MetaMask / MetaMask/metamask-extension
the compliance issue
- Dominant language
- TypeScript
- Stars
- 13.2k
- Forks
- 5.6k
- Avg merge
- 2d 5h
- Merged PRs (30d)
- 451
Description
### What is this about?
There is no critical security warning displayed within the MetaMask interface.
As a MetaMask user, I am deeply concerned about this lack of clear security messaging. This warning is an important compliance measure to ensure users understand the risks and take responsibility for protecting their own systems.
By not prominently displaying this warning, MetaMask may be failing to adequately inform and educate its users about the potential consequences of a compromised machine. This could put user funds and accounts at serious risk.
### Scenario
_No response_
### Design
_No response_
### Technical Details
_No response_
### Threat Modeling Framework
_No response_
### Acceptance Criteria
_No response_
### Stakeholder review needed before the work gets merged
- [ ] Engineering (needed in most cases)
- [ ] Design
- [ ] Product
- [ ] QA (automation tests are required to pass before merging PRs but not all changes are covered by automation tests - please review if QA is needed beyond automation tests)
- [ ] Security
- [ ] Legal
- [ ] Marketing
- [ ] Management (please specify)
- [ ] Other (please specify)
### References
_No response_
Contributor guide
Research direction
The issue provides no file, entry point, test, design, technical details, or acceptance criteria to start from. First clarify the required warning content, placement, compliance basis, and review owners, then identify the MetaMask interface area and define how the completed warning will be verified.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- typescript
- Domain
- frontend, security
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 20/100