unsupported on platform)
+ void (async () => {
+ try {
+ await NfcManager.cancelTechnologyRequest();
+ } catch {}
+ })();
trackEvent(PassportEvents.NFC_SCAN_FAILED, {
error: 'timeout',
});
trackNfcEvent(PassportEvents.NFC_SCAN_FAILED, {
error: 'timeout',
});
openErrorModal('Scan timed out. Please try again.');
setIsNfcSheetOpen(false);
}, 30000);Follow-up:
- Consider exposing a cancel API from your scan() util (Android/iOS) and invoking it here alongside NfcManager.cancelTechnologyRequest() so both native paths are cleanly aborted. I can wire this end-to-end if helpful.
Also applies to: 223-239
🤖 Prompt for AI Agents
In app/src/screens/document/DocumentNFCScanScreen.tsx around lines 207 to 218
(also applies to 223-239): remove the redundant/cleared 30s timer so only a
single timeout is set, and inside that remaining timeout callback call
NfcManager.cancelTechnologyRequest() to explicitly cancel the native NFC session
before marking scanCancelledRef.current, tracking the timeout event, opening the
error modal and closing the sheet; also wire in (or leave a TODO to call) the
scan() util's cancel API when available so both native Android/iOS scan paths
are aborted.
| <SecondaryButton onPress={handleGenerateMock}> | ||
| Generate Mock Document | ||
| </SecondaryButton> |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🛠️ Refactor suggestion
Avoid exposing a dead “Generate Mock Document” button in production
The button now renders unconditionally, but handleGenerateMock early-returns in non-dev builds (Lines 285-290), resulting in a no-op tap in prod. This is a medium-severity UX/best-practice issue and could surface internal tooling to end users. Gate rendering consistently (dev-only or via a feature flag).
Apply this diff to hide the button outside dev (minimal fix):
- <SecondaryButton onPress={handleGenerateMock}>
- Generate Mock Document
- </SecondaryButton>
+ {__DEV__ && (
+ <SecondaryButton onPress={handleGenerateMock}>
+ Generate Mock Document
+ </SecondaryButton>
+ )}If you need it on staging, prefer a single showMockDocs boolean (feature flag or environment check) and use {showMockDocs && (...)} in both the render and handler to keep behavior consistent.
📝 Committable suggestion
‼️ IMPORTANT
Carefully review the code before committing. Ensure that it accurately replaces the highlighted code, contains no missing lines, and has no issues with indentation. Thoroughly test & benchmark the code to ensure it meets the requirements.
| <SecondaryButton onPress={handleGenerateMock}> | |
| Generate Mock Document | |
| </SecondaryButton> | |
| {__DEV__ && ( | |
| <SecondaryButton onPress={handleGenerateMock}> | |
| Generate Mock Document | |
| </SecondaryButton> | |
| )} |
🤖 Prompt for AI Agents
In app/src/screens/settings/ManageDocumentsScreen.tsx around lines 319-321
(handler early-return logic lives around lines 285-290), the "Generate Mock
Document" button is rendered unconditionally while its handler is a no-op in
non-dev builds; hide the button outside dev or behind a feature flag to avoid
exposing a dead control. Add a single boolean (e.g. showMockDocs) determined by
__DEV__ or a feature flag/env check, use {showMockDocs && (<SecondaryButton
...>)} for rendering, and check the same boolean inside the handler before
running mock-generation logic so rendering and behavior stay consistent across
environments.
| useEffect(() => { | ||
| if (isAnimationFinished && nextScreen) { | ||
| requestAnimationFrame(() => { | ||
| navigation.navigate(nextScreen as never); | ||
| }); | ||
| if (isAnimationFinished) { | ||
| if (queuedDeepLink) { | ||
| requestAnimationFrame(() => { | ||
| handleUrl(queuedDeepLink); | ||
| }); | ||
| } else if (nextScreen) { | ||
| requestAnimationFrame(() => { | ||
| navigation.navigate(nextScreen as never); | ||
| }); | ||
| } | ||
| } | ||
| }, [isAnimationFinished, nextScreen, navigation]); | ||
| }, [isAnimationFinished, nextScreen, queuedDeepLink, navigation]); |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
🛠️ Refactor suggestion
Prevent duplicate deeplink handling and add resilience
Because navigation object identity can change, this effect could re-fire and process the same queued URL again. Clear the queuedDeepLink after handling and add a try/catch fallback.
@@
- useEffect(() => {
- if (isAnimationFinished) {
- if (queuedDeepLink) {
- requestAnimationFrame(() => {
- handleUrl(queuedDeepLink);
- });
- } else if (nextScreen) {
- requestAnimationFrame(() => {
- navigation.navigate(nextScreen as never);
- });
- }
- }
- }, [isAnimationFinished, nextScreen, queuedDeepLink, navigation]);
+ useEffect(() => {
+ if (!isAnimationFinished) return;
+ if (queuedDeepLink) {
+ requestAnimationFrame(() => {
+ try {
+ void handleUrl(queuedDeepLink);
+ } catch (e) {
+ // On failure, fall back to nextScreen if available
+ if (nextScreen) {
+ navigation.navigate(nextScreen as never);
+ }
+ } finally {
+ // Ensure idempotence across re-renders
+ setQueuedDeepLink(null);
+ }
+ });
+ return;
+ }
+ if (nextScreen) {
+ requestAnimationFrame(() => {
+ navigation.navigate(nextScreen as never);
+ });
+ }
+ }, [isAnimationFinished, nextScreen, queuedDeepLink, navigation]);📝 Committable suggestion
‼️ IMPORTANT
Carefully review the code before committing. Ensure that it accurately replaces the highlighted code, contains no missing lines, and has no issues with indentation. Thoroughly test & benchmark the code to ensure it meets the requirements.
| useEffect(() => { | |
| if (isAnimationFinished && nextScreen) { | |
| requestAnimationFrame(() => { | |
| navigation.navigate(nextScreen as never); | |
| }); | |
| if (isAnimationFinished) { | |
| if (queuedDeepLink) { | |
| requestAnimationFrame(() => { | |
| handleUrl(queuedDeepLink); | |
| }); | |
| } else if (nextScreen) { | |
| requestAnimationFrame(() => { | |
| navigation.navigate(nextScreen as never); | |
| }); | |
| } | |
| } | |
| }, [isAnimationFinished, nextScreen, navigation]); | |
| }, [isAnimationFinished, nextScreen, queuedDeepLink, navigation]); | |
| useEffect(() => { | |
| if (!isAnimationFinished) return; | |
| if (queuedDeepLink) { | |
| requestAnimationFrame(() => { | |
| try { | |
| void handleUrl(queuedDeepLink); | |
| } catch (e) { | |
| // On failure, fall back to nextScreen if available | |
| if (nextScreen) { | |
| navigation.navigate(nextScreen as never); | |
| } | |
| } finally { | |
| // Ensure idempotence across re-renders | |
| setQueuedDeepLink(null); | |
| } | |
| }); | |
| return; | |
| } | |
| if (nextScreen) { | |
| requestAnimationFrame(() => { | |
| navigation.navigate(nextScreen as never); | |
| }); | |
| } | |
| }, [isAnimationFinished, nextScreen, queuedDeepLink, navigation]); |
🤖 Prompt for AI Agents
In app/src/screens/system/SplashScreen.tsx around lines 104 to 116, the effect
handling queuedDeepLink may re-fire and process the same URL multiple times and
lacks resilience on failures; update the effect so that when handling a
queuedDeepLink you clear it immediately (e.g., setQueuedDeepLink(null) or
dispatch a clear action) before or right after scheduling handling to prevent
duplicate processing, and wrap the call to handleUrl (and navigation.navigate
fallback) in a try/catch so any errors are caught and logged/handled gracefully
(keep requestAnimationFrame usage). Ensure state update to clear the queued deep
link is included in the same branch that processes it.
