Files
pyre/apps/web
RogueWave 2101e18b3e feat(phase1): wallet scanner — scan API, classifier, token fetch, web UI
- @pyre/core: conservative classifier (classifyTokenAccount) + types + risk
  constants. EMPTY only when truly empty + classic-SPL + not frozen/delegated;
  Token-2022/unknown → UNSUPPORTED; frozen/delegated/NFT/valuable/over-threshold
  → PROTECTED_SKIP; TRANSMUTABLE only via explicit route hook (none in MVP).
  43 unit tests incl. a "never says safe" assertion.
- @pyre/solana: parseTokenAccounts (SPL + Token-2022 detection, NFT heuristic,
  rent, defensive owner cross-check) + tests. Tx builders remain Phase-2 stubs.
- @pyre/config: loadConfig() from env.
- @pyre/api: POST /api/scan — validates pubkey, recomputes classification
  server-side, CORS + rate-limit; DB persistence deferred. Live-RPC smoke OK.
- @pyre/web: wallet-connect (Wallet Standard) + grouped scan UI, ember theme,
  trust wording (no "safe"); next.config transpiles @pyre/core; prod build OK.

Built by 4 agents on a locked core contract; 2 audit agents (security: SOUND;
build: 1 blocker → fixed). Stripped .js import extensions in @pyre/core so
Turbopack resolves the source package. All typecheck + tests + build green.

Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
2026-05-31 03:10:52 +00:00
..

@pyre/web

User-facing PYRE web app. Skeleton only — no wallet or business logic is implemented yet (see CLAUDE.md and §13 of the design doc).

Stack: Next.js (App Router) + TypeScript + Tailwind + Solana Wallet Adapter + React Query.

Responsibilities (§13)

  • Landing page
  • Wallet connect (Solana Wallet Adapter)
  • Scanner UI — display token accounts and classification grouping
  • Cleanup preview — accounts to close, tokens to burn, rent returned, fees, warnings, rent destination (decode tx and match against preview before signing)
  • Receipt page — tx signature, accounts closed, tokens burned, rent returned, skipped accounts
  • Prometheus generation preview — Spawn name/ticker/lore/image-prompt review
  • Admin review page — approve/reject generated Spawn packages

Trust rules (do not weaken)

  • PYRE never holds private keys; all signing is client-side in the user's wallet.
  • Always show a preview and match the decoded transaction against it before requesting a signature.
  • Recovered ATA rent returns to the user by default.

TODO

  • Tailwind + PostCSS config and global styles
  • WalletAdapter / React Query providers
  • Scanner page wired to POST /api/scan
  • Cleanup preview + transaction decode/match UI
  • Sign flow via wallet adapter
  • Receipt page wired to POST /api/receipt
  • Prometheus generation preview + admin review pages

Scripts

  • devnext dev
  • buildnext build
  • typechecktsc --noEmit
  • lint / test — placeholders for now