Repository navigation
Require private settlement and preserve Chat payment recovery - #5
Merged
Merged
Conversation
gstohl
marked this pull request as ready for review
September 7, 2026 23:18
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
New RFQ and Chat offer settlements could expose amounts through public funding/OPEN outputs or send only one side of a swap. Current app, SDK, operator and localnet entrypoints now reject those paths before wallet, proof or funding side effects. The default RFQ page shows confidential availability; earlier maker inventory, claims/refunds and receipt reconciliation remain recoverable.
Chat payments now pair an encrypted transfer with an unfunded, proof-bound encrypted memo using a fixed helper token argument. Payment submission snapshots reviewed actions across callbacks, and an unknown wallet response preserves the payment attempt fence. Confidential escrow remains development-only: real STARK proofs, independent wallet support and mainnet activation are still pending. Historical mainnet contracts and receipts cannot be changed by this release.
New Chat invoices bind their network before sharing. Imported links reconcile with older network-scoped records without weakening term checks or clearing payment fences. Renamed the component directory and stylesheet to
src/components/chatandchat.module.css, updating imports and documentation.Updated capability metadata, guides and browser regressions; lazy-loaded Chat to keep the production entry within its existing bundle budget. Artifacts remain fully ignored.
Validation completed locally: