2020-08-07 21:28:23 +02:00
/*global Web3*/
Connect distinct accounts per site (#7004)
* add PermissionsController
remove provider approval controller
integrate rpc-cap
create PermissionsController
move provider approval functionality to permissions controller
add permissions approval ui, settings page
add permissions activity and history
move some functionality to metamask-inpage-provider
rename siteMetadata -> domainMetadata
add accountsChange notification to inpage provider
move functionality to inpage provider
update inpage provider
Remove 'Connections' settings page (#7369)
add hooks for exposing accounts in settings
rename unused messages in non-English locales
Add external extension id to metadata (#7396)
update inpage provider, rpc-cap
add eth_requestAccounts handling to background
prevent notifying connections if extension is locked
update inpage provider
Fix lint errors
add migration
review fixes
transaction controller review updates
removed unused messages
* Login Per Site UI (#7368)
* LoginPerSite original UI changes to keep
* First commit
* Get necessary connected tab info for redirect and icon display for permissioned sites
* Fix up designs and add missing features
* Some lint fixes
* More lint fixes
* Ensures the tx controller + tx-state-manager orders transactions in the order they are received
* Code cleanup for LoginPerSite-ui
* Update e2e tests to use new connection flow
* Fix display of connect screen and app header after login when connect request present
* Update metamask-responsive-ui.spec for new item in accounts dropdown
* Fix approve container by replacing approvedOrigins with domainMetaData
* Adds test/e2e/permissions.spec.js
* Correctly handle cancellation of a permissions request
* Redirect to home after disconnecting all sites / cancelling all permissions
* Fix display of site icons in menu
* Fix height of permissions page container
* Remove unused locale messages
* Set default values for openExternalTabs and tabIdOrigins in account-menu.container
* More code cleanup for LoginPerSite-ui
* Use extensions api to close tab in permissions-connect
* Remove unnecessary change in domIsReady() in contentscript
* Remove unnecessary private function markers and class methods (for background tab info) in metamask-controller.
* Adds getOriginOfCurrentTab selector
* Adds IconWithFallback component and substitutes for appropriate cases
* Add and utilize font mixins
* Remove unused method in disconnect-all.container.js
* Simplify buttonSizeLarge code in page-container-footer.component.js
* Add and utilize getAccountsWithLabels selector
* Remove console.log in ui/app/store/actions.js
* Change last connected time format to yyyy-M-d
* Fix css associated with IconWithFallback change
* Ensure tracked openNonMetamaskTabsIDs are correctly set to inactive on tab changes
* Code cleanup for LoginPerSite-ui
* Use reusable function for modifying openNonMetamaskTabsIDs in background.js
* Enables automatic switching to connected account when connected domain is open
* Prevent exploit of tabIdOriginMap in background.js
* Remove unneeded code from contentscript.js
* Simplify current tab origin and window opener logic using remotePort listener tabs.queryTabs
* Design and styling fixes for LoginPerSite-ui
* Fix permissionHistory and permission logging for eth_requestAccounts and eth_accounts
* Front end changes to support display of lastConnected time in connected and permissions screens
* Fix lint errors
* Refactor structure of permissionsHistory
* Fix default values and object modifications for domain and permissionsHistory related data
* Fix connecting to new accounts from modal
* Replace retweet.svg with connect-white.svg
* Fix signature-request.spec
* Update metamask-inpage-provider version
* Fix permissions e2e tests
* Remove unneeded delay from test/e2e/signature-request.spec.js
* Add delay before attempting to retrieve network id in dapp in ethereum-on=.spec
* Use requestAccountTabIds strategy for determining tab id that opened a given window
* Improve default values for permissions requests
* Add some message descriptions to app/_locales/en/messages.json
* Code clean up in permission controller
* Stopped deep cloning object in mapObjectValues
* Bump metamask-inpage-provider version
* Add missing description in app/_locales/en/messages.json
* Return promises from queryTabs and switchToTab of extension.js
* Remove unused getAllPermissions function
* Use default props in icon-with-fallback.component.js
* Stop passing to permissions controller
* Delete no longer used clear-approved-origins modal code
* Remove duplicate imports in ui/app/components/app/index.scss
* Use URL instead of regex in getOriginFromUrl()
* Add runtime error checking to platform, promise based extension.tab methods
* Support permission requests from external extensions
* Improve font size and colour of the domain origin on the permission confirmation screen
* Add support for toggling permissions
* Ensure getRenderablePermissionsDomains only returns domains with exposedAccount caveat permissions
* Remove unused code from LoginPerSite-ui branch
* Ensure modal closes on Enter press for new-account-modal.component.js
* Lint fix
* fixup! Login Per Site UI (#7368)
* Some code cleanup for LoginPerSite
* Adds UX for connecting to dapps via the connected sites screen (#7593)
* Adds UX for connecting to dapps via the connected sites screen
* Use openMetaMaskTabIds from background.js to determine if current active tab is MetaMask
* Delete unused permissions controller methods
* Fixes two small bugs in the LoginPerSite ui (#7595)
* Restore `providerRequest` message translations (#7600)
This message was removed, but it was replaced with a very similar
message called `likeToConnect`. The only difference is that the new
message has "MetaMask" in it. Preserving these messages without
"MetaMask" is probably better than deleting them, so these messages
have all been restored and renamed to `likeToConnect`.
* Login per site no sitemetadata fix (#7610)
* Support connected sites for which we have no site metadata.
* Change property containing subtitle info often populated by origin to a more accurate of purpose name
* Lint fix
* Improve disconnection modal messages (#7612)
* Improve disconnectAccountModalDescription and disconnectAllModalDescription messages
* Update disconnectAccountModalDescription app/_locales/en/messages.json
Co-Authored-By: Mark Stacey <markjstacey@gmail.com>
* Improve disconnectAccount modal message clarity
* Adds cancel button to the account selection screen of the permissions request flow (#7613)
* Fix eth_accounts permission language & selectability (#7614)
* fix eth_accounts language & selectability
* fix MetaMask capitalization in all messages
* Close sidebar when opening connected sites (#7611)
The 'Connected Sites' button in the accounts details now closes the
sidebar, if it is open. This was accomplished by pulling the click
handler for that button up to the wallet view component, where another
button already followed a similar pattern of closing the sidebar.
It seemed confusing to me that one handler was in the `AccountsDetails`
container component, and one was handed down from above, so I added
PropTypes to the container component.
I'm not sure that the WalletView component is the best place for this
logic, but I've put it there for now to be consistent with the add
token button.
* Reject permissions request upon tab close (#7618)
Permissions requests are now rejected when the page is closed. This
only applies to the full-screen view, as that is the view permission
requests should be handled in. The case where the user deals with the
request through a different view is handled in #7617
* Handle tab update failure (#7619)
`extension.tabs.update` can sometimes fail if the user interacts with
the tabs directly around the same time. The redirect flow has been
updated to ensure that the permissions tab is still closed in that
case. The user is on their own to find the dapp tab again in that case.
* Login per site tab popup fixes (#7617)
* Handle redirect in response to state update in permissions-connect
* Ensure origin is available to permissions-connect subcomponents during redirect
* Hide app bar whenever on redirect route
* Improvements to handling of redirects in permissions-connect
* Ensure permission request id change handling only happens when page is not null
* Lint fix
* Decouple confirm transaction screen from the selected address (#7622)
* Avoid race condtion that could prevent contextual account switching (#7623)
There was a race condition in the logic responsible for switching the
selected account based upon the active tab. It was asynchronously
querying the active tab, then assuming it had been retrieved later.
The active tab info itself was already in the redux store in another
spot, one that is guaranteed to be set before the UI renders. The
race condition was avoided by deleting the duplicate state, and using
the other active tab state.
* Only redirect back to dapp if current tab is active (#7621)
The "redirect back to dapp" behaviour can be disruptive when the
permissions connect tab is not active. The purpose of the redirect was
to maintain context between the dapp and the permissions request, but
if the user has already moved to another tab, that no longer applies.
* Fix JSX style lint errors
* Remove unused state
2019-12-03 18:35:56 +01:00
2020-04-29 02:14:51 +02:00
// TODO:deprecate:2020
2020-08-07 21:28:23 +02:00
// Delete this file
Connect distinct accounts per site (#7004)
* add PermissionsController
remove provider approval controller
integrate rpc-cap
create PermissionsController
move provider approval functionality to permissions controller
add permissions approval ui, settings page
add permissions activity and history
move some functionality to metamask-inpage-provider
rename siteMetadata -> domainMetadata
add accountsChange notification to inpage provider
move functionality to inpage provider
update inpage provider
Remove 'Connections' settings page (#7369)
add hooks for exposing accounts in settings
rename unused messages in non-English locales
Add external extension id to metadata (#7396)
update inpage provider, rpc-cap
add eth_requestAccounts handling to background
prevent notifying connections if extension is locked
update inpage provider
Fix lint errors
add migration
review fixes
transaction controller review updates
removed unused messages
* Login Per Site UI (#7368)
* LoginPerSite original UI changes to keep
* First commit
* Get necessary connected tab info for redirect and icon display for permissioned sites
* Fix up designs and add missing features
* Some lint fixes
* More lint fixes
* Ensures the tx controller + tx-state-manager orders transactions in the order they are received
* Code cleanup for LoginPerSite-ui
* Update e2e tests to use new connection flow
* Fix display of connect screen and app header after login when connect request present
* Update metamask-responsive-ui.spec for new item in accounts dropdown
* Fix approve container by replacing approvedOrigins with domainMetaData
* Adds test/e2e/permissions.spec.js
* Correctly handle cancellation of a permissions request
* Redirect to home after disconnecting all sites / cancelling all permissions
* Fix display of site icons in menu
* Fix height of permissions page container
* Remove unused locale messages
* Set default values for openExternalTabs and tabIdOrigins in account-menu.container
* More code cleanup for LoginPerSite-ui
* Use extensions api to close tab in permissions-connect
* Remove unnecessary change in domIsReady() in contentscript
* Remove unnecessary private function markers and class methods (for background tab info) in metamask-controller.
* Adds getOriginOfCurrentTab selector
* Adds IconWithFallback component and substitutes for appropriate cases
* Add and utilize font mixins
* Remove unused method in disconnect-all.container.js
* Simplify buttonSizeLarge code in page-container-footer.component.js
* Add and utilize getAccountsWithLabels selector
* Remove console.log in ui/app/store/actions.js
* Change last connected time format to yyyy-M-d
* Fix css associated with IconWithFallback change
* Ensure tracked openNonMetamaskTabsIDs are correctly set to inactive on tab changes
* Code cleanup for LoginPerSite-ui
* Use reusable function for modifying openNonMetamaskTabsIDs in background.js
* Enables automatic switching to connected account when connected domain is open
* Prevent exploit of tabIdOriginMap in background.js
* Remove unneeded code from contentscript.js
* Simplify current tab origin and window opener logic using remotePort listener tabs.queryTabs
* Design and styling fixes for LoginPerSite-ui
* Fix permissionHistory and permission logging for eth_requestAccounts and eth_accounts
* Front end changes to support display of lastConnected time in connected and permissions screens
* Fix lint errors
* Refactor structure of permissionsHistory
* Fix default values and object modifications for domain and permissionsHistory related data
* Fix connecting to new accounts from modal
* Replace retweet.svg with connect-white.svg
* Fix signature-request.spec
* Update metamask-inpage-provider version
* Fix permissions e2e tests
* Remove unneeded delay from test/e2e/signature-request.spec.js
* Add delay before attempting to retrieve network id in dapp in ethereum-on=.spec
* Use requestAccountTabIds strategy for determining tab id that opened a given window
* Improve default values for permissions requests
* Add some message descriptions to app/_locales/en/messages.json
* Code clean up in permission controller
* Stopped deep cloning object in mapObjectValues
* Bump metamask-inpage-provider version
* Add missing description in app/_locales/en/messages.json
* Return promises from queryTabs and switchToTab of extension.js
* Remove unused getAllPermissions function
* Use default props in icon-with-fallback.component.js
* Stop passing to permissions controller
* Delete no longer used clear-approved-origins modal code
* Remove duplicate imports in ui/app/components/app/index.scss
* Use URL instead of regex in getOriginFromUrl()
* Add runtime error checking to platform, promise based extension.tab methods
* Support permission requests from external extensions
* Improve font size and colour of the domain origin on the permission confirmation screen
* Add support for toggling permissions
* Ensure getRenderablePermissionsDomains only returns domains with exposedAccount caveat permissions
* Remove unused code from LoginPerSite-ui branch
* Ensure modal closes on Enter press for new-account-modal.component.js
* Lint fix
* fixup! Login Per Site UI (#7368)
* Some code cleanup for LoginPerSite
* Adds UX for connecting to dapps via the connected sites screen (#7593)
* Adds UX for connecting to dapps via the connected sites screen
* Use openMetaMaskTabIds from background.js to determine if current active tab is MetaMask
* Delete unused permissions controller methods
* Fixes two small bugs in the LoginPerSite ui (#7595)
* Restore `providerRequest` message translations (#7600)
This message was removed, but it was replaced with a very similar
message called `likeToConnect`. The only difference is that the new
message has "MetaMask" in it. Preserving these messages without
"MetaMask" is probably better than deleting them, so these messages
have all been restored and renamed to `likeToConnect`.
