-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy path.coderabbit.yaml
More file actions
31 lines (31 loc) · 1.17 KB
/
Copy path.coderabbit.yaml
File metadata and controls
31 lines (31 loc) · 1.17 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
language: en-US
early_access: false
reviews:
profile: assertive
high_level_summary: true
poem: false
review_status: false
changed_files_summary: false
collapse_walkthrough: true
auto_review:
enabled: true
drafts: false
path_filters:
- "!**/build/**"
- "!**/.dart_tool/**"
- "!**/Pods/**"
- "!ios/Runner.xcworkspace/**"
- "!android/.gradle/**"
path_instructions:
- path: "lib/wallet/**"
instructions: |
Self-custody wallet — secret key material lives here.
- Secrets NEVER logged (no print(privateKey), no debugPrint(seed), no Sentry/Crashlytics capture of mnemonic).
- Key derivation MUST use cryptographic RNG (Random.secure(), NOT Random()).
- Zeroize secret buffers when no longer needed (clear() before garbage collection).
- Display formatters must redact private_key and seed (custom toString that returns "[REDACTED]").
- path: "lib/screens/sign*/**"
instructions: |
Transaction signing surface. User MUST see the exact tx hex + decoded fields before signing — no pre-approval shortcuts. EIP-712 typed-data must show the full domain + message struct.
chat:
auto_reply: true