-
Notifications
You must be signed in to change notification settings - Fork 258
/
Copy pathRouter.json
1 lines (1 loc) · 109 KB
/
Router.json
1
{"language":"Solidity","sources":{"@openzeppelin/contracts/interfaces/IERC1271.sol":{"content":"// SPDX-License-Identifier: MIT\n// OpenZeppelin Contracts v4.4.0 (interfaces/IERC1271.sol)\n\npragma solidity ^0.8.0;\n\n/**\n * @dev Interface of the ERC1271 standard signature validation method for\n * contracts as defined in https://eips.ethereum.org/EIPS/eip-1271[ERC-1271].\n *\n * _Available since v4.1._\n */\ninterface IERC1271 {\n /**\n * @dev Should return whether the signature provided is valid for the provided data\n * @param hash Hash of the data to be signed\n * @param signature Signature byte array associated with _data\n */\n function isValidSignature(bytes32 hash, bytes memory signature) external view returns (bytes4 magicValue);\n}\n"},"@openzeppelin/contracts/security/ReentrancyGuard.sol":{"content":"// SPDX-License-Identifier: MIT\n// OpenZeppelin Contracts v4.4.0 (security/ReentrancyGuard.sol)\n\npragma solidity ^0.8.0;\n\n/**\n * @dev Contract module that helps prevent reentrant calls to a function.\n *\n * Inheriting from `ReentrancyGuard` will make the {nonReentrant} modifier\n * available, which can be applied to functions to make sure there are no nested\n * (reentrant) calls to them.\n *\n * Note that because there is a single `nonReentrant` guard, functions marked as\n * `nonReentrant` may not call one another. This can be worked around by making\n * those functions `private`, and then adding `external` `nonReentrant` entry\n * points to them.\n *\n * TIP: If you would like to learn more about reentrancy and alternative ways\n * to protect against it, check out our blog post\n * https://blog.openzeppelin.com/reentrancy-after-istanbul/[Reentrancy After Istanbul].\n */\nabstract contract ReentrancyGuard {\n // Booleans are more expensive than uint256 or any type that takes up a full\n // word because each write operation emits an extra SLOAD to first read the\n // slot's contents, replace the bits taken up by the boolean, and then write\n // back. This is the compiler's defense against contract upgrades and\n // pointer aliasing, and it cannot be disabled.\n\n // The values being non-zero value makes deployment a bit more expensive,\n // but in exchange the refund on every call to nonReentrant will be lower in\n // amount. Since refunds are capped to a percentage of the total\n // transaction's gas, it is best to keep them low in cases like this one, to\n // increase the likelihood of the full refund coming into effect.\n uint256 private constant _NOT_ENTERED = 1;\n uint256 private constant _ENTERED = 2;\n\n uint256 private _status;\n\n constructor() {\n _status = _NOT_ENTERED;\n }\n\n /**\n * @dev Prevents a contract from calling itself, directly or indirectly.\n * Calling a `nonReentrant` function from another `nonReentrant`\n * function is not supported. It is possible to prevent this from happening\n * by making the `nonReentrant` function external, and making it call a\n * `private` function that does the actual work.\n */\n modifier nonReentrant() {\n // On the first call to nonReentrant, _notEntered will be true\n require(_status != _ENTERED, \"ReentrancyGuard: reentrant call\");\n\n // Any calls to nonReentrant after this point will fail\n _status = _ENTERED;\n\n _;\n\n // By storing the original value once again, a refund is triggered (see\n // https://eips.ethereum.org/EIPS/eip-2200)\n _status = _NOT_ENTERED;\n }\n}\n"},"@openzeppelin/contracts/token/ERC20/IERC20.sol":{"content":"// SPDX-License-Identifier: MIT\n// OpenZeppelin Contracts v4.4.0 (token/ERC20/IERC20.sol)\n\npragma solidity ^0.8.0;\n\n/**\n * @dev Interface of the ERC20 standard as defined in the EIP.\n */\ninterface IERC20 {\n /**\n * @dev Returns the amount of tokens in existence.\n */\n function totalSupply() external view returns (uint256);\n\n /**\n * @dev Returns the amount of tokens owned by `account`.\n */\n function balanceOf(address account) external view returns (uint256);\n\n /**\n * @dev Moves `amount` tokens from the caller's account to `recipient`.\n *\n * Returns a boolean value indicating whether the operation succeeded.\n *\n * Emits a {Transfer} event.\n */\n function transfer(address recipient, uint256 amount) external returns (bool);\n\n /**\n * @dev Returns the remaining number of tokens that `spender` will be\n * allowed to spend on behalf of `owner` through {transferFrom}. This is\n * zero by default.\n *\n * This value changes when {approve} or {transferFrom} are called.\n */\n function allowance(address owner, address spender) external view returns (uint256);\n\n /**\n * @dev Sets `amount` as the allowance of `spender` over the caller's tokens.\n *\n * Returns a boolean value indicating whether the operation succeeded.\n *\n * IMPORTANT: Beware that changing an allowance with this method brings the risk\n * that someone may use both the old and the new allowance by unfortunate\n * transaction ordering. One possible solution to mitigate this race\n * condition is to first reduce the spender's allowance to 0 and set the\n * desired value afterwards:\n * https://github.com/ethereum/EIPs/issues/20#issuecomment-263524729\n *\n * Emits an {Approval} event.\n */\n function approve(address spender, uint256 amount) external returns (bool);\n\n /**\n * @dev Moves `amount` tokens from `sender` to `recipient` using the\n * allowance mechanism. `amount` is then deducted from the caller's\n * allowance.\n *\n * Returns a boolean value indicating whether the operation succeeded.\n *\n * Emits a {Transfer} event.\n */\n function transferFrom(\n address sender,\n address recipient,\n uint256 amount\n ) external returns (bool);\n\n /**\n * @dev Emitted when `value` tokens are moved from one account (`from`) to\n * another (`to`).\n *\n * Note that `value` may be zero.\n */\n event Transfer(address indexed from, address indexed to, uint256 value);\n\n /**\n * @dev Emitted when the allowance of a `spender` for an `owner` is set by\n * a call to {approve}. `value` is the new allowance.\n */\n event Approval(address indexed owner, address indexed spender, uint256 value);\n}\n"},"@openzeppelin/contracts/token/ERC20/utils/SafeERC20.sol":{"content":"// SPDX-License-Identifier: MIT\n// OpenZeppelin Contracts v4.4.0 (token/ERC20/utils/SafeERC20.sol)\n\npragma solidity ^0.8.0;\n\nimport \"../IERC20.sol\";\nimport \"../../../utils/Address.sol\";\n\n/**\n * @title SafeERC20\n * @dev Wrappers around ERC20 operations that throw on failure (when the token\n * contract returns false). Tokens that return no value (and instead revert or\n * throw on failure) are also supported, non-reverting calls are assumed to be\n * successful.\n * To use this library you can add a `using SafeERC20 for IERC20;` statement to your contract,\n * which allows you to call the safe operations as `token.safeTransfer(...)`, etc.\n */\nlibrary SafeERC20 {\n using Address for address;\n\n function safeTransfer(\n IERC20 token,\n address to,\n uint256 value\n ) internal {\n _callOptionalReturn(token, abi.encodeWithSelector(token.transfer.selector, to, value));\n }\n\n function safeTransferFrom(\n IERC20 token,\n address from,\n address to,\n uint256 value\n ) internal {\n _callOptionalReturn(token, abi.encodeWithSelector(token.transferFrom.selector, from, to, value));\n }\n\n /**\n * @dev Deprecated. This function has issues similar to the ones found in\n * {IERC20-approve}, and its usage is discouraged.\n *\n * Whenever possible, use {safeIncreaseAllowance} and\n * {safeDecreaseAllowance} instead.