* Login per site no sitemetadata fix (#7610)
* Support connected sites for which we have no site metadata.
* Change property containing subtitle info often populated by origin to a more accurate of purpose name
* Lint fix
* Improve disconnection modal messages (#7612)
* Improve disconnectAccountModalDescription and disconnectAllModalDescription messages
* Update disconnectAccountModalDescription app/_locales/en/messages.json
Co-Authored-By: Mark Stacey <markjstacey@gmail.com>
* Improve disconnectAccount modal message clarity
* Adds cancel button to the account selection screen of the permissions request flow (#7613)
* Fix eth_accounts permission language & selectability (#7614)
* fix eth_accounts language & selectability
* fix MetaMask capitalization in all messages
* Close sidebar when opening connected sites (#7611)
The 'Connected Sites' button in the accounts details now closes the
sidebar, if it is open. This was accomplished by pulling the click
handler for that button up to the wallet view component, where another
button already followed a similar pattern of closing the sidebar.
It seemed confusing to me that one handler was in the `AccountsDetails`
container component, and one was handed down from above, so I added
PropTypes to the container component.
I'm not sure that the WalletView component is the best place for this
logic, but I've put it there for now to be consistent with the add
token button.
* Reject permissions request upon tab close (#7618)
Permissions requests are now rejected when the page is closed. This
only applies to the full-screen view, as that is the view permission
requests should be handled in. The case where the user deals with the
request through a different view is handled in #7617
* Handle tab update failure (#7619)
`extension.tabs.update` can sometimes fail if the user interacts with
the tabs directly around the same time. The redirect flow has been
updated to ensure that the permissions tab is still closed in that
case. The user is on their own to find the dapp tab again in that case.
* Login per site tab popup fixes (#7617)
* Handle redirect in response to state update in permissions-connect
* Ensure origin is available to permissions-connect subcomponents during redirect
* Hide app bar whenever on redirect route
* Improvements to handling of redirects in permissions-connect
* Ensure permission request id change handling only happens when page is not null
* Lint fix
* Decouple confirm transaction screen from the selected address (#7622)
* Avoid race condtion that could prevent contextual account switching (#7623)
There was a race condition in the logic responsible for switching the
selected account based upon the active tab. It was asynchronously
querying the active tab, then assuming it had been retrieved later.
The active tab info itself was already in the redux store in another
spot, one that is guaranteed to be set before the UI renders. The
race condition was avoided by deleting the duplicate state, and using
the other active tab state.
* Only redirect back to dapp if current tab is active (#7621)
The "redirect back to dapp" behaviour can be disruptive when the
permissions connect tab is not active. The purpose of the redirect was
to maintain context between the dapp and the permissions request, but
if the user has already moved to another tab, that no longer applies.
* Fix JSX style lint errors
* Remove unused state
2019-12-03 18:35:56 +01:00
2020-11-05 23:55:28 +01:00
import web3Entitites from './web3-entities.json'
2020-08-14 13:46:45 +02:00
import 'web3/dist/web3.min'
2020-08-07 21:28:23 +02:00
2020-11-03 00:41:28 +01:00
const shouldLogUsage = ! [
2020-08-07 21:28:23 +02:00
'docs.metamask.io' ,
'metamask.github.io' ,
'metamask.io' ,
2020-11-03 00:41:28 +01:00
] . includes ( window . location . hostname )
2020-08-07 21:28:23 +02:00
2020-11-05 23:55:28 +01:00
/ * *
* To understand how we arrived at this implementation , please see :
* https : //github.com/ethereum/web3.js/blob/0.20.7/DOCUMENTATION.md
* /
2020-11-03 00:41:28 +01:00
export default function setupWeb3 ( log ) {
2018-06-15 00:15:23 +02:00
// export web3 as a global, checking for usage
let reloadInProgress = false
let lastTimeUsed
let lastSeenNetwork
2019-11-01 01:26:02 +01:00
let hasBeenWarned = false
2018-06-15 00:15:23 +02:00
2020-08-07 21:28:23 +02:00
const web3 = new Web3 ( window . ethereum )
web3 . setProvider = function ( ) {
log . debug ( 'MetaMask - overrode web3.setProvider' )
}
2020-12-02 21:35:45 +01:00
Object . defineProperty ( web3 , '__isMetaMaskShim__' , {
value : true ,
enumerable : false ,
configurable : false ,
writable : false ,
} )
2020-08-07 21:28:23 +02:00
Object . defineProperty ( window . ethereum , '_web3Ref' , {
enumerable : false ,
writable : true ,
configurable : true ,
value : web3 . eth ,
} )
2020-11-05 23:55:28 +01:00
// Setup logging of nested property usage
if ( shouldLogUsage ) {
// web3 namespaces with common and uncommon dapp actions
const includedTopKeys = [
'eth' ,
'db' ,
'shh' ,
'net' ,
'personal' ,
'bzz' ,
'version' ,
]
// For each top-level property, create appropriate Proxy traps for all of
// their properties
includedTopKeys . forEach ( ( topKey ) => {
const applyTrapKeys = new Map ( )
const getTrapKeys = new Map ( )
Object . keys ( web3 [ topKey ] ) . forEach ( ( key ) => {
const path = ` web3. ${ topKey } . ${ key } `
if ( web3Entitites [ path ] ) {
if ( web3Entitites [ path ] === 'function' ) {
applyTrapKeys . set ( key , path )
} else {
getTrapKeys . set ( key , path )
}
}
} )
// Create apply traps for function properties
for ( const [ key , path ] of applyTrapKeys ) {
web3 [ topKey ] [ key ] = new Proxy ( web3 [ topKey ] [ key ] , {
apply : ( ... params ) => {
2020-11-17 20:07:59 +01:00
try {
window . ethereum . request ( {
method : 'metamask_logInjectedWeb3Usage' ,
params : [
{
action : 'apply' ,
path ,
} ,
] ,
} )
} catch ( error ) {
log . debug ( 'Failed to log web3 usage.' , error )
}
2020-11-05 23:55:28 +01:00
// Call function normally
return Reflect . apply ( ... params )
} ,
} )
}
// Create get trap for non-function properties
web3 [ topKey ] = new Proxy ( web3 [ topKey ] , {
get : ( web3Prop , key , ... params ) => {
const name = stringifyKey ( key )
if ( getTrapKeys . has ( name ) ) {
2020-11-17 20:07:59 +01:00
try {
window . ethereum . request ( {
method : 'metamask_logInjectedWeb3Usage' ,
params : [
{
action : 'get' ,
path : getTrapKeys . get ( name ) ,
} ,
] ,
} )
} catch ( error ) {
log . debug ( 'Failed to log web3 usage.' , error )
}
2020-11-05 23:55:28 +01:00
}
// return value normally
return Reflect . get ( web3Prop , key , ... params )
} ,
} )
} )
2020-11-17 20:07:59 +01:00
const topLevelFunctions = [
'isConnected' ,
'setProvider' ,
'reset' ,
'sha3' ,
'toHex' ,
'toAscii' ,
'fromAscii' ,
'toDecimal' ,
'fromDecimal' ,
'fromWei' ,
'toWei' ,
'toBigNumber' ,
'isAddress' ,
]
// apply-trap top-level functions
topLevelFunctions . forEach ( ( key ) => {
// This type check is probably redundant, but we've been burned before.
if ( typeof web3 [ key ] === 'function' ) {
web3 [ key ] = new Proxy ( web3 [ key ] , {
apply : ( ... params ) => {
try {
window . ethereum . request ( {
method : 'metamask_logInjectedWeb3Usage' ,
params : [
{
action : 'apply' ,
path : ` web3. ${ key } ` ,
} ,
] ,
} )
} catch ( error ) {
log . debug ( 'Failed to log web3 usage.' , error )
}
// Call function normally
return Reflect . apply ( ... params )
} ,
} )
}
} )
}
2020-11-05 23:55:28 +01:00
2020-05-21 05:18:25 +02:00
const web3Proxy = new Proxy ( web3 , {
2020-11-05 23:55:28 +01:00
get : ( ... params ) => {
2018-06-15 00:15:23 +02:00
// get the time of use
lastTimeUsed = Date . now ( )
2020-08-07 21:28:23 +02:00
2019-11-01 01:26:02 +01:00
// show warning once on web3 access
2020-08-07 21:28:23 +02:00
if ( ! hasBeenWarned ) {
2020-11-03 00:41:28 +01:00
console . warn (
` MetaMask: We will stop injecting web3 in Q4 2020. \n Please see this article for more information: https://medium.com/metamask/no-longer-injecting-web3-js-4a899ad6e59e ` ,
)
2019-11-01 01:26:02 +01:00
hasBeenWarned = true
}
2020-08-07 21:28:23 +02:00
2018-06-15 00:15:23 +02:00
// return value normally
2020-11-05 23:55:28 +01:00
return Reflect . get ( ... params )
2018-06-15 00:15:23 +02:00
} ,
} )
2020-12-02 21:35:45 +01:00
Object . defineProperty ( window , 'web3' , {
2020-05-21 05:18:25 +02:00
enumerable : false ,
writable : true ,
configurable : true ,
value : web3Proxy ,
} )
2020-12-02 21:35:45 +01:00
log . debug ( 'MetaMask - injected web3' )
2020-05-21 05:18:25 +02:00
2020-08-07 21:28:23 +02:00
window . ethereum . _publicConfigStore . subscribe ( ( state ) => {
2019-03-21 20:42:23 +01:00
// if the auto refresh on network change is false do not
// do anything
2019-11-20 01:03:20 +01:00
if ( ! window . ethereum . autoRefreshOnNetworkChange ) {
return
}
2019-03-21 20:42:23 +01:00
2018-06-15 00:15:23 +02:00
// if reload in progress, no need to check reload logic
2019-11-20 01:03:20 +01:00
if ( reloadInProgress ) {
return
}
2018-06-15 00:15:23 +02:00
const currentNetwork = state . networkVersion
// set the initial network
if ( ! lastSeenNetwork ) {
lastSeenNetwork = currentNetwork
return
}
// skip reload logic if web3 not used
2019-11-20 01:03:20 +01:00
if ( ! lastTimeUsed ) {
return
}
2018-06-15 00:15:23 +02:00
// if network did not change, exit
2019-11-20 01:03:20 +01:00
if ( currentNetwork === lastSeenNetwork ) {
return
}
2018-06-15 00:15:23 +02:00
// initiate page reload
reloadInProgress = true
const timeSinceUse = Date . now ( ) - lastTimeUsed
// if web3 was recently used then delay the reloading of the page
if ( timeSinceUse > 500 ) {
triggerReset ( )
} else {
setTimeout ( triggerReset , 500 )
}
} )
}
// reload the page
2020-11-03 00:41:28 +01:00
function triggerReset ( ) {
2020-12-02 21:35:45 +01:00
window . location . reload ( )
2018-06-15 00:15:23 +02:00
}
2020-08-18 17:01:43 +02:00
/ * *
* Returns a "stringified" key . Keys that are already strings are returned
* unchanged , and any non - string values are returned as "typeof <type>" .
*
* @ param { any } key - The key to stringify
* /
2020-11-03 00:41:28 +01:00
function stringifyKey ( key ) {
return typeof key === 'string' ? key : ` typeof ${ typeof key } `
2020-08-18 17:01:43 +02:00
}