|
|
||
| test: | ||
| runs-on: macos-latest | ||
| runs-on: macos-latest-large |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
match the rest of the ci now that race condition bug has been fixed.
this also speeds up the tests and will use the same cache stores as other workflows
| description="Jump directly to any screen for testing" | ||
| > | ||
| <ScreenSelector /> | ||
| <YStack gap="$2"> |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
restore missing functionality @nakaz
|
@remicolin @seshanthS this pull request updates the tl;dr of why these artifacts showed up
|
* SDK Go version (#920) * feat: helper functions and constant for go-sdk * feat: formatRevealedDataPacked in go * chore: refactor * feat: define struct for selfBackendVerifier * feat: verify function for selfBackendVerifier * feat(wip): custom hasher * feat: SelfVerifierBacked in go * test(wip): scope and userContextHash is failing * test: zk proof verified * fix: MockConfigStore getactionId function * chore: refactor * chore: remove abi duplicate files * chore: move configStore to utils * chore: modified VcAndDiscloseProof struct * chore: more review changes * feat: impl DefaultConfig and InMemoryConfigStore * chore: refactor and export functions * fix: module import and README * chore: remove example folder * chore: remove pointers from VerificationConfig * chore: coderabbit review fixes * chore: more coderabbit review fix * chore: add license * fix: convert attestationIdd to int * chore: remove duplicate code --------- Co-authored-by: ayman <[email protected]> * Moving proving Utils to common (#935) * remove react dom * moves proving utils to the common * need to use rn components * fix imports * add proving-utils and dedeuplicate entry configs for esm and cjs. * must wrap in text component * fix metro bundling * fix mock import * fix builds and tests * please save me * solution? * fix test * Move proving inputs to the common package (#937) * create ofactTree type to share * move proving inputs from app to register inputs in common * missed reexport * ok * add some validations as suggested by our ai overlords * Fix mock passport flow (#942) * fix dev screens * add hint * rename * fix path * fix mobile-ci path * fix: extractMRZ (#938) * fix: extractMRZ * yarn nice && yarn types * fix test: remove unused * fix mobile ci * add script --------- Co-authored-by: Justin Hernandez <[email protected]> * Move Proving attest and cose (#950) * moved attest and cose utils to common with cursor converted tests in common to use vitest and converted coseVerify.test to vitest after moving from app to common what does cryptoLoader do? * moved away * get buff Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> --------- Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> * SELF-253 feat: add user email feedback (#889) * feat: add sentry feedback * add sentry feedback to web * feat: add custom feedback modal & fix freeze on IOS * yarn nice * update lock * feat: show feedback widget on NFC scan issues (#948) * feat: show feedback widget on NFC scan issues * fix ref * clean up * fix report issue screen * abstract send user feedback email logic * fixes * change text to Report Issue * sanitize email and track event messge * remove unnecessary sanitization * add sanitize error message tests * fix tests * save wip. almost done * fix screen test * fix screen test * remove non working test --------- Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> * chore: centralize license header checks (#952) * chore: centralize license header scripts * chore: run license header checks from root * add header to other files * add header to bundle * add migration script and update check license headers * convert license to mobile sdk * migrate license headers * remove headers from common; convert remaining * fix headers * add license header checks * update unsupported passport screen (#953) * update unsupported passport screen * yarn nice * Migrate Analytics (#951) * setup analytics adapter for self mobile sdk client and use in app * wrap for context * fix build * yarn types is an alias for build when build just compiles ts * ok unlock * deeper * ok this looks to work * fix license check * make sure it starts with this line * someone didnt commit * fix double analytics bug and builds * lint * Read document catalog from selfClient (#936) * [SELF-676] feat: upgrade React Native from 0.75.4 to 0.76.9 (#943) * chore: upgrade build tooling to Node 22 and AGP 8.6 * chore: upgrade react-native to 0.76.9 * update lock files and formatting * fix path * fix: handle hermes-engine cache mismatch in CI after React Native upgrade - Add fallback logic to run 'pod update hermes-engine' when pod install fails - This resolves CocoaPods cache issues that occur after React Native version upgrades - Fixes CI pipeline failures on codex/update-core-tooling-for-react-native-upgrade branch * fix: improve hermes-engine cache handling in CI - Preemptively clear CocoaPods cache before pod install - This prevents dependency analysis failures that occur when cached podspecs conflict - Addresses the root cause: cache conflicts during 'Analyzing dependencies' phase - Keeps fallback logic for additional safety * fix: handle hermes-engine cache in mobile-bundle-analysis workflow - Add pod-install-with-cache-fix.sh script to handle hermes-engine cache conflicts - Update install-app:setup script to use the new cache fix approach - This fixes the mobile-bundle-analysis.yml workflow failures after React Native upgrade - Proactively clears CocoaPods cache and has fallback for hermes-engine updates * formatting * fix: robust hermes-engine cache handling in CI workflows - Apply comprehensive cache clearing to mobile-ci.yml and mobile-e2e.yml - Pre-emptively run 'pod update hermes-engine' before pod install - Clear multiple cache locations to handle CI environment differences - This prevents 'hermes-engine differs from Pods/Local Podspecs' errors - Fixes all workflows affected by React Native 0.76.9 upgrade cache issues * fixes * clean up * update lock files * fix tests * sort * fixes * fix ci * fix deployment target * android fixes * upgrade fix * fixes * fix: streamline mobile CI build and caching (#946) * fix: streamline mobile CI build and caching * Enable mobile E2E tests on codex/fix-mobile-ci-workflow-errors branch * test * simplify and fix path * workflow fixes * fix loading on 0.76.9 * clean up unnecessary comments * fix readme * finalize upgrade to 0.76.9 * fix android build and upgrade * fix bundler caching * download cli to fix "yarn start" issues * fix cli build erorr * fix script path * better path * abstract build step to prevent race condition * fixes * better cache * fix corepack build error * update lock * update lock * add yarn cache to workflows * fix test building * ci caching improvements * fix common type check * fix common ci * better mobile sdk alpha building logic * chore: speed up mobile e2e workflow (#962) * chore: speed up mobile e2e workflow * chore: disable android e2e job * chore: speed up ios build * fix: bundle js for ios debug build * fix e2e * fix mobile ci (#964) * feat: improve mixpanel flush strategy (#960) * feat: improve mixpanel flush strategy * fixes * fix build * update lock * refactor methods * conslidate calls * update package and lock * refactor: remove namespace imports (#969) * refactor: remove namespace imports * refactor: use named fs imports * refactor(app): replace path and fs namespace imports * format * format * Mixpanel tweaks (#971) * udpates * fox * update license * Add DSC parsing check (#836) * Handle missing dsc parsed * nice * fix test * throw * fix * chore(app): upgrade dependencies (#968) * chore(app): upgrade dependencies * update package * update lock files * fixes * lock * fix * Auth Adapter + (#958) * basic auth adapater * remove SelfMobileSDk, this was another architecture which the adapter patern replaced * rename to avoid confusion with client.test.ts * basic auth adapater * remove SelfMobileSDk, this was another architecture which the adapter patern replaced * rename to avoid confusion with client.test.ts * self * fix * remove prototypes * make sure its mounted * fix tests * fmt * require required adapters * fix types * not a partial * adds missing exports * fix missing data * Fix nfc configuration scanning issue (#978) * fix nfc scanning on ios and android * save test * fix tests * fix lint * Chore fix ios nfc scanning and compiling (#979) * fixes * silence error * fix debugge * fix nfc scanning * lint and pipeline fixes * large runner (#980) * chore: update to macos latest large runner (#981) * bump up to macos-latest-large * fix ci * Move loadSelectedDocument to SDK (#967) Co-authored-by: Aaron DeRuvo <[email protected]> Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> * docs: update mobile