\n */\n function safeApprove(\n IERC20 token,\n address spender,\n uint256 value\n ) internal {\n // safeApprove should only be called when setting an initial allowance,\n // or when resetting it to zero. To increase and decrease it, use\n // 'safeIncreaseAllowance' and 'safeDecreaseAllowance'\n require(\n (value == 0) || (token.allowance(address(this), spender) == 0),\n \"SafeERC20: approve from non-zero to non-zero allowance\"\n );\n _callOptionalReturn(token, abi.encodeWithSelector(token.approve.selector, spender, value));\n }\n\n function safeIncreaseAllowance(\n IERC20 token,\n address spender,\n uint256 value\n ) internal {\n uint256 newAllowance = token.allowance(address(this), spender) + value;\n _callOptionalReturn(token, abi.encodeWithSelector(token.approve.selector, spender, newAllowance));\n }\n\n function safeDecreaseAllowance(\n IERC20 token,\n address spender,\n uint256 value\n ) internal {\n unchecked {\n uint256 oldAllowance = token.allowance(address(this), spender);\n require(oldAllowance >= value, \"SafeERC20: decreased allowance below zero\");\n uint256 newAllowance = oldAllowance - value;\n _callOptionalReturn(token, abi.encodeWithSelector(token.approve.selector, spender, newAllowance));\n }\n }\n\n /**\n * @dev Imitates a Solidity high-level call (i.e. a regular function call to a contract), relaxing the requirement\n * on the return value: the return value is optional (but if data is returned, it must not be false).\n * @param token The token targeted by the call.\n * @param data The call data (encoded using abi.encode or one of its variants).\n */\n function _callOptionalReturn(IERC20 token, bytes memory data) private {\n // We need to perform a low level call here, to bypass Solidity's return data size checking mechanism, since\n // we're implementing it ourselves. We use {Address.functionCall} to perform this call, which verifies that\n // the target address contains contract code and also asserts for success in the low-level call.\n\n bytes memory returndata = address(token).functionCall(data, \"SafeERC20: low-level call failed\");\n if (returndata.length > 0) {\n // Return data is optional\n require(abi.decode(returndata, (bool)), \"SafeERC20: ERC20 operation did not succeed\");\n }\n }\n}\n"},"@openzeppelin/contracts/utils/Address.sol":{"content":"// SPDX-License-Identifier: MIT\n// OpenZeppelin Contracts v4.4.0 (utils/Address.sol)\n\npragma solidity ^0.8.0;\n\n/**\n * @dev Collection of functions related to the address type\n */\nlibrary Address {\n /**\n * @dev Returns true if `account` is a contract.\n *\n * [IMPORTANT]\n * ====\n * It is unsafe to assume that an address for which this function returns\n * false is an externally-owned account (EOA) and not a contract.\n *\n * Among others, `isContract` will return false for the following\n * types of addresses:\n *\n * - an externally-owned account\n * - a contract in construction\n * - an address where a contract will be created\n * - an address where a contract lived, but was destroyed\n * ====\n */\n function isContract(address account) internal view returns (bool) {\n // This method relies on extcodesize, which returns 0 for contracts in\n // construction, since the code is only stored at the end of the\n // constructor execution.\n\n uint256 size;\n assembly {\n size := extcodesize(account)\n }\n return size > 0;\n }\n\n /**\n * @dev Replacement for Solidity's `transfer`: sends `amount` wei to\n * `recipient`, forwarding all available gas and reverting on errors.\n *\n * https://eips.ethereum.org/EIPS/eip-1884[EIP1884] increases the gas cost\n * of certain opcodes, possibly making contracts go over the 2300 gas limit\n * imposed by `transfer`, making them unable to receive funds via\n * `transfer`. {sendValue} removes this limitation.\n *\n * https://diligence.consensys.net/posts/2019/09/stop-using-soliditys-transfer-now/[Learn more].\n *\n * IMPORTANT: because control is transferred to `recipient`, care must be\n * taken to not create reentrancy vulnerabilities. Consider using\n * {ReentrancyGuard} or the\n * https://solidity.readthedocs.io/en/v0.5.11/security-considerations.html#use-the-checks-effects-interactions-pattern[checks-effects-interactions pattern].\n */\n function sendValue(address payable recipient, uint256 amount) internal {\n require(address(this).balance >= amount, \"Address: insufficient balance\");\n\n (bool success, ) = recipient.call{value: amount}(\"\");\n require(success, \"Address: unable to send value, recipient may have reverted\");\n }\n\n /**\n * @dev Performs a Solidity function call using a low level `call`. A\n * plain `call` is an unsafe replacement for a function call: use this\n * function instead.\n *\n * If `target` reverts with a revert reason, it is bubbled up by this\n * function (like regular Solidity function calls).\n *\n * Returns the raw returned data. To convert to the expected return value,\n * use https://solidity.readthedocs.io/en/latest/units-and-global-variables.html?highlight=abi.decode#abi-encoding-and-decoding-functions[`abi.decode`].\n *\n * Requirements:\n *\n * - `target` must be a contract.\n * - calling `target` with `data` must not revert.\n *\n * _Available since v3.1._\n */\n function functionCall(address target, bytes memory data) internal returns (bytes memory) {\n return functionCall(target, data, \"Address: low-level call failed\");\n }\n\n /**\n * @dev Same as {xref-Address-functionCall-address-bytes-}[`functionCall`], but with\n * `errorMessage` as a fallback revert reason when `target` reverts.\n *\n * _Available since v3.1._\n */\n function functionCall(\n address target,\n bytes memory data,\n string memory errorMessage\n ) internal returns (bytes memory) {\n return functionCallWithValue(target, data, 0, errorMessage);\n }\n\n /**\n * @dev Same as {xref-Address-functionCall-address-bytes-}[`functionCall`],\n * but also transferring `value` wei to `target`.\n *\n * Requirements:\n *\n * - the calling contract must have an ETH balance of at least `value`.\n * - the called Solidity function must be `payable`.\n *\n * _Available since v3.1._\n */\n function functionCallWithValue(\n address target,\n bytes memory data,\n uint256 value\n ) internal returns (bytes memory) {\n return functionCallWithValue(target, data, value, \"Address: low-level call with value failed\");\n }\n\n /**\n * @dev Same as {xref-Address-functionCallWithValue-address-bytes-uint256-}[`functionCallWithValue`], but\n * with `errorMessage` as a fallback revert reason when `target` reverts.\n *\n * _Available since v3.1._\n */\n function functionCallWithValue(\n address target,\n bytes memory data,\n uint256 value,\n string memory errorMessage\n ) internal returns (bytes memory) {\n require(address(this).balance >= value, \"Address: insufficient balance for call\");\n require(isContract(target), \"Address: call to non-contract\");\n\n (bool success, bytes memory returndata) = target.call{value: value}(data);\n return verifyCallResult(success, returndata, errorMessage);\n }\n\n /**\n * @dev Same as {xref-Address-functionCall-address-bytes-}[`functionCall`],\n * but performing a static call.\n *\n * _Available since v3.3._\n */\n function functionStaticCall(address target, bytes memory data) internal view returns (bytes memory) {\n return functionStaticCall(target, data, \"Address: low-level static call failed\");\n }\n\n /**\n * @dev Same as {xref-Address-functionCall-address-bytes-string-}[`functionCall`],\n * but performing a static call.\n *\n * _Available since v3.3._\n */\n function functionStaticCall(\n address target,\n bytes memory data,\n string memory errorMessage\n ) internal view returns (bytes memory) {\n require(isContract(target), \"Address: static call to non-contract\");\n\n (bool success, bytes memory returndata) = target.staticcall(data);\n return verifyCallResult(success, returndata, errorMessage);\n }\n\n /**\n * @dev Same as {xref-Address-functionCall-address-bytes-}[`functionCall`],\n * but performing a delegate call.\n *\n * _Available since v3.4._\n */\n function functionDelegateCall(address target, bytes memory data) internal returns (bytes memory) {\n return functionDelegateCall(target, data, \"Address: low-level delegate call failed\");\n }\n\n /**\n * @dev Same as {xref-Address-functionCall-address-bytes-string-}[`functionCall`],\n * but performing a delegate call.\n *\n * _Available since v3.4._\n */\n function functionDelegateCall(\n address target,\n bytes memory data,\n string memory errorMessage\n ) internal returns (bytes memory) {\n require(isContract(target), \"Address: delegate call to non-contract\");\n\n (bool success, bytes memory returndata) = target.delegatecall(data);\n return verifyCallResult(success, returndata, errorMessage);\n }\n\n /**\n * @dev Tool to verifies that a low level call was successful, and revert if it wasn't, either by bubbling the\n * revert reason using the provided one.\n *\n * _Available since v4.3._\n */\n function verifyCallResult(\n bool success,\n bytes memory returndata,\n string memory errorMessage\n ) internal pure returns (bytes memory) {\n if (success) {\n return returndata;\n } else {\n // Look for revert reason and bubble it up if present\n if (returndata.length > 0) {\n // The easiest way to bubble the revert reason is using memory via assembly\n\n assembly {\n let returndata_size := mload(returndata)\n revert(add(32, returndata), returndata_size)\n }\n } else {\n revert(errorMessage);\n }\n }\n }\n}\n"},"@openzeppelin/contracts/utils/cryptography/draft-EIP712.sol":{"content":"// SPDX-License-Identifier: MIT\n// OpenZeppelin Contracts v4.4.0 (utils/cryptography/draft-EIP712.sol)\n\npragma solidity ^0.8.0;\n\nimport \"./ECDSA.sol\";\n\n/**\n * @dev https://eips.ethereum.org/EIPS/eip-712[EIP 712] is a standard for hashing and signing of typed structured data.\n *\n * The encoding specified in the EIP is very generic, and such a generic implementation in Solidity is not feasible,\n * thus this contract does not implement the encoding itself. Protocols need to implement the type-specific encoding\n * they need in their contracts using a combination of `abi.encode` and `keccak256`.\n *\n * This contract implements the EIP 712 domain separator ({_domainSeparatorV4}) that is used as part of the encoding\n * scheme, and the final step of the encoding to obtain the message digest that is then signed via ECDSA\n * ({_hashTypedDataV4}).\n *\n * The implementation of the domain separator was designed to be as efficient as possible while still properly updating\n * the chain id to protect against replay attacks on an eventual fork of the chain.\n *\n * NOTE: This contract implements the version of the encoding known as \"v4\", as implemented by the JSON RPC method\n * https://docs.metamask.io/guide/signing-data.html[`eth_signTypedDataV4` in MetaMask].\n *\n * _Available since v3.4._\n */\nabstract contract EIP712 {\n /* solhint-disable var-name-mixedcase */\n // Cache the domain separator as an immutable value, but also store the chain id that it corresponds to, in order to\n // invalidate the cached domain separator if the chain id changes.\n bytes32 private immutable _CACHED_DOMAIN_SEPARATOR;\n uint256 private immutable _CACHED_CHAIN_ID;\n address private immutable _CACHED_THIS;\n\n bytes32 private immutable _HASHED_NAME;\n bytes32 private immutable _HASHED_VERSION;\n bytes32 private immutable _TYPE_HASH;\n\n /* solhint-enable var-name-mixedcase */\n\n /**\n * @dev Initializes the domain separator and parameter caches.\n *\n * The meaning of `name` and `version` is specified in\n * https://eips.ethereum.org/EIPS/eip-712#definition-of-domainseparator[EIP 712]:\n *\n * - `name`: the user readable name of the signing domain, i.e. the name of the DApp or the protocol.\n * - `version`: the current major version of the signing domain.\n *\n * NOTE: These parameters cannot be changed except through a xref:learn::upgrading-smart-contracts.adoc[smart\n * contract upgrade].\n */\n constructor(string memory name, string memory version) {\n bytes32 hashedName = keccak256(bytes(name));\n bytes32 hashedVersion = keccak256(bytes(version));\n bytes32 typeHash = keccak256(\n \"EIP712Domain(string name,string version,uint256 chainId,address verifyingContract)\"\n );\n _HASHED_NAME = hashedName;\n _HASHED_VERSION = hashedVersion;\n _CACHED_CHAIN_ID = block.chainid;\n _CACHED_DOMAIN_SEPARATOR = _buildDomainSeparator(typeHash, hashedName, hashedVersion);\n _CACHED_THIS = address(this);\n _TYPE_HASH = typeHash;\n }\n\n /**\n * @dev Returns the domain separator for the current chain.\n */\n function _domainSeparatorV4() internal view returns (bytes32) {\n if (address(this) == _CACHED_THIS && block.chainid == _CACHED_CHAIN_ID) {\n return _CACHED_DOMAIN_SEPARATOR;\n } else {\n return _buildDomainSeparator(_TYPE_HASH, _HASHED_NAME, _HASHED_VERSION);\n }\n }\n\n function _buildDomainSeparator(\n bytes32 typeHash,\n bytes32 nameHash,\n bytes32 versionHash\n ) private view returns (bytes32) {\n return keccak256(abi.encode(typeHash, nameHash, versionHash, block.chainid, address(this)));\n }\n\n /**\n * @dev Given an already https://eips.ethereum.org/EIPS/eip-712#definition-of-hashstruct[hashed struct], this\n * function returns the hash of the fully encoded EIP712 message for this domain.\n *\n * This hash can be used together with {ECDSA-recover} to obtain the signer of a message. For example:\n *\n * ```solidity\n * bytes32 digest = _hashTypedDataV4(keccak256(abi.encode(\n * keccak256(\"Mail(address to,string contents)\"),\n * mailTo,\n * keccak256(bytes(mailContents))\n * )));\n * address signer = ECDSA.recover(digest, signature);\n * ```\n */\n function _hashTypedDataV4(bytes32 structHash) internal view virtual returns (bytes32) {\n return ECDSA.toTypedDataHash(_domainSeparatorV4(), structHash);\n }\n}\n"},"@openzeppelin/contracts/utils/cryptography/ECDSA.sol":{"content":"// SPDX-License-Identifier: MIT\n// OpenZeppelin Contracts v4.4.0 (utils/cryptography/ECDSA.sol)\n\npragma solidity ^0.8.0;\n\nimport \"../Strings.sol\";\n\n/**\n * @dev Elliptic Curve Digital Signature Algorithm (ECDSA) operations.\n *\n * These functions can be used to verify that a message was signed by the holder\n * of the private keys of a given address.\n */\nlibrary ECDSA {\n enum RecoverError {\n NoError,\n InvalidSignature,\n InvalidSignatureLength,\n InvalidSignatureS,\n InvalidSignatureV\n }\n\n function _throwError(RecoverError error) private pure {\n if (error == RecoverError.NoError) {\n return; // no error: do nothing\n } else if (error == RecoverError.InvalidSignature) {\n revert(\"ECDSA: invalid signature\");\n } else if (error == RecoverError.InvalidSignatureLength) {\n revert(\"ECDSA: invalid signature length\");\n } else if (error == RecoverError.InvalidSignatureS) {\n revert(\"ECDSA: invalid signature 's' value\");\n } else if (error == RecoverError.InvalidSignatureV) {\n revert(\"ECDSA: invalid signature 'v' value\");\n }\n }\n\n /**\n * @dev Returns the address that signed a hashed message (`hash`) with\n * `signature` or error string. This address can then be used for verification purposes.\n *\n * The `ecrecover` EVM opcode allows for malleable (non-unique) signatures:\n * this function rejects them by requiring the `s` value to be in the lower\n * half order, and the `v` value to be either 27 or 28.\n *\n * IMPORTANT: `hash` _must_ be the result of a hash operation for the\n * verification to be secure: it is possible to craft signatures that\n * recover to arbitrary addresses for non-hashed data. A safe way to ensure\n * this is by receiving a hash of the original message (which may otherwise\n * be too long), and then calling {toEthSignedMessageHash} on it.\n *\n * Documentation for signature generation:\n * - with https://web3js.readthedocs.io/en/v1.3.4/web3-eth-accounts.html#sign[Web3.js]\n * - with https://docs.ethers.io/v5/api/signer/#Signer-signMessage[ethers]\n *\n * _Available since v4.3._\n */\n function tryRecover(bytes32 hash, bytes memory signature) internal pure returns (address, RecoverError) {\n // Check the signature length\n // - case 65: r,s,v signature (standard)\n // - case 64: r,vs signature (cf https://eips.ethereum.org/EIPS/eip-2098) _Available since v4.1._\n if (signature.length == 65) {\n bytes32 r;\n bytes32 s;\n uint8 v;\n // ecrecover takes the signature parameters, and the only way to get them\n // currently is to use assembly.\n assembly {\n r := mload(add(signature, 0x20))\n s := mload(add(signature, 0x40))\n v := byte(0, mload(add(signature, 0x60)))\n }\n return tryRecover(hash, v, r, s);\n } else if (signature.length == 64) {\n bytes32 r;\n bytes32 vs;\n // ecrecover takes the signature parameters, and the only way to get them\n // currently is to use assembly.\n assembly {\n r := mload(add(signature, 0x20))\n vs := mload(add(signature, 0x40))\n }\n return tryRecover(hash, r, vs);\n } else {\n return (address(0), RecoverError.InvalidSignatureLength);\n }\n }\n\n /**\n * @dev Returns the address that signed a hashed message (`hash`) with\n * `signature`. This address can then be used for verification purposes.\n *\n * The `ecrecover` EVM opcode allows for malleable (non-unique) signatures:\n * this function rejects them by requiring the `s` value to be in the lower\n * half order, and the `v` value to be either 27 or 28.\n *\n * IMPORTANT: `hash` _must_ be the result of a hash operation for the\n * verification to be secure: it is possible to craft signatures that\n * recover to arbitrary addresses for non-hashed data. A safe way to ensure\n * this is by receiving a hash of the original message (which may otherwise\n * be too long), and then calling {toEthSignedMessageHash} on it.\n */\n function recover(bytes32 hash, bytes memory signature) internal pure returns (address) {\n (address recovered, RecoverError error) = tryRecover(hash, signature);\n _throwError(error);\n return recovered;\n }\n\n /**\n * @dev Overload of {ECDSA-tryRecover} that receives the `r` and `vs` short-signature fields separately.\n *\n * See https://eips.ethereum.org/EIPS/eip-2098[EIP-2098 short signatures]\n *\n * _Available since v4.3._\n */\n function tryRecover(\n bytes32 hash,\n bytes32 r,\n bytes32 vs\n ) internal pure returns (address, RecoverError) {\n bytes32 s;\n uint8 v;\n assembly {\n s := and(vs, 0x7fffffffffffffffffffffffffffffffffffffffffffffffffffffffffffffff)\n v := add(shr(255, vs), 27)\n }\n return tryRecover(hash, v, r, s);\n }\n\n /**\n * @dev Overload of {ECDSA-recover} that receives the `r and `vs` short-signature fields separately.\n *\n * _Available since v4.2._\n */\n function recover(\n bytes32 hash,\n bytes32 r,\n bytes32 vs\n ) internal pure returns (address) {\n (address recovered, RecoverError error) = tryRecover(hash, r, vs);\n _throwError(error);\n return recovered;\n }\n\n /**\n * @dev Overload of {ECDSA-tryRecover} that receives the `v`,\n * `r` and `s` signature fields separately.\n *\n * _Available since v4.3._\n */\n function tryRecover(\n bytes32 hash,\n uint8 v,\n bytes32 r,\n bytes32 s\n ) internal pure returns (address, RecoverError) {\n // EIP-2 still allows signature malleability for ecrecover(). Remove this possibility and make the signature\n // unique. Appendix F in the Ethereum Yellow paper (https://ethereum.github.io/yellowpaper/paper.pdf), defines\n // the valid range for s in (301): 0 < s < secp256k1n ÷ 2 + 1, and for v in (302): v ∈ {27, 28}. Most\n // signatures from current libraries generate a unique signature with an s-value in the lower half order.\n //\n // If your library generates malleable signatures, such as s-values in the upper range, calculate a new s-value\n // with 0xFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEBAAEDCE6AF48A03BBFD25E8CD0364141 - s1 and flip v from 27 to 28 or\n // vice versa. If your library also generates signatures with 0/1 for v instead 27/28, add 27 to v to accept\n // these malleable signatures as well.\n if (uint256(s) > 0x7FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF5D576E7357A4501DDFE92F46681B20A0) {\n return (address(0), RecoverError.InvalidSignatureS);\n }\n if (v != 27 && v != 28) {\n return (address(0), RecoverError.InvalidSignatureV);\n }\n\n // If the signature is valid (and not malleable), return the signer address\n address signer = ecrecover(hash, v, r, s);\n if (signer == address(0)) {\n return (address(0), RecoverError.InvalidSignature);\n }\n\n return (signer, RecoverError.NoError);\n }\n\n /**\n * @dev Overload of {ECDSA-recover} that receives the `v`,\n * `r` and `s` signature fields separately.\n */\n function recover(\n bytes32 hash,\n uint8 v,\n bytes32 r,\n bytes32 s\n ) internal pure returns (address) {\n (address recovered, RecoverError error) = tryRecover(hash, v, r, s);\n _throwError(error);\n return recovered;\n }\n\n /**\n * @dev Returns an Ethereum Signed Message, created from a `hash`. This\n * produces hash corresponding to the one signed with the\n * https://eth.wiki/json-rpc/API#eth_sign[`eth_sign`]\n * JSON-RPC method as part of EIP-191.\n *\n * See {recover}.\n */\n function toEthSignedMessageHash(bytes32 hash) internal pure returns (bytes32) {\n // 32 is the length in bytes of hash,\n // enforced by the type signature above\n return keccak256(abi.encodePacked(\"\\x19Ethereum Signed Message:\\n32\", hash));\n }\n\n /**\n * @dev Returns an Ethereum Signed Message, created from `s`. This\n * produces hash corresponding to the one signed with the\n * https://eth.wiki/json-rpc/API#eth_sign[`eth_sign`]\n * JSON-RPC method as part of EIP-191.\n *\n * See {recover}.\n */\n function toEthSignedMessageHash(bytes memory s) internal pure returns (bytes32) {\n return keccak256(abi.encodePacked(\"\\x19Ethereum Signed Message:\\n\", Strings.toString(s.length), s));\n }\n\n /**\n * @dev Returns an Ethereum Signed Typed Data, created from a\n * `domainSeparator` and a `structHash`. This produces hash corresponding\n * to the one signed with the\n * https://eips.ethereum.org/EIPS/eip-712[`eth_signTypedData`]\n * JSON-RPC method as part of EIP-712.\n *\n * See {recover}.\n */\n function toTypedDataHash(bytes32 domainSeparator, bytes32 structHash) internal pure returns (bytes32) {\n return keccak256(abi.encodePacked(\"\\x19\\x01\", domainSeparator, structHash));\n }\n}\n"},"@openzeppelin/contracts/utils/cryptography/SignatureChecker.sol":{"content":"// SPDX-License-Identifier: MIT\n// OpenZeppelin Contracts v4.4.0 (utils/cryptography/SignatureChecker.sol)\n\npragma solidity ^0.8.0;\n\nimport \"./ECDSA.sol\";\nimport \"../Address.sol\";\nimport \"../../interfaces/IERC1271.sol\";\n\n/**\n * @dev Signature verification helper: Provide a single mechanism to verify both private-key (EOA) ECDSA signature and\n * ERC1271 contract signatures. Using this instead of ECDSA.recover in your contract will make them compatible with\n * smart contract wallets such as Argent and Gnosis.\n *\n * Note: unlike ECDSA signatures, contract signature's are revocable, and the outcome of this function can thus change\n * through time. It could return true at block N and false at block N+1 (or the opposite).\n *\n * _Available since v4.1._\n */\nlibrary SignatureChecker {\n function isValidSignatureNow(\n address signer,\n bytes32 hash,\n bytes memory signature\n ) internal view returns (bool) {\n (address recovered, ECDSA.RecoverError error) = ECDSA.tryRecover(hash, signature);\n if (error == ECDSA.RecoverError.NoError && recovered == signer) {\n return true;\n }\n\n (bool success, bytes memory result) = signer.staticcall(\n abi.encodeWithSelector(IERC1271.isValidSignature.selector, hash, signature)\n );\n return (success && result.length == 32 && abi.decode(result, (bytes4)) == IERC1271.isValidSignature.selector);\n }\n}\n"},"@openzeppelin/contracts/utils/Strings.sol":{"content":"// SPDX-License-Identifier: MIT\n// OpenZeppelin Contracts v4.4.0 (utils/Strings.sol)\n\npragma solidity ^0.8.0;\n\n/**\n * @dev String operations.\n */\nlibrary Strings {\n bytes16 private constant _HEX_SYMBOLS = \"0123456789abcdef\";\n\n /**\n * @dev Converts a `uint256` to its ASCII `string` decimal representation.\n */\n function toString(uint256 value) internal pure returns (string memory) {\n // Inspired by OraclizeAPI's implementation - MIT licence\n // https://github.com/oraclize/ethereum-api/blob/b42146b063c7d6ee1358846c198246239e9360e8/oraclizeAPI_0.4.25.sol\n\n if (value == 0) {\n return \"0\";\n }\n uint256 temp = value;\n uint256 digits;\n while (temp != 0) {\n digits++;\n temp /= 10;\n }\n bytes memory buffer = new bytes(digits);\n while (value != 0) {\n digits -= 1;\n buffer[digits] = bytes1(uint8(48 + uint256(value % 10)));\n value /= 10;\n }\n return string(buffer);\n }\n\n /**\n * @dev Converts a `uint256` to its ASCII `string` hexadecimal representation.\n */\n function toHexString(uint256 value) internal pure returns (string memory) {\n if (value == 0) {\n return \"0x00\";\n }\n uint256 temp = value;\n uint256 length = 0;\n while (temp != 0) {\n length++;\n temp >>= 8;\n }\n return toHexString(value, length);\n }\n\n /**\n * @dev Converts a `uint256` to its ASCII `string` hexadecimal representation with fixed length.\n */\n function toHexString(uint256 value, uint256 length) internal pure returns (string memory) {\n bytes memory buffer = new bytes(2 * length + 2);\n buffer[0] = \"0\";\n buffer[1] = \"x\";\n for (uint256 i = 2 * length + 1; i > 1; --i) {\n buffer[i] = _HEX_SYMBOLS[value & 0xf];\n value >>= 4;\n }\n require(value == 0, \"Strings: hex length insufficient\");\n return string(buffer);\n }\n}\n"},"contracts/interfaces/ICaller.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport { AbsoluteTokenAmount } from \"../shared/Structs.sol\";\n\nimport { ITokensHandler } from \"./ITokensHandler.sol\";\n\ninterface ICaller is ITokensHandler {\n /**\n * @notice Main external function: implements all the caller specific logic\n * @param callerCallData ABI-encoded parameters depending on the caller logic\n */\n function callBytes(bytes calldata callerCallData) external;\n}\n"},"contracts/interfaces/IDAIPermit.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport { IERC20 } from \"@openzeppelin/contracts/token/ERC20/IERC20.sol\";\n\ninterface IDAIPermit is IERC20 {\n function permit(\n address holder,\n address spender,\n uint256 nonce,\n uint256 expiry,\n bool allowed,\n uint8 v,\n bytes32 r,\n bytes32 s\n ) external;\n\n function nonces(address holder) external view returns (uint256);\n}\n"},"contracts/interfaces/IEIP2612.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport { IERC20 } from \"@openzeppelin/contracts/token/ERC20/IERC20.sol\";\n\ninterface IEIP2612 is IERC20 {\n function permit(\n address owner,\n address spender,\n uint256 value,\n uint256 deadline,\n uint8 v,\n bytes32 r,\n bytes32 s\n ) external;\n\n function nonces(address holder) external view returns (uint256);\n}\n"},"contracts/interfaces/IProtocolFee.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport { Fee } from \"../shared/Structs.sol\";\n\ninterface IProtocolFee {\n /**\n * @notice Sets protocol fee default value\n * @param protocolFeeDefault New base fee defaul value\n * @dev Can be called only by the owner\n */\n function setProtocolFeeDefault(Fee calldata protocolFeeDefault) external;\n\n /**\n * @notice Sets protocol fee signature signer\n * @param signer New signer\n * @dev Can be called only by the owner\n */\n function setProtocolFeeSigner(address signer) external;\n\n /**\n * @notice Returns current protocol fee default value\n * @return protocolFeeDefault Protocol fee consisting of its share and beneficiary\n */\n function getProtocolFeeDefault() external view returns (Fee memory protocolFeeDefault);\n\n /**\n * @notice Returns current protocol fee signature signer\n * @return signer Current signer address\n */\n function getProtocolFeeSigner() external view returns (address signer);\n}\n"},"contracts/interfaces/IRouter.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport {\n AbsoluteTokenAmount,\n Input,\n SwapDescription,\n AccountSignature,\n ProtocolFeeSignature,\n Fee\n} from \"../shared/Structs.sol\";\n\nimport { ITokensHandler } from \"./ITokensHandler.sol\";\nimport { ISignatureVerifier } from \"./ISignatureVerifier.sol\";\n\ninterface IRouter is ITokensHandler, ISignatureVerifier {\n /**\n * @notice Emits swap info\n * @param inputToken Input token address\n * @param absoluteInputAmount Max amount of input token to be taken from the account address\n * @param inputBalanceChange Actual amount of input token taken from the account address\n * @param outputToken Output token address\n * @param absoluteOutputAmount Min amount of output token to be returned to the account address\n * @param returnedAmount Actual amount of tokens returned to the account address\n * @param protocolFeeAmount Protocol fee amount\n * @param marketplaceFeeAmount Marketplace fee amount\n * @param swapDescription Swap parameters\n * @param sender Address that called the Router contract\n */\n event Executed(\n address indexed inputToken,\n uint256 absoluteInputAmount,\n uint256 inputBalanceChange,\n address indexed outputToken,\n uint256 absoluteOutputAmount,\n uint256 returnedAmount,\n uint256 protocolFeeAmount,\n uint256 marketplaceFeeAmount,\n SwapDescription swapDescription,\n address sender\n );\n\n /**\n * @notice Main function executing the swaps\n * @param input Token and amount (relative or absolute) to be taken from the account address,\n * also, permit type and call data may provided if required\n * @dev `address(0)` may be used as input token address,\n * in this case no tokens will be taken from the user\n * @param absoluteOutput Token and absolute amount requirement\n * to be returned to the account address\n * @dev `address(0)` may be used as output token address,\n * in this case no tokens will be returned to the user, no fees are applied\n * @param swapDescription Swap description with the following elements:\n * - Whether the inputs or outputs are fixed\n * - Protocol fee share and beneficiary address\n * - Marketplace fee share and beneficiary address\n * - Address of the account executing the swap\n * - Address of the Caller contract to be called\n * - Calldata for the call to the Caller contract\n * @param accountSignature Signature for the relayed transaction\n * (checks that account address is the one who actually did a signature)\n * @param protocolFeeSignature Signature for the discounted protocol fee\n * (checks that current protocol fee signer is the one who actually did a signature),\n * this signature may be reused multiple times until the deadline\n * @return inputBalanceChange Actual amount of input tokens spent\n * @return actualOutputAmount Actual amount of output tokens returned to the user\n * @return protocolFeeAmount Actual amount of output tokens charged as protocol fee\n * @return marketplaceFeeAmount Actual amount of output tokens charged as marketplace fee\n */\n function execute(\n Input calldata input,\n AbsoluteTokenAmount calldata absoluteOutput,\n SwapDescription calldata swapDescription,\n AccountSignature calldata accountSignature,\n ProtocolFeeSignature calldata protocolFeeSignature\n ) external payable\n returns (\n uint256 inputBalanceChange,\n uint256 actualOutputAmount,\n uint256 protocolFeeAmount,\n uint256 marketplaceFeeAmount\n );\n\n /**\n * @notice Function for the account signature cancellation\n * @param input Token and amount (relative or absolute) to be taken from the account address,\n * also, permit type and call data may provided if required\n * @dev `address(0)` may be used as input token address,\n * in this case no tokens will be taken from the user\n * @param absoluteOutput Token and absolute amount requirement\n * to be returned to the account address\n * @dev `address(0)` may be used as output token address,\n * in this case no tokens will be returned to the user, no fees are applied\n * @param swapDescription Swap description with the following elements:\n * - Whether the inputs or outputs are fixed\n * - Protocol fee share and beneficiary address\n * - Marketplace fee share and beneficiary address\n * - Address of the account executing the swap\n * - Address of the Caller contract to be called\n * - Calldata for the call to the Caller contract\n * @param accountSignature Signature for the relayed transaction\n * (checks that account address is the one who actually did a signature)\n */\n function cancelAccountSignature(\n Input calldata input,\n AbsoluteTokenAmount calldata absoluteOutput,\n SwapDescription calldata swapDescription,\n AccountSignature calldata accountSignature\n ) external;\n}\n"},"contracts/interfaces/ISignatureVerifier.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport { EIP712 } from \"@openzeppelin/contracts/utils/cryptography/draft-EIP712.sol\";\nimport { ECDSA } from \"@openzeppelin/contracts/utils/cryptography/ECDSA.sol\";\n\nimport { AbsoluteTokenAmount, Input, SwapDescription } from \"../shared/Structs.sol\";\n\ninterface ISignatureVerifier {\n /**\n * @param hashToCheck Hash to be checked\n * @return hashUsed True if hash has already been used by this account address\n */\n function isHashUsed(bytes32 hashToCheck) external view returns (bool hashUsed);\n\n /**\n * @param input Input struct to be hashed\n * @param requiredOutput AbsoluteTokenAmount struct to be hashed\n * @param swapDescription SwapDescription struct to be hashed\n * @param salt Salt parameter preventing double-spending to be hashed\n * @return hashedData Execute data hashed with domainSeparator\n */\n function hashAccountSignatureData(\n Input memory input,\n AbsoluteTokenAmount memory requiredOutput,\n SwapDescription memory swapDescription,\n uint256 salt\n ) external view returns (bytes32 hashedData);\n\n /**\n * @param input Input struct to be hashed\n * @param requiredOutput AbsoluteTokenAmount struct to be hashed\n * @param swapDescription SwapDescription struct to be hashed\n * @param deadline Deadline showing the timestamp signature is valid up to\n * @return hashedData Execute data hashed with domainSeparator\n */\n function hashProtocolFeeSignatureData(\n Input memory input,\n AbsoluteTokenAmount memory requiredOutput,\n SwapDescription memory swapDescription,\n uint256 deadline\n ) external view returns (bytes32 hashedData);\n}\n"},"contracts/interfaces/ITokensHandler.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\ninterface ITokensHandler {\n /**\n * @notice Returns tokens mistakenly sent to this contract\n * @param token Address of token\n * @param beneficiary Address that will receive tokens\n * @dev Can be called only by the owner\n */\n function returnLostTokens(address token, address payable beneficiary) external;\n}\n"},"contracts/interfaces/IUniswapV2Pair.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\n/**\n * @dev UniswapV2Pair contract interface.\n * The UniswapV2Pair contract is available here\n * github.com/Uniswap/uniswap-v2-core/blob/master/contracts/UniswapV2Pair.sol.\n */\ninterface IUniswapV2Pair {\n function mint(address) external returns (uint256);\n\n function burn(address) external returns (uint256, uint256);\n\n function swap(\n uint256,\n uint256,\n address,\n bytes calldata\n ) external;\n\n function getReserves()\n external\n view\n returns (\n uint112,\n uint112,\n uint32\n );\n\n function token0() external view returns (address);\n\n function token1() external view returns (address);\n}\n"},"contracts/interfaces/IUniswapV2Router02.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\n/**\n * @dev UniswapV2Router02 contract interface.\n * The UniswapV2Router02 contract is available here\n * github.com/Uniswap/uniswap-v2-periphery/blob/master/contracts/UniswapV2Router02.sol.\n */\ninterface IUniswapV2Router02 {\n function swapExactETHForTokens(\n uint256,\n address[] calldata,\n address,\n uint256\n ) external payable;\n}\n"},"contracts/interfaces/IWETH9.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\n/**\n * @dev WETH9 contract interface.\n * Only the functions required for WethInteractiveAdapter contract are added.\n * The WETH9 contract is available here\n * github.com/0xProject/0x-monorepo/blob/development/contracts/erc20/contracts/src/WETH9.sol.\n */\ninterface IWETH9 {\n function deposit() external payable;\n\n function withdraw(uint256) external;\n\n function balanceOf(address) external view returns (uint256);\n}\n"},"contracts/interfaces/IYearnPermit.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport { IERC20 } from \"@openzeppelin/contracts/token/ERC20/IERC20.sol\";\n\ninterface IYearnPermit is IERC20 {\n function permit(\n address,\n address,\n uint256,\n uint256,\n bytes calldata\n ) external;\n}\n"},"contracts/router/ProtocolFee.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport { IProtocolFee } from \"../interfaces/IProtocolFee.sol\";\nimport { BadFeeShare, ZeroFeeBeneficiary, ZeroSigner } from \"../shared/Errors.sol\";\nimport { Ownable } from \"../shared/Ownable.sol\";\nimport { Fee } from \"../shared/Structs.sol\";\n\n// solhint-disable code-complexity\ncontract ProtocolFee is IProtocolFee, Ownable {\n uint256 internal constant DELIMITER = 1e18; // 100%\n\n Fee private protocolFeeDefault_;\n address private protocolFeeSigner_;\n\n /**\n * @notice Emits old and new protocol fee signature signer\n * @param oldProtocolFeeSigner Old protocol fee signature signer\n * @param newProtocolFeeSigner New protocol fee signature signer\n */\n event ProtocolFeeSignerSet(\n address indexed oldProtocolFeeSigner,\n address indexed newProtocolFeeSigner\n );\n\n /**\n * @notice Emits old and new protocol fee defaults\n * @param oldProtocolFeeDefaultShare Old protocol fee default share\n * @param oldProtocolFeeDefaultBeneficiary Old protocol fee default beneficiary\n * @param newProtocolFeeDefaultShare New protocol fee default share\n * @param newProtocolFeeDefaultBeneficiary New protocol fee default beneficiary\n */\n event ProtocolFeeDefaultSet(\n uint256 oldProtocolFeeDefaultShare,\n address indexed oldProtocolFeeDefaultBeneficiary,\n uint256 newProtocolFeeDefaultShare,\n address indexed newProtocolFeeDefaultBeneficiary\n );\n\n /**\n * @inheritdoc IProtocolFee\n */\n function setProtocolFeeDefault(Fee calldata protocolFeeDefault) external override onlyOwner {\n if (protocolFeeDefault.share > uint256(0) && protocolFeeDefault.beneficiary == address(0))\n revert ZeroFeeBeneficiary();\n if (protocolFeeDefault.share > DELIMITER)\n revert BadFeeShare(protocolFeeDefault.share, DELIMITER);\n\n protocolFeeDefault_ = protocolFeeDefault;\n }\n\n /**\n * @inheritdoc IProtocolFee\n */\n function setProtocolFeeSigner(address signer) external override onlyOwner {\n if (signer == address(0)) revert ZeroSigner();\n\n protocolFeeSigner_ = signer;\n }\n\n /**\n * @inheritdoc IProtocolFee\n */\n function getProtocolFeeDefault() public view override returns (Fee memory protocolFeeDefault) {\n return protocolFeeDefault_;\n }\n\n /**\n * @inheritdoc IProtocolFee\n */\n function getProtocolFeeSigner() public view override returns (address protocolFeeSigner) {\n return protocolFeeSigner_;\n }\n}\n"},"contracts/router/Router.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport { ReentrancyGuard } from \"@openzeppelin/contracts/security/ReentrancyGuard.sol\";\nimport { SafeERC20 } from \"@openzeppelin/contracts/token/ERC20/utils/SafeERC20.sol\";\nimport { IERC20 } from \"@openzeppelin/contracts/token/ERC20/IERC20.sol\";\nimport { Address } from \"@openzeppelin/contracts/utils/Address.sol\";\nimport { SignatureChecker } from \"@openzeppelin/contracts/utils/cryptography/SignatureChecker.sol\";\n\nimport { ICaller } from \"../interfaces/ICaller.sol\";\nimport { IDAIPermit } from \"../interfaces/IDAIPermit.sol\";\nimport { IEIP2612 } from \"../interfaces/IEIP2612.sol\";\nimport { IRouter } from \"../interfaces/IRouter.sol\";\nimport { IYearnPermit } from \"../interfaces/IYearnPermit.sol\";\nimport { Base } from \"../shared/Base.sol\";\nimport { AmountType, PermitType, SwapType } from \"../shared/Enums.sol\";\nimport {\n BadAmount,\n BadAccount,\n BadAccountSignature,\n BadAmountType,\n BadFeeAmount,\n BadFeeBeneficiary,\n BadFeeShare,\n BadFeeSignature,\n ExceedingDelimiterAmount,\n ExceedingLimitFee,\n HighInputBalanceChange,\n InsufficientAllowance,\n InsufficientMsgValue,\n LowActualOutputAmount,\n NoneAmountType,\n NonePermitType,\n NoneSwapType,\n PassedDeadline\n} from \"../shared/Errors.sol\";\nimport { Ownable } from \"../shared/Ownable.sol\";\nimport {\n AbsoluteTokenAmount,\n AccountSignature,\n Fee,\n ProtocolFeeSignature,\n Input,\n Permit,\n SwapDescription,\n TokenAmount\n} from \"../shared/Structs.sol\";\nimport { TokensHandler } from \"../shared/TokensHandler.sol\";\n\nimport { ProtocolFee } from \"./ProtocolFee.sol\";\nimport { SignatureVerifier } from \"./SignatureVerifier.sol\";\n\n// solhint-disable code-complexity\ncontract Router is\n IRouter,\n Ownable,\n TokensHandler,\n SignatureVerifier(\"Zerion Router\", \"4\"),\n ProtocolFee,\n ReentrancyGuard\n{\n address internal constant ETH = 0xEeeeeEeeeEeEeeEeEeEeeEEEeeeeEeeeeeeeEEeE;\n\n /**\n * @inheritdoc IRouter\n */\n function cancelAccountSignature(\n Input calldata input,\n AbsoluteTokenAmount calldata output,\n SwapDescription calldata swapDescription,\n AccountSignature calldata accountSignature\n ) external override nonReentrant {\n if (msg.sender != swapDescription.account)\n revert BadAccount(msg.sender, swapDescription.account);\n\n validateAndExpireAccountSignature(input, output, swapDescription, accountSignature);\n }\n\n /**\n * @inheritdoc IRouter\n */\n function execute(\n Input calldata input,\n AbsoluteTokenAmount calldata output,\n SwapDescription calldata swapDescription,\n AccountSignature calldata accountSignature,\n ProtocolFeeSignature calldata protocolFeeSignature\n )\n external payable override nonReentrant\n returns (\n uint256 inputBalanceChange,\n uint256 actualOutputAmount,\n uint256 protocolFeeAmount,\n uint256 marketplaceFeeAmount\n )\n {\n validateProtocolFeeSignature(input, output, swapDescription, protocolFeeSignature);\n validateAndExpireAccountSignature(input, output, swapDescription, accountSignature);\n\n return execute(input, output, swapDescription);\n }\n\n /**\n * @dev Take tokens from the user, executes the swap,\n * do the security checks, and all the required transfers\n * @dev All the parameters are described in `execute()` function\n */\n function execute(\n Input calldata input,\n AbsoluteTokenAmount calldata output,\n SwapDescription calldata swapDescription\n )\n internal\n returns (\n uint256 inputBalanceChange,\n uint256 actualOutputAmount,\n uint256 protocolFeeAmount,\n uint256 marketplaceFeeAmount\n )\n {\n // Calculate absolute amount in case it was relative\n uint256 absoluteInputAmount = getAbsoluteInputAmount(\n input.tokenAmount,\n swapDescription.account\n );\n\n // Transfer input token (`msg.value` check for Ether) to this contract address,\n // do nothing in case of zero input token address\n address inputToken = input.tokenAmount.token;\n handleInput(inputToken, absoluteInputAmount, input.permit, swapDescription.account);\n\n // Calculate the initial balances for input and output tokens\n uint256 initialInputBalance = Base.getBalance(inputToken);\n uint256 initialOutputBalance = Base.getBalance(output.token);\n\n // Transfer tokens to the caller\n Base.transfer(inputToken, swapDescription.caller, absoluteInputAmount);\n\n // Call caller's `callBytes()` function with the provided calldata\n Address.functionCall(\n swapDescription.caller,\n abi.encodeCall(ICaller.callBytes, swapDescription.callerCallData),\n \"R: callBytes failed w/ no reason\"\n );\n\n // Calculate the balance changes for input and output tokens\n inputBalanceChange = initialInputBalance - Base.getBalance(inputToken);\n uint256 outputBalanceChange = Base.getBalance(output.token) - initialOutputBalance;\n\n // Check input requirements, prevent the underflow\n if (inputBalanceChange > absoluteInputAmount)\n revert HighInputBalanceChange(inputBalanceChange, absoluteInputAmount);\n\n // Calculate the refund amount\n uint256 refundAmount = absoluteInputAmount - inputBalanceChange;\n\n // Calculate returned output token amount and fees amounts\n (actualOutputAmount, protocolFeeAmount, marketplaceFeeAmount) = getReturnedAmounts(\n swapDescription.swapType,\n swapDescription.protocolFee,\n swapDescription.marketplaceFee,\n output,\n outputBalanceChange\n );\n\n // Check output requirements, prevent revert on transfers\n if (actualOutputAmount < output.absoluteAmount)\n revert LowActualOutputAmount(actualOutputAmount, output.absoluteAmount);\n\n // Transfer the refund back to the user,\n // do nothing in zero input token case as `refundAmount` is zero\n Base.transfer(inputToken, swapDescription.account, refundAmount);\n\n // Transfer the output tokens to the user,\n // do nothing in zero output token case as `actualOutputAmount` is zero\n Base.transfer(output.token, swapDescription.account, actualOutputAmount);\n\n // Transfer protocol fee,\n // do nothing in zero output token case as `protocolFeeAmount` is zero\n Base.transfer(output.token, swapDescription.protocolFee.beneficiary, protocolFeeAmount);\n\n // Transfer marketplace fee,\n // do nothing in zero output token case as `marketplaceFeeAmount` is zero\n Base.transfer(\n output.token,\n swapDescription.marketplaceFee.beneficiary,\n marketplaceFeeAmount\n );\n\n // Emit event so one could track the swap\n emitExecuted(\n input,\n output,\n swapDescription,\n absoluteInputAmount,\n inputBalanceChange,\n actualOutputAmount,\n protocolFeeAmount,\n marketplaceFeeAmount\n );\n\n // Return this contract's balance changes,\n // output token balance change is split into 3 values\n return (inputBalanceChange, actualOutputAmount, protocolFeeAmount, marketplaceFeeAmount);\n }\n\n /**\n * @dev In ERC20 token case, transfers input token from the accound address to this contract,\n * calls `permit()` function if allowance is not enough and permit call data is provided\n * @dev Checks `msg.value` in Ether case\n * @dev Does nothing in zero input token address case\n * @param token Input token address (may be Ether or zero)\n * @param amount Input token amount\n * @param permit Permit type and call data, which is used if allowance is not enough\n * @param account Address of the account to take tokens from\n */\n function handleInput(\n address token,\n uint256 amount,\n Permit calldata permit,\n address account\n ) internal {\n if (token == address(0)) return;\n\n if (token == ETH) return handleETHInput(amount);\n\n handleTokenInput(token, amount, permit, account);\n }\n\n /**\n * @dev Checks `msg.value` to be greater or equal to the Ether absolute amount to be used\n * @param amount Ether absolute amount to be used\n */\n function handleETHInput(uint256 amount) internal {\n if (msg.value < amount) revert InsufficientMsgValue(msg.value, amount);\n }\n\n /**\n * @dev Transfers input token from the accound address to this contract,\n * calls `permit()` function if allowance is not enough and permit call data is provided\n * @param token Token to be taken from the account address\n * @param amount Input token absolute amount to be taken from the account\n * @param permit Permit type and call data, which is used if allowance is not enough\n * @param account Address of the account to take tokens from\n */\n function handleTokenInput(\n address token,\n uint256 amount,\n Permit calldata permit,\n address account\n ) internal {\n uint256 allowance = IERC20(token).allowance(account, address(this));\n if (allowance < amount) {\n if (permit.permitCallData.length == uint256(0))\n revert InsufficientAllowance(allowance, amount);\n\n Address.functionCall(\n token,\n abi.encodePacked(getPermitSelector(permit.permitType), permit.permitCallData),\n \"R: permit\"\n );\n }\n\n SafeERC20.safeTransferFrom(IERC20(token), account, address(this), amount);\n }\n\n /**\n * @notice Emits Executed event\n * @param input Input described in `execute()` function\n * @param output Output described in `execute()` function\n * @param swapDescription Swap parameters described in `execute()` function\n * @param absoluteInputAmount Max amount of input token to be taken from the account address\n * @param inputBalanceChange Actual amount of input token taken from the account address\n * @param returnedAmount Actual amount of tokens returned to the account address\n * @param protocolFeeAmount Protocol fee amount\n * @param marketplaceFeeAmount Marketplace fee amount\n */\n function emitExecuted(\n Input calldata input,\n AbsoluteTokenAmount calldata output,\n SwapDescription calldata swapDescription,\n uint256 absoluteInputAmount,\n uint256 inputBalanceChange,\n uint256 returnedAmount,\n uint256 protocolFeeAmount,\n uint256 marketplaceFeeAmount\n ) internal {\n emit Executed(\n input.tokenAmount.token,\n absoluteInputAmount,\n inputBalanceChange,\n output.token,\n output.absoluteAmount,\n returnedAmount,\n protocolFeeAmount,\n marketplaceFeeAmount,\n swapDescription,\n msg.sender\n );\n }\n\n /**\n * @dev Validates signature for the account (reverts on used signatures) and marks it as used\n * @dev All the parameters are described in `execute()` function\n * @dev In case of empty signature, account address must be equal to the sender address\n */\n function validateAndExpireAccountSignature(\n Input calldata input,\n AbsoluteTokenAmount calldata output,\n SwapDescription calldata swapDescription,\n AccountSignature calldata accountSignature\n ) internal {\n if (accountSignature.signature.length == uint256(0)) {\n if (msg.sender != swapDescription.account)\n revert BadAccount(msg.sender, swapDescription.account);\n return;\n }\n bytes32 hashedAccountSignatureData = hashAccountSignatureData(\n input,\n output,\n swapDescription,\n accountSignature.salt\n );\n\n if (\n !SignatureChecker.isValidSignatureNow(\n swapDescription.account,\n hashedAccountSignatureData,\n accountSignature.signature\n )\n ) revert BadAccountSignature();\n\n markHashUsed(hashedAccountSignatureData);\n }\n\n /**\n * @dev Validates protocol fee signature (reverts on expired signatures)\n * @dev All the parameters are described in `execute()` function\n * @dev In case of empty signature, protocol fee must be equal to the default one\n * @dev Signature is valid only until the deadline\n * @dev Custom protocol fee can be lower or equal to the default one\n */\n function validateProtocolFeeSignature(\n Input calldata input,\n AbsoluteTokenAmount calldata output,\n SwapDescription calldata swapDescription,\n ProtocolFeeSignature calldata protocolFeeSignature\n ) internal view {\n Fee memory baseProtocolFee = getProtocolFeeDefault();\n Fee memory protocolFee = swapDescription.protocolFee;\n\n if (protocolFeeSignature.signature.length == uint256(0)) {\n if (protocolFee.share != baseProtocolFee.share)\n revert BadFeeShare(protocolFee.share, baseProtocolFee.share);\n if (protocolFee.beneficiary != baseProtocolFee.beneficiary)\n revert BadFeeBeneficiary(protocolFee.beneficiary, baseProtocolFee.beneficiary);\n return;\n }\n\n if (protocolFee.share > baseProtocolFee.share)\n revert ExceedingLimitFee(protocolFee.share, baseProtocolFee.share);\n\n bytes32 hashedProtocolFeeSignatureData = hashProtocolFeeSignatureData(\n input,\n output,\n swapDescription,\n protocolFeeSignature.deadline\n );\n\n if (\n !SignatureChecker.isValidSignatureNow(\n getProtocolFeeSigner(),\n hashedProtocolFeeSignatureData,\n protocolFeeSignature.signature\n )\n ) revert BadFeeSignature();\n\n // solhint-disable not-rely-on-time\n if (block.timestamp > protocolFeeSignature.deadline)\n revert PassedDeadline(block.timestamp, protocolFeeSignature.deadline);\n // solhint-enable not-rely-on-time\n }\n\n /**\n * @dev Calculate absolute input amount given token amount from `execute()` function inputs\n * @dev Relative amount type cannot be used with Ether or zero token address\n * @dev Only zero amount can be used with zero token address\n * @param tokenAmount Token address, its amount, and amount type\n * @param account Address of the account to transfer token from\n * @return absoluteTokenAmount Absolute token amount\n */\n function getAbsoluteInputAmount(TokenAmount calldata tokenAmount, address account)\n internal\n view\n returns (uint256 absoluteTokenAmount)\n {\n AmountType amountType = tokenAmount.amountType;\n address token = tokenAmount.token;\n uint256 amount = tokenAmount.amount;\n\n if (amountType == AmountType.None) revert NoneAmountType();\n\n if (token == address(0) && amount > uint256(0)) revert BadAmount(amount, uint256(0));\n\n if (amountType == AmountType.Absolute) return amount;\n\n if (token == ETH || token == address(0))\n revert BadAmountType(amountType, AmountType.Absolute);\n\n if (amount > DELIMITER) revert ExceedingDelimiterAmount(amount);\n\n if (amount == DELIMITER) return IERC20(token).balanceOf(account);\n\n return (IERC20(token).balanceOf(account) * amount) / DELIMITER;\n }\n\n /**\n * @dev Calculates returned amount, protocol fee amount, and marketplace fee amount\n * - In case of fixed inputs, returned amount is\n * `outputBalanceChange` multiplied by (1 - total fee share)\n * This shows that actual fee is a share of output\n * - In case of fixed outputs, returned amount is `outputAmount`\n * This proves that outputs are fixed\n * @param swapType Whether the inputs or outputs are fixed\n * @param protocolFee Protocol fee share and beneficiary address\n * @param marketplaceFee Marketplace fee share and beneficiary address\n * @param output Output token and absolute amount required to be returned\n * @param outputBalanceChange Output token absolute amount actually returned\n * @return returnedAmount Amount of output token returned to the account\n * @return protocolFeeAmount Amount of output token sent to the protocol fee beneficiary\n * @return marketplaceFeeAmount Amount of output token sent to the marketplace fee beneficiary\n * @dev Returns all zeroes in case of zero output token\n */\n function getReturnedAmounts(\n SwapType swapType,\n Fee calldata protocolFee,\n Fee calldata marketplaceFee,\n AbsoluteTokenAmount calldata output,\n uint256 outputBalanceChange\n )\n internal\n pure\n returns (\n uint256 returnedAmount,\n uint256 protocolFeeAmount,\n uint256 marketplaceFeeAmount\n )\n {\n if (swapType == SwapType.None) revert NoneSwapType();\n\n uint256 outputAbsoluteAmount = output.absoluteAmount;\n if (output.token == address(0)) {\n if (outputAbsoluteAmount > uint256(0))\n revert BadAmount(outputAbsoluteAmount, uint256(0));\n return (uint256(0), uint256(0), uint256(0));\n }\n\n if (outputBalanceChange == uint256(0)) return (uint256(0), uint256(0), uint256(0));\n\n uint256 totalFeeShare = protocolFee.share + marketplaceFee.share;\n\n if (totalFeeShare == uint256(0)) return (outputBalanceChange, uint256(0), uint256(0));\n\n if (totalFeeShare > DELIMITER) revert BadFeeShare(totalFeeShare, DELIMITER);\n\n // The most tricky and gentle place connected with fees\n // We return either the amount the user requested\n // or the output balance change divided by (1 + fee percentage)\n // Plus one in the fixed inputs case is used to eliminate precision issues\n returnedAmount = (swapType == SwapType.FixedOutputs)\n ? output.absoluteAmount\n : ((outputBalanceChange * DELIMITER) / (DELIMITER + totalFeeShare)) + uint256(1);\n\n uint256 totalFeeAmount = outputBalanceChange - returnedAmount;\n // This check is important in fixed outputs case as we never actually check that\n // total fee amount is not too large and should always just pass in fixed inputs case\n if (totalFeeAmount * DELIMITER > totalFeeShare * returnedAmount)\n revert BadFeeAmount(totalFeeAmount, (returnedAmount * totalFeeShare) / DELIMITER);\n\n protