Hiro WalletโWeb
Hiro Wallet is the most popular and trusted wallet for apps built on Bitcoin. Connect to apps and manage assets secured by Bitcoin and Bitcoin L2s with battle-tested wallet for the Stacks blockchain.
To integrate this wallet into your app, we recommend @stacks/connect.
๐ See Hiro Wallet Developer Documentation โ
๐ฉ Join the mailing list for updates โ
Development
This application is a browser extension. There is no ability to run it as a standalone web application.
Each child of the src
directory represents the JavaScript context in which it is ran.
Dev mode
When working on the extension, you can run it in development
mode which will watch for any file changes and
use react-refresh
to update the extension as you work. This gives us near instant reloading of our changes, and
persists the state of the application between changes. To start development mode for the extension, run this command:
yarn dev
Optional: run test app
We bundle a test app to use along with the extension. It gives easy access to the various functions that the extension can do.
In a separate terminal, run:
yarn dev:test-app
Loading extension in your browser
You'll need to add it to your browser of choice. Hiro Wallet only
supports Chromium and Firefox browsers. When you run yarn dev
, it will compile the application to the /dist
folder
Testing
Several testing scripts are available in package.json
.
The integration tests expect the extension to be built prior to running. The extension can be built for tests with the command below.
yarn build:test
The integration tests use Playwright, which requires the system to have the browsers it needs. The following command installs everything Playwright needs.
yarn playwright install --with-deps
Note that the installed browsers are tied to the version of Playwright being used, and it may be necessary to run the above command again in some situations, such as when upgrading Playwright or switching branches. Read the documentation for more information.
Production
See instructions on Hiro.so for installing from source for production usage.
Alternatively, the following steps can be taken by technical users with the latest version of node installed on their machines.
Build from source
Run the following from within this repository's root directory if you've pulled it with Git:
yarn && yarn build && sh build-ext.sh
The extension is packaged as stacks-wallet-chromium.zip
.
Security
We consider the security of our systems a top priority. But no matter how much effort we put into system security, there can still be vulnerabilities present.
If you discover a security vulnerability, please use one of the following means of communications to report it to us:
- Report the security issue to our HackerOne program
- Report the security issue directly at [email protected]
Please note this email is strictly for reporting security vulnerabilities. For support queries, contact [email protected]. Your efforts to responsibly disclose your findings are sincerely appreciated and will be taken into account to acknowledge your contributions.
Audit Report
In Q1 2021, Hiro partnered with Least Authority, a leading security consultancy with experience in the crypto space, to audit Hiro Wallet for Web. On April 29th 2021, after addressing the major concerns described in the initial findings, as well as a concluding sign off from the Least Authority team, a final report was delivered.