SDK migration progress (#982) * docs: record app integration progress * docs: consolidate mobile SDK migration tracking * docs: humanize migration tracking and merge prompts * docs: add common consolidation tasks * docs: reprioritize migration tasks * docs: soften migration plan tone * docs: detail agent prompts with file paths * docs: catalog Linear tasks for SDK * updates * remove artifact management * moves validateDocument functions into the common package. (#977) * moves validateDocument functions into the common package. * fix build issues and lint * handle bad connections better in nullifiier * add an abort controler to nullifer fetcher, ignore fals positives * import types separately * take it as an arg * chore: update yarn.lock * chore(app): resolve lint warnings (#990) * chore(app): resolve lint warnings * update lock * clean up any types * fix types * feedback from cr * [SELF-703] feat: Migrate mock generator to mobile sdk (#992) * feat: expose mock generator * formatting * fix tests and lint * rename passport to document * fix types * [SELF-698] scaffold mobile sdk demo app (#993) * chore: scaffold mobile sdk demo app * test: cover demo app menu * prettier and types * sort * add android app foundation * fix android loading * get ios app running * update script * cr feedback * disable fabric * fixes * fixes * fix * SELF-702: Refactor navigation structure and dev utilities (#994) * Refactor navigation and dev screens * refactor: rename passport screens to document * fixes * add missing header * fixes * type files * feat: clarify proof verification analytics (#996) * feat: increase sha256 byte size and add new rsa circuits (#986) * feat: increase sha256 byte size and add new rsa circuits * feat: modularise the rsa fp pow mod * chore: comment signature verifier for testing * fix: sha256_sha256_sha224_ecdsa_secp224r1 * lint * chore: implement google play suggestions (#997) * google play suggestions * update gitguardian ignore * remove unused * chore: address yarn lock issues (#1004) * address yarn lock issues * fix postinstall * skip postinstall for ci (#1005) * [SELF-654] feat: add native modules (#919) * feat: add ios native modules * fix: extractMRZ * Add android OCR native module * wire native mrz module with adapter * wire Native modules and fix tests * fixes * fix license header logic * fix tests * fix types * fix: ci test * fix: android build ci * fix: ios build CI * add podfile.lock * add yarn.lock * update lock files * add yarn.lock * add license * order methods * update lock * pipeline fixes * prettier * update lock file * fix native modules on external apps * bundle @selfxyz/common into mobile-sdk-alpha * chore: address yarn lock issues (#1004) * address yarn lock issues * fix postinstall * update lock * fix build issues * fix pipeline issue * fix ci * fix bad merge * fix android ci * fix ci errors * fix mobile sdk ci. stop gap fix for now until we create a package * tweaks * retry aapt2 approach * use ^0.8.4 instead of ^0.8.0 due to the use of custom errors * workflow fixes * fix file * update * fix ci * test ci fix * fix test --------- Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> * chore: update dev with staging 09/06/25 (#1007) * update CI * bump iOS version * update readme * update mobile-deploy ci * bump version iOS * update workflow to use workload identity federation (#933) * update workflow to use workload identity federation * add token permissions * correct provider name * chore: incrementing android build version for version 2.6.4 [github action] --------- Co-authored-by: Self GitHub Actions <[email protected]> * update ci * update ci * update ci * update ci * update ci * fix ci * fix ci * fix ci * remove fastlane use for android * bump iOS build version * update CI python script * iterate on CI * iterate on CI * iterate on CI * Dev (#941) * SDK Go version (#920) * feat: helper functions and constant for go-sdk * feat: formatRevealedDataPacked in go * chore: refactor * feat: define struct for selfBackendVerifier * feat: verify function for selfBackendVerifier * feat(wip): custom hasher * feat: SelfVerifierBacked in go * test(wip): scope and userContextHash is failing * test: zk proof verified * fix: MockConfigStore getactionId function * chore: refactor * chore: remove abi duplicate files * chore: move configStore to utils * chore: modified VcAndDiscloseProof struct * chore: more review changes * feat: impl DefaultConfig and InMemoryConfigStore * chore: refactor and export functions * fix: module import and README * chore: remove example folder * chore: remove pointers from VerificationConfig * chore: coderabbit review fixes * chore: more coderabbit review fix * chore: add license * fix: convert attestationIdd to int * chore: remove duplicate code --------- Co-authored-by: ayman <[email protected]> * Moving proving Utils to common (#935) * remove react dom * moves proving utils to the common * need to use rn components * fix imports * add proving-utils and dedeuplicate entry configs for esm and cjs. * must wrap in text component * fix metro bundling * fix mock import * fix builds and tests * please save me * solution? * fix test * Move proving inputs to the common package (#937) * create ofactTree type to share * move proving inputs from app to register inputs in common * missed reexport * ok * add some validations as suggested by our ai overlords * Fix mock passport flow (#942) * fix dev screens * add hint * rename * fix path * fix mobile-ci path * fix: extractMRZ (#938) * fix: extractMRZ * yarn nice && yarn types * fix test: remove unused * fix mobile ci * add script --------- Co-authored-by: Justin Hernandez <[email protected]> * Move Proving attest and cose (#950) * moved attest and cose utils to common with cursor converted tests in common to use vitest and converted coseVerify.test to vitest after moving from app to common what does cryptoLoader do? * moved away * get buff Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> --------- Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> * SELF-253 feat: add user email feedback (#889) * feat: add sentry feedback * add sentry feedback to web * feat: add custom feedback modal & fix freeze on IOS * yarn nice * update lock * feat: show feedback widget on NFC scan issues (#948) * feat: show feedback widget on NFC scan issues * fix ref * clean up * fix report issue screen * abstract send user feedback email logic * fixes * change text to Report Issue * sanitize email and track event messge * remove unnecessary sanitization * add sanitize error message tests * fix tests * save wip. almost done * fix screen test * fix screen test * remove non working test --------- Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> * chore: centralize license header checks (#952) * chore: centralize license header scripts * chore: run license header checks from root * add header to other files * add header to bundle * add migration script and update check license headers * convert license to mobile sdk * migrate license headers * remove headers from common; convert remaining * fix headers * add license header checks * update unsupported passport screen (#953) * update unsupported passport screen * yarn nice --------- Co-authored-by: Vishalkulkarni45 <[email protected]> Co-authored-by: ayman <[email protected]> Co-authored-by: Aaron DeRuvo <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Seshanth.S🐺 <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> * bump version * bump yarn.lock * update ci (#966) * chore: Manually bump and release v2.6.4 (#961) * update lock files * bump and build android * update build artifacts * show generate mock document button * update lock * fix formatting and update failing e2e test * revert podfile * fixes * fix cold start of the app with deeplink * update ci * update ci * Sync MARKETING_VERSION to iOS project files after version bump * chore: incrementing android build version for version 2.6.4 [github action] (#976) Co-authored-by: remicolin <[email protected]> * chore: add build dependencies step for iOS and Android in mobile deploy workflow * chore: enhance mobile deploy workflow by adding CMake installation step * bump android build version * chore: incrementing android build version for version 2.6.4 [github action] (#985) Co-authored-by: remicolin <[email protected]> * chore: configure Metro bundler for production compatibility in mobile deploy workflow * chore: incrementing android build version for version 2.6.4 [github action] (#987) Co-authored-by: remicolin <[email protected]> * Revert "chore: configure Metro bundler for production compatibility in mobile deploy workflow" This reverts commit 60fc1f2580c2f6ad3105d8b904d969412a18bd2e. * reduce max old space size in mobile-deploy ci * fix android french id card (#957) * fix android french id card * fix common ci cache * feat: log apdu (#988) --------- Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Seshanth.S🐺 <[email protected]> * unblock ci * fix merge * merge fixes * fix tests * make ci happy --------- Co-authored-by: turnoffthiscomputer <[email protected]> Co-authored-by: pputman-clabs <[email protected]> Co-authored-by: Self GitHub Actions <[email protected]> Co-authored-by: turnoffthiscomputer <[email protected]> Co-authored-by: Vishalkulkarni45 <[email protected]> Co-authored-by: ayman <[email protected]> Co-authored-by: Aaron DeRuvo <[email protected]> Co-authored-by: Seshanth.S🐺 <[email protected]> Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> * chore: fix yarn format (#1009) * fix yarn format * yarn format * fix lint * undo temporary disabling * pipeline fixes * revert nvmrc change * add new home screen (#1019) * add new home screen * fix typing issue * yarn nice * chore: update the cpp build script (#1021) * chore: install node (#1022) * chore: use node v22 (#1023) * chore: install yarn (#1024) * chore: yarn cache (#1025) * chore: sanitise node version (#1026) * remove lazy loading (#1018) * remove lazy loading * fix tests * formatting * fix imports and web ci * fix tests * fix building * fix * debug ci * fix web ci issue * fix * fix * fix ci * remove web render test * coderabbit feedback * fix ci * use import * fix lint * fix compiling * update lock * update lock * fix: update yarn.lock hash for @selfxyz/mobile-sdk-alpha Resolves CI error where yarn install --immutable failed due to outdated package hash. The hash changed from b2afc4 to f9ebb9. * fix: update yarn.lock hash after mobile-sdk-alpha changes - Hash changed from c0e6b9 to 0d0f72 due to package modifications - Cleaned caches and regenerated lockfile to ensure consistency - This resolves CI cache mismatch where old artifacts had stale hash * fix: update yarn.lock hash after building mobile-sdk-alpha - Final hash: 89f5a6 (includes built dist artifacts) - Built mobile-sdk-alpha to ensure package is in stable state - This should resolve CI immutable install errors * fix yarn lock and build * chore(ci): improve mobile e2e caching (#1010) * chore(ci): improve mobile e2e caching * chore(ci): restore deriveddata cache * chore(ci): remove ios deriveddata cache * chore(ci): cache ios derived data * chore(ci): optimize mobile deploy caching * chore(ci): enable ccache for ios e2e builds * fix(ci): add ccache path for ios e2e * moves ofac and protocol store (#1012) * move ofact tree fetch to common * move protocol store to the msdk, fix some dependencies on msdk * chore: remove register id from register circuits (#1028) * chore: remove register id from register circuits * chore: only use 128ram instance * Feat/build cpp (#1029) * chore: remove register id from register circuits * chore: only use 128ram instance * chore: build 2 circuits at a time * Remove navigationRef from provingMachine (#1011) * SDK: minimize amount of data sent through PROVING_PASSPORT_NOT_SUPPORTED event (#1030) * Fix mock passport generation (#1031) * fix mock passport generation * fix mobile ci tests * Feat/aadhaar (#949) * make contract sdk simpler (#514) * make contract sdk simpler * reduce root inputs * delete convert function * summarize our library * update npm package * update package version * update attestation id * add util function to get revealed data * Revert "make contract sdk simpler (#514)" (#518) This reverts commit 847b88d5ecc0d449b976a552f68af38eec8e561b. * merge dev into main (#576) * Feat: Show error code in SDK (#500) * feat: emit `error_code` and `reason` in app * feat: add `onError` in sdk * feat: Display reason in app * lint & fmt * feat: add scrollview in ProofRequestStatusScreen for long reasons * Fix input generation for 521bit curves (#481) * fix EC point padding for 521 bit curves * rename modulus to point in findStartIndexEC as it is a point * simplify matching logic * simplify padding logic * remove comment * remove log removing .only so the CI/CD runs circuit tests fix disclosure test fix scope in test fix scope error in circuit tests remove .only fix test * run ci/cd * Feat/simpler contract sdk (#519) * make contract sdk simpler * reduce root inputs * delete convert function * summarize our library * update npm package * update package version * update attestation id * add util function to get revealed data --------- Co-authored-by: motemotech <[email protected]> * forgot to include package update (#521) * Bump version to 2.5.1 (#522) * bump version * update fastlane * fix bump version * bump build and add todo * disable commit for now * [SEL-154] Step 1: Scan your passport (#511) * simplify navigation logic * use aesop design hook * save wip * add new aesop redesign screens * save wip design * refactor nav bar logic * fix paths * save wip * stub progress navbar and save wip * save wip progress bar animation * save wip progress bar, almost done with design * fix progress bar design * fix bottom padding * disable git commit for now * fix flaky android downloads that causes pipeline to crash * update lock for ci * [SEL-46] FE: Add minimum bottom padding (#510) * fix bottom padding for smaller screens * fix podfile post install hook permissions check * update pod lock and disable git commit action step for now * update lock * fix flaky android downloads that causes pipeline to crash * fix: improve error handling for forbidden countries list mismatch (#494) * Update SelfBackendVerifier.ts * Update constants.ts * Update formatInputs.ts * Update formatCallData.ts * DX: Auto format on save (#526) * save wip * use elint instead of prettier to sort imports * set imports to warn * sync prettier settigns * update prettier settings * save working version * fix export and disable mobile pipeline for now * limit auto formatting to the app folder * remove artefacts * SEL-187: Make bottom layout scrollable on smaller screens (#525) * fix design check * add an option to disable local sending of sentry events * better sentry enable / disable * fix scan passport height * make bottom layout scrollable so it doesn't squish top screen * simpler logic check. don't create new env var * fix internet connection issues * readd comment * use isConnected instead of internet reachable * use a dynamic bottom panel height * add missing recovery screens * move aesop below * remove dupe export * fix rebase * fix android package download issue * Feat/extend id support (#517) * refactor proving impleting xstate, speedup proving * add disclosure proof support * keep refactoring provingMachine, clean old implementation * call init method when switching from dsc to register * rebase with dev to display why the proof verification failed * refactor ws connexion between front-end and mobile to retrieve self-app * update the webclient at proofVerification and use selfAppStore in provingMachine * fix provintStore.init in ProveScreen * yarn nice * fetch data correctly in splash screen * Bump build versions for 2.5.1 (#531) * release new builds * fix app and build versions * fix env check * display error animation on failure on loading screen (#532) * display error animation on failure on loading screen * remove log --------- Co-authored-by: Justin Hernandez <[email protected]> * ci: bump actions/checkout to v4 (#529) * make contract sdk simpler (#514) * make contract sdk simpler * reduce root inputs * delete convert function * summarize our library * update npm package * update package version * update attestation id * add util function to get revealed data * Revert "make contract sdk simpler (#514)" (#518) This reverts commit 847b88d5ecc0d449b976a552f68af38eec8e561b. * ci: bump actions/checkout to v4 --------- Co-authored-by: nicoshark <[email protected]> Co-authored-by: turnoffthiscomputer <[email protected]> * fix italy (#530) * Fix/proving machine endpoint type (#538) * store endpoint type in proving machine * yarn nice * fix splash screen error (#539) * New bug fix build for v2.5.1 (#540) * bump new build for dev fixes * update lock * reinstall before running local deploy * SEL-178: Improve haptic feedback library (#535) * fix dev settings typing * add dev screens file * save haptic feedback progress * change ordedr * fix initial route and add haptic feedback screen to dev settings options * add delete scripts (#542) * update staging registry address (#545) * feat: Add Disclose history (#533) * feat: Add Disclose history * fix: Duplicate history in list * fix: Outdated disclosures * Delete app/ios/Self copy-Info.plist * allow a scale of up to 1.3 (#546) * allow a scale of up to 1.3 * update lock files * clean up unused imports * fix settings * add common sdk (#537) * add common sdk * remove sdk backend api * remove registry * regenerate sha256 rsa dsc each time * download ski-pem dynamically on staging, refactor initpassportDataParsing * add state machine for button on prove screen, improve ux on splash screen * fetch ski-pem in production * fix linter issues * fix prove screen button bugs * update podfile.lock and yarn.lock * run linter in circuits repo * bump build * bump version for sentry debugging * bump ios to version 118 --------- Co-authored-by: Justin Hernandez <[email protected]> * better connection check (#548) * Clean up navigation and setup Jest (#549) * remove dupe account screens and prefer the term home * organize screen loading better * sort keys * rename screen files wip * fix deleted directory issues * rename folders * fix paths and naming * save working jest import test * save base working jest navigation test * finalize navigation refactor and jest test * update test name and podfile lock * remove unused packages * use the correct version of react test renderer * bump build (#552) * Eth dublin (#554) * add mock id card generator * add genMockIdDoc in common/sdk exports * onboard developer id using deeplink, allow custom birthdate on mockpassport * log more dsc info (#558) * Push notification (#536) * add push notification feature * merge new app impl * change dsc key * import * reverse mock dsc * worked in the ios * checked in android * update url and delete console * delete small changes * lint * add yarn.lock * fix warning message * add mock notification service for test code * fix path for the mock implementation * add mock deeplink to the test code * nice notificationServiceMock.js * delete unused firebase related implementation * fix wording and UI related to notification service * hotfix on mockdatascreen --------- Co-authored-by: turnoffthiscomputer <[email protected]> * Fix deeplink 2 (#560) * fix deeplink * fix deeplink * yarn nice * feat: Use vision for MRZ scanning (SEL-47) (#557) * feat: Use vision for MRZ scanning * modify label to position the smartphone during the OCR scan --------- Co-authored-by: turnoffthiscomputer <[email protected]> * SEL-255: improved loading screen with estimated wait times (#550) * create new loading screen and rename static to misc * fix route * save wip loading screen * save wip animation * save static wip design * continue * splash * add a loading screen text helper * add test for loading screen text * save wip. almost there * update haptic logic * better feedback and add dev scren * save current work * update text logic and tests * load passport metadata in loading screen * simplify and fix tests * test for additional exponents * add new animation * rename file * consolidate ui useEffect and fix loading screen layout * fix current state * remove mockPassportFlow param * merge new loading screen and new notification logic * simplify * update lock * use passportMetadata instead of metadata * save simplification * update loading text based on pr feedback and tests * Bump v2.5.1: ios 122; android 60 (#561) * increment build to 120 * bump builds for 2.5.1. ios 121; android 60 * clean up logic * upgrade react native firebase for privacy manifests * update react native keychain to fix could not recover issue (#564) * fix: update ocr corrections (#563) * Chore: Polish proof history to prep for release (#566) * clean up nav and home boundaries, passport data screen insets * migrate proof history screen out of settings * minor clean up * save wip * add new ibm plex mono font and clean up proof detail screen * remove test data * remove extra loading screen text * remove unnecessary ceil * Bump v2.5.1; ios 123; android 62 (#565) * bump to build 61 * bump ios version * update version * Feature/add prettier formatter (#568) * Add Prettier configuration and ignore files for code formatting - Created .prettierignore to exclude specific directories and files from formatting. - Added .prettierrc.yml with custom settings for print width and trailing commas. - Updated package.json to include Prettier and its Solidity plugin as dependencies, along with scripts for formatting and checking code. * Run prettier formatting * fix nationality using mock passports * SEL-181 & SEL-252: Update mobile app events (#570) * improve analytics handling * add error boundary that flushes segment events before error occurs * upgrade segment analytics package * flush analytics when user encounters error screen * track all click events * add tracking to loading screen * better init and click event names * track cloud backup and modal actions * use __DEV__ for debugging * add tracking to account recovery, auth, mock data * return false instead of throwing * add more tracking events * save wip event updating * abstract analytic event names * update click events * clean up * move reasons comment * add unsupported passport event * Feature/enhance self verification root (#569) * Add SelfVerificationConsumer contract for self-verification logic - Introduced an abstract contract, SelfVerificationConsumer, that extends SelfVerificationRoot. - Implemented nullifier tracking, verification success events, and customizable validation and update methods for nullifiers. - Added error handling for nullifier check failures and hooks for derived contracts to implement custom logic after successful verification. * Add SelfHappyBirthday contract example using SelfVerificationConsumer - Introduced SelfHappyBirthday contract that allows users to claim USDC on their birthday. - Integrated SelfVerificationConsumer for handling verification and nullifier tracking. - Added functions to set claimable amount and window, along with event emissions for state changes. - Implemented logic to check if the claim is within the user's birthday window and transfer USDC accordingly. * Refactor imports in HappyBirthday contract for better organization - Updated import statements in HappyBirthday.sol to use relative paths for ISelfVerificationRoot, SelfCircuitLibrary, and SelfVerificationConsumer. - Improved code readability and maintainability by organizing imports more logically. * Refactor Airdrop contract to use SelfVerificationConsumer for registration logic - Updated Airdrop contract to inherit from SelfVerificationConsumer instead of SelfVerificationRoot. - Refactored mappings for user identifiers and nullifiers for improved clarity and functionality. - Enhanced error handling and updated function parameters for consistency. - Implemented new validation and update methods for nullifiers, streamlining the registration process. - Removed deprecated verifySelfProof function and integrated logic into new methods. * Add events and refactor SelfVerificationRoot and related contracts - Introduced new events in SelfVerificationRoot for verification configuration updates, scope changes, and attestation ID management. - Updated Airdrop contract to remove deprecated events and added a new event for Merkle root updates. - Refactored SelfPassportERC721 to inherit from SelfVerificationConsumer, enhancing verification logic and event handling. - Improved function parameters for consistency and clarity across contracts. * Refactor contracts to use SelfVerificationRoot and enhance verification logic - Removed SelfVerificationConsumer contract and updated related contracts to inherit from SelfVerificationRoot. - Refactored mappings and event emissions in Airdrop, HappyBirthday, and SelfPassportERC721 for improved clarity and functionality. - Enhanced verification success hooks to include user identifiers and nullifiers for better tracking. - Updated constructor parameters for consistency across contracts and improved error handling for user registration and claims. * Refactor constructor in SelfPassportERC721 for improved readability * Refactor function parameters in SelfVerificationRoot and related contracts * Refactor constructor parameter names in IdentityVerificationHub, Airdrop, IdentityRegistry, and ProxyRoot contracts for improved clarity and consistency * fix getCircuitName function (#575) * fix getCircuitName function * fix getCircuitName function * feat: Read ID cards (#571) * Update GitHub checkout action from v3 to v4 (#544) * Bump build version 2.5.2 to test react native keychain (#572) * bump build and version * bump version 2.5.2 * don't downgrade react native keychain * update app/README.md toolchain instructions (#140) * bump build (#580) --------- Co-authored-by: Seshanth.S🐺 <[email protected]> Co-authored-by: turboblitz <[email protected]> Co-authored-by: motemotech <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: crStiv <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: James Niken <[email protected]> Co-authored-by: Kevin Lin <[email protected]> Co-authored-by: leopardracer <[email protected]> Co-authored-by: Olof Andersson <[email protected]> * feat(wip): register circuit for aadhaar * chore: add anon aadhar circuits * chore: remove sc and disclose selfrica test * feat: extract aadhaar qr data * test: aadhaar qr data extract circuit * test: aadhaar register circuit * feat: extract pincode and ph no last 4 digit * fix: register aadhaar nullifier and commitment * test: Verify commitment circuit of aadhaar * feat: add photoHash inside commitment * feat: build Aadhaar OFAC SMT * feat: ofac check and reveal data (test done) * test: qr extractor for custom data input * feat: add state as reveal data inside VC and disclose * chore: add comments * fix: num2Ceil component * chore: review changes * chore: use passport SignatureVerifier * fix: signatureVerifier inputs * feat: extract ascii values of fields * feat: provide users the flexibility to reveal specific characters of a field * chore: refactor * test: register aadhaar for tampered data * test(wip): should return 0 if in ofac list * test: ofac check * test: register aadhaar circuit for different qr data * merge dev into main (#683) * remove sdk/tests (#622) * remove sdk/tests * chore: update yarn.lock --------- Co-authored-by: Ayman <[email protected]> * fix: add range check on paddedInLength of shaBytesDynamic (#623) * fix ci (#626) * implement self uups upgradeable (#592) * implement self uups upgradeable * small changes in identityVerificationHubImplV2 * delete aderyn.toml * chore: add custom verifier * chnage return output * feat: use self structs and a Generic output struct * feat: add userIdentifier, nullifier, forbiddencountries to returned output * add root view functions from registry * fix: build and compilation errors * add userDefined data into selfVerificationRoot * "resolve conflicts" * fix compilation problem * fix how to register verification config * test: CustomVerifier * fix verification root and hub integration * add scope check in hub impl * replace poseidon hash to ripemd+sha256 * add todo list * feat: refactor and add test cases for generic formatter * add performUserIdentifierCheck in basicVerification * change how to handle additionalData and fix stack too deep * start adding test codes * fix dependency problems in monorepo * fix: forbidden countries (#612) LGTM! * able to run test code * pass happy path * delete unused codes * change error code name, add caller address validation and add scripts to run test and build in monorepo * add all test cases in vcAndDisclose flow * remove comment out * chore: use actual user identifier outputs * success in registration tests * cover all cases * pass contractVersion instead of circuitVersion * fix disclose test * chore: add natspecs for ImplHubV2, CustomVerifier and GenericFormatter * change val name and remove unused lines * add val name change * remove userIdentifier from return data * feat: use GenericDiscloseOutput struct in verfication hook fix test cases for user identifier * chore: change the function order for Hub Impl V2 (#625) * fix nat specs * add nat spec in SelfStructs --------- Co-authored-by: Ayman <[email protected]> Co-authored-by: Nesopie <[email protected]> * prettier (#629) * CAN auth - android (#613) * add missed files * add NFCMethodSelectionScreen * bump android build --------- Co-authored-by: Justin Hernandez <[email protected]> * feat: add MRZ correction method to NFCMethodSelectionScreen (#627) * add npm auth token env (#632) * bump sdk version (#633) * publish npm package when merging on dev * bump common sdk version * replace yarn publish by npm publish * update common package version * Simplify dev mode gesture (#635) * Simplify developer mode gesture * Enable dev mode on MockData screen with five taps * add build smt function to common sdk * update vc_and_disclose_id test (dev branch) (#641) * fix: vc_and_disclose_id test * chore: yarn prettier * Show modal on NFC scan error (#642) * Add help button and error modal actions * fix the screen management * yarn nice * Bump build v2.5.4: ios 132; android 71 (#631) * bump version and build numbers * remove tamagui/toast * fix marketing version * fix: update TD1 and TD3 checks (#643) * bum yarn.lock * Bump build: ios 133; android 72 and build fixes (#654) * update gesture version and bump android build * bump and fix ios build * update lock files * fixes * fix fotoapparat library source * Update example contracts to include EUID usage (#656) * refactor: update HappyBirthday contract to V2 with support for E-Passport and EUID cards, introduce bonus multipliers, and enhance verification logic * refactor: update Airdrop contract to V2 with support for E-Passport and EU ID Card attestations * refactor: remove BASIS_POINTS constant from Airdrop contract * feat: introduce SelfIdentityERC721 contract for issuing NFTs based on verified identity credentials, replacing SelfPassportERC721 * fix: update verification functions in Airdrop, HappyBirthday, and SelfIdentityERC721 contracts to use customVerificationHook * cherry pick commit from add-test-self-verification... * block non-dev pr to main branch * audit fixes (#645) * merge dev branch into main (#624) * remove sdk/tests (#622) * remove sdk/tests * chore: update yarn.lock --------- Co-authored-by: Ayman <[email protected]> * fix: add range check on paddedInLength of shaBytesDynamic (#623) * fix ci (#626) --------- Co-authored-by: Ayman <[email protected]> Co-authored-by: Vishalkulkarni45 <[email protected]> * update contracts (#628) * remove sdk/tests (#622) * remove sdk/tests * chore: update yarn.lock --------- Co-authored-by: Ayman <[email protected]> * fix: add range check on paddedInLength of shaBytesDynamic (#623) * fix ci (#626) * implement self uups upgradeable (#592) * implement self uups upgradeable * small changes in identityVerificationHubImplV2 * delete aderyn.toml * chore: add custom verifier * chnage return output * feat: use self structs and a Generic output struct * feat: add userIdentifier, nullifier, forbiddencountries to returned output * add root view functions from registry * fix: build and compilation errors * add userDefined data into selfVerificationRoot * "resolve conflicts" * fix compilation problem * fix how to register verification config * test: CustomVerifier * fix verification root and hub integration * add scope check in hub impl * replace poseidon hash to ripemd+sha256 * add todo list * feat: refactor and add test cases for generic formatter * add performUserIdentifierCheck in basicVerification * change how to handle additionalData and fix stack too deep * start adding test codes * fix dependency problems in monorepo * fix: forbidden countries (#612) LGTM! * able to run test code * pass happy path * delete unused codes * change error code name, add caller address validation and add scripts to run test and build in monorepo * add all test cases in vcAndDisclose flow * remove comment out * chore: use actual user identifier outputs * success in registration tests * cover all cases * pass contractVersion instead of circuitVersion * fix disclose test * chore: add natspecs for ImplHubV2, CustomVerifier and GenericFormatter * change val name and remove unused lines * add val name change * remove userIdentifier from return data * feat: use GenericDiscloseOutput struct in verfication hook fix test cases for user identifier * chore: change the function order for Hub Impl V2 (#625) * fix nat specs * add nat spec in SelfStructs --------- Co-authored-by: Ayman <[email protected]> Co-authored-by: Nesopie <[email protected]> * prettier (#629) --------- Co-authored-by: Ayman <[email protected]> Co-authored-by: Vishalkulkarni45 <[email protected]> Co-authored-by: nicoshark <[email protected]> Co-authored-by: Nesopie <[email protected]> * fix: vc_and_disclose_id test (#640) * fix: vc_and_disclose_id test * chore: yarn prettier * fix: check if a config id exists * chore: change the function where the config not set verification is happening * fix: add await * feat: add getConfigId function in SelfVerificationRoot (#650) * feat: add getConfigId function in SelfVerificationRoot * update comment --------- Co-authored-by: motemotech <[email protected]> * chore: fix ofac end index in eu id cards * chore: fix tests * fix: example contracts and tests --------- Co-authored-by: turnoffthiscomputer <[email protected]> Co-authored-by: Vishalkulkarni45 <[email protected]> Co-authored-by: nicoshark <[email protected]> * Update deployment module for Identity Verification Hub V2 with detailed documentation and library linkage for CustomVerifier. Update initialization process to reflect changes in V2 implementation, ensuring proper setup for proxy deployment. (#658) * publish npm-package (#651) * App/eu id updates (#638) * fix build issues * generate disclosure proof with euids * generate disclosure proof with euids * Eu id updates 2 (#648) * update vc_and_disclose_id test (dev branch) (#641) * fix: vc_and_disclose_id test * chore: yarn prettier * Show modal on NFC scan error (#642) * Add help button and error modal actions * fix the screen management * yarn nice * Bump build v2.5.4: ios 132; android 71 (#631) * bump version and build numbers * remove tamagui/toast * fix marketing version * fix: update TD1 and TD3 checks (#643) * bum yarn.lock * add version and user defined data --------- Co-authored-by: Vishalkulkarni45 <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Seshanth.S🐺 <[email protected]> * remove the mock user define data * get the useridentifier as a hash from the user defined data * chore: add version and userDefinedData * feat: use the version in register / dsc proofs as well * update calculateUserIdentifierHash * yarn nice * refactor: consolidate user context data handling and update payload structure * fix typing issues on sha1 * remove console.log(sha1) * fix sha1 import * refactor: streamline userDefinedData handling and adjust payload type for circuit * refactor: update sha1 usage and enhance logging in calculateUserIdentifierHash * yarn nice * yarn lint common * use ts-ignore for sha1 import * fix app ci tests * fix typing issue * remove unused ts-ignore * cast uuid before calling generateinputs * bump qrcode version * add tsup on the qrcode sdk * fix: exports on selfxyz/qrcode * update how we define config.version * fix yarn imports * yarn format --------- Co-authored-by: Vishalkulkarni45 <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Seshanth.S🐺 <[email protected]> Co-authored-by: Ayman <[email protected]> * Hotfix contract compile error (#660) * Fix previous rebase error * Refactor deployment module for Identity Verification Hub V2. * Fix/sdk (#652) * fix: sdk build configs * chore: SelfBackendVerifier (WIP) * feat: add custom verification * feat: consider destination chain in user defined data * chore: export attestation id * chore: export attestation id * chore: export config storage * chore: don't throw an error if the proof is not valid * chore: trim abi and rm typechain types * refactor * chore: rm unnecessary exports * 📝 Add docstrings to `fix/sdk` (#653) Docstrings generation was requested by @remicolin. * https://github.com/selfxyz/self/pull/652#issuecomment-2992046545 The following files were modified: * `sdk/core/src/utils/hash.ts` * `sdk/core/src/utils/proof.ts` * `sdk/core/src/utils/utils.ts` Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> * review fixes * chore: fix package.json cjs types * chore: add minor changes to checks * feat: add InMemoryConfigStore, allIds constant and verificationResult type * chore: export Verification config * feat: change the verification config types * fix: throw issues early if verification config is null * fix: update yarn.lock file * chore: lint * fix: rm ts expect error directive * fix: contract tests * use excluded countries instead forbidden countries list * chore: change types in constnats --------- Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> * Update npm-publish workflow and bump core package version to 1.0.0 (#661) * update import * Update get verification config visibility (#664) * Update deployment module for Identity Verification Hub V2 to correct file paths and module name for deployment commands. * Add troubleshooting documentation for verification issues in deployHubV2.ts. Include manual verification steps and common failure reasons to assist users during deployment. * Change visibility of getVerificationConfigV2 function from internal to public in IdentityVerificationHubImplV2 contract to allow external access. * Apply BUSL v1.1 license headers to app (#665) * Add BSL license headers to app sources * prettier * fix license reference - https://spdx.org/licenses/BUSL-1.1.html * bump build: android 73 (#659) * Contracts/deploy staging (#668) * update scripts * deploy vc and disclose id * fix the deployment scripts on staging * update yarn.lock * bump ios build and version (#669) * configure coderabbitai (#670) * tweak coderabbit * bump * more thorough test spec * Apply BSL to app codebase (#639) * Clean up root license wording * Simplify SPDX header * simplify license and rename BSL to BUSL * fix merge issues * fix missing method --------- Co-authored-by: Justin Hernandez <[email protected]> * SEL-423 apply xcode build suggestions (#671) * apply recommended app settings from xcode * stick to portrait orientation and update target settings * remove app clip references * Circuit audit fixes (#644) * feat: add range checks before use of LessEqThan and SelectSubArray * fix: Num2Bits_strict to constrain virtualKey * bump core version * bump core version and fix ci * chore: use npm_auth_token in yarnrc * chroe: rm yarnrc changes * chore: update npm publish * chore: run npm publish manually * chore: change hub contract address (#675) * Update npm-publish.yml * chore: use proper secret when publishing * feat: enable publishing if workflow was triggered manually * Contracts/update verifier (#673) * update hardhat config * update vc and disclose verifier * update vc and disclose verifier script and run it * update test self verification root * update verifier * bump sdk version and use new hub address * chore: update zk-kit binary merkle root dep (#674) * refactor deployment scripts (#678) * feat: add register eu id instances (#682) * feat: add register eu id instances * feat: add new instances * chore: update scripts * chore: fix sig alg * chore: rm circuits --------- Co-authored-by: Ayman <[email protected]> Co-authored-by: Vishalkulkarni45 <[email protected]> Co-authored-by: nicoshark <[email protected]> Co-authored-by: Nesopie <[email protected]> Co-authored-by: Seshanth.S🐺 <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Kevin Lin <[email protected]> Co-authored-by: kevinsslin <[email protected]> Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> Co-authored-by: Eric Nakagawa <[email protected]> * fix: commitment hash * fix: register aadhaar test * chore: refactor * feat: reveal data in packed bytes * feat: add constrain on delimiterIndices * feat: reveal timestamp * merge main to feat/aadhaar * fix: tests * feat: hash pubKey * feat: add registry contract * feat: Update HubImplV2 (WIP) * add functions to generate aadhaar data (WIP) * modularize aadhaar data generation (WIP) * fix(wip): register test * fix: test qr extractor * fix * chore: refactor functions * feat: add age extractor and tested * feat: add isMiniumAge check * fix: prepareAadhaarTestData func * registry contract tests * feat: registry contract tests * feat: extract fields from qr data bytes * chore: refactor mockData * feat: move minimum age to revealPackedData * feat: create a constant.ts to retrive fields from unpacked bytes * chore: refactor * fix: exports * rebase * rebase * feat: add public signal ,indices mapping * chore: add public output to indices mapping * fix:AADHAAR_PUBLIC_SIGNAL_INDICES * feat: make nullifier public * fix: nullifier cal for disclose circuits * feat: merge isMiniumAgeValid and miniumAge signal * fix: disclsoe test * feat: support for user identifier and secret * chore :refactor * feat: ofac test last name , firstname * feat: add forbidden_countries_list check * feat: add tests for aadhaar (WIP) * failing ofac tests * feat: finish contract tests * fix: merge conflicts * update the common package to be usable in circuits and contracts * lint everything * coderabbit fixes * chore: update name dob,yob aadhaar ofac tree * feat: merge ofac and reverse ofac check into one * test: merged ofac constrain * SELF-253 feat: add user email feedback (#889) * feat: add sentry feedback * add sentry feedback to web * feat: add custom feedback modal & fix freeze on IOS * yarn nice * update lock * feat: show feedback widget on NFC scan issues (#948) * feat: show feedback widget on NFC scan issues * fix ref * clean up * fix report issue screen * abstract send user feedback email logic * fixes * change text to Report Issue * sanitize email and track event messge * remove unnecessary sanitization * add sanitize error message tests * fix tests * save wip. almost done * fix screen test * fix screen test * remove non working test --------- Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> * chore: centralize license header checks (#952) * chore: centralize license header scripts * chore: run license header checks from root * add header to other files * add header to bundle * add migration script and update check license headers * convert license to mobile sdk * migrate license headers * remove headers from common; convert remaining * fix headers * add license header checks * update unsupported passport screen (#953) * update unsupported passport screen * yarn nice * feat: support new ofac trees * fix: qr extractor tests * chore: remove unassigned age signal * chore: modify timestamp func comment * fix: add constrain on photo bytes delimiter * fix: add range check on minimumAge within 2^7 * fix: range check for country not in list * chore: remove dummy constrain * fix: assert lessthan * fix: check is photoEOI valid * fix: replace maxDataLength with qrPaddedLength for valid del indices * feat: update forbidden countries in disclose and disclose id * feat: convert name to uppercase * fix: add constrain between delimiter and photoEOI * feat: support for phno len 4 and 10 * chore: hard-code attestaion_ID to 3 * feat: calculate nullifier using uppercase name * feat: add real id support * fix: rebase error * chore: refactor * add new nullifier and commitment calc * fix: reuse uppercase name from verify commitment * feat: add a function that will iterate though all pubkeys * chore: skip real id test * chore: yarn format * chore: update yarn.lock * chore: rm trailing / from import * chore: add support for issuing state * chore: linting and types * chore: rm types script from circuits * chore: add license header --------- Co-authored-by: nicoshark <[email protected]> Co-authored-by: turnoffthiscomputer <[email protected]> Co-authored-by: Seshanth.S🐺 <[email protected]> Co-authored-by: turboblitz <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: crStiv <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: James Niken <[email protected]> Co-authored-by: Kevin Lin <[email protected]> Co-authored-by: leopardracer <[email protected]> Co-authored-by: Olof Andersson <[email protected]> Co-authored-by: vishal <[email protected]> Co-authored-by: Vishalkulkarni45 <[email protected]> Co-authored-by: kevinsslin <[email protected]> Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com> Co-authored-by: Eric Nakagawa <[email protected]> * fix: CLA not supported (#1027) * fix: CLA not supported * fix "yarn android" building * remove unnecessary commands --------- Co-authored-by: Justin Hernandez <[email protected]> * chore: bump app version v2.6.5 (#1034) * update gem lock * bump build and version * fix app versions * chore: fix nfc passport reader private repo access (#1042) * add internal repo pat * update nfc passport reader location * update workflows to use PAT to access NFC Passport Reader * fix ci * update logic to access private repo * build(android): support 16KB page size (#1043) * build(android): support 16KB page size * fix 16kb * update lock * chore: bump v2.6.5 for release (#1036) * bump build * update to ssh clone to fix local build * update podfile lock * fix version * Feat/build aadhaar (#1044) * feat: build aadhaar circuits as well in the ci * feat: add register aadhaar case handling * fix aadhaar register output after building the cpp circuit (#1045) * fix: metro js crypto module build issues (#1047) * fix sdk build issues * fix build error * sort and fix dependencies * add constants-browserify * feat: add new verifiers (#1049) * feat: add new verifiers * format: contracts * fix: ofac check to aadhaar (#1050) * fix: hub-v2 (#1051) * Add DisclosureVerified event for comprehensive verification tracking (#945) * Add VerificationPerformed event to track verification calls - Added VerificationPerformed event with comprehensive tracking fields - Captures requestor contract, version, attestation ID, chain ID, config ID, user identifier, output, and user data - Enhanced _executeVerificationFlow to return additional tracking data - Event emission placed after verification completion for accurate tracking * chore: run formatter * chore: rename verify event name to DisclosureVerified * move clearPassportData, markCurrentDocumentAsRegistered, reStorePassportDataWithRightCSCA to SDK (#1041) * Move self app store to mobile sdk (#1040) * chore(mobile-sdk-alpha): remove unused tslib dependency (#1053) * remove tslib -- seems unused * remove deps accidentally added to root * build file * remove unused imports (#1055) * fix: sha256 signed attr tests (#1058) * fix mock screen launch (#1059) * Hotfix: Belgium ID cards (#1061) * feat: parse belgium TD1 mrz android * feat: Parse Belgium TD1 MRZ IOS * fix: OFAC trees not found (#1060) * fix: relax OFAC tree response validation * test: cover OFAC tree edge cases * fix stateless * revert and fix types * fix tests * [SELF-723] feat: add structured NFC and Proof logging (#1048) * feat: add structured NFC logging * fix ci * Fix: add deps * logging fixes. use breadcrumbs * fix android build * update SeverityLevel * [SELF-705] feat: add proof event logging (#1057) * feat: add proof event logging * refactor: unify sentry event logging * fix types * fix mock * simplify * code rabbit feedback * fix tests --------- Co-authored-by: seshanthS <[email protected]> * skip on dev (#1063) * don't get fancy just disable (#1064) * saw it building so gonna try (#1065) * Dev (#1074) * chore: bump v2.6.5 rd2 (#1067) * commit wip version bump * remove from building * chore: update tooling dependencies (#1069) * chore: update tooling dependencies * chore: align react typings and node types * update lock * chore: minor fixes across monorepo (#1068) * small fixes * fixes * fix gesture handler error * ci fixes * fix yarn build; add workflow ci (#1075) * add new workspace ci * disable package version check for now * build before checks * format * fix in future pr * feat: add functions for disclosing aadhaar attributes (#1033) * feat: add functions for disclosing aadhaar attributes * format * chore: update monorepo artifacts (#1079) * remove unneeded artifacts, skip building circuits * update md files * cleans up unused parts of sdk interface, adds inline documentation, (#1078) * cleans up unused parts of sdk interface, adds inline documentation, * fix up build * yolo * Feat/aadhaar sdk (#1082) * feat: add aadhaar support to the ts sdk * feat: aadhaar support to go sdk * chore: refactor * move clearPassportData, markCurrentDocumentAsRegistered, reStorePassportDataWithRightCSCA to SDK (#1041) * Move self app store to mobile sdk (#1040) * chore(mobile-sdk-alpha): remove unused tslib dependency (#1053) * remove tslib -- seems unused * remove deps accidentally added to root * build file * remove unused imports (#1055) * fix: sha256 signed attr tests (#1058) * fix mock screen launch (#1059) * Hotfix: Belgium ID cards (#1061) * feat: parse belgium TD1 mrz android * feat: Parse Belgium TD1 MRZ IOS * fix: OFAC trees not found (#1060) * fix: relax OFAC tree response validation * test: cover OFAC tree edge cases * fix stateless * revert and fix types * fix tests * [SELF-723] feat: add structured NFC and Proof logging (#1048) * feat: add structured NFC logging * fix ci * Fix: add deps * logging fixes. use breadcrumbs * fix android build * update SeverityLevel * [SELF-705] feat: add proof event logging (#1057) * feat: add proof event logging * refactor: unify sentry event logging * fix types * fix mock * simplify * code rabbit feedback * fix tests --------- Co-authored-by: seshanthS <[email protected]> * skip on dev (#1063) * don't get fancy just disable (#1064) * saw it building so gonna try (#1065) * chore: bump v2.6.5 rd2 (#1067) * commit wip version bump * remove from building * chore: update tooling dependencies (#1069) * chore: update tooling dependencies * chore: align react typings and node types * update lock * chore: minor fixes across monorepo (#1068) * small fixes * fixes * fix gesture handler error * ci fixes * fix yarn build; add workflow ci (#1075) * add new workspace ci * disable package version check for now * build before checks * format * fix in future pr * feat: add functions for disclosing aadhaar attributes (#1033) * feat: add functions for disclosing aadhaar attributes * format * chore: update monorepo artifacts (#1079) * remove unneeded artifacts, skip building circuits * update md files * chore: update hub contract address * format * fix: add aadhaar in AllIds * chore: bump to v1.1.0-beta --------- Co-authored-by: vishal <[email protected]> Co-authored-by: Leszek Stachowski <[email protected]> Co-authored-by: Aaron DeRuvo <[email protected]> Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Seshanth.S🐺 <[email protected]> Co-authored-by: seshanthS <[email protected]> * feat: change to gcp attestation verification (#959) * feat: change to gcp attestation verification * lint * fix e2e test * chore: don't check PCR0 mapping if building the app locally * fmt:fix --------- Co-authored-by: Justin Hernandez <[email protected]> * Mobile SDK: move provingMachine from the app (#1052) * Mobile SDK: move provingMachine from the app * lint, fixes * fix web build? * lint * fix metro build, add deps * update lock files * move the status handlers and proving machine tests * may it be * fix up * yolo --------- Co-authored-by: Justin Hernandez <[email protected]> Co-authored-by: Aaron DeRuvo <[email protected]> * Revert "Mobile SDK: move provingMachine from the app (#1052)" (#1084) This reverts commit 8983ac22688f731bca8890cbf9be9c85b4ac2bf…
Summary by CodeRabbit
New Features
Improvements
Documentation
Tests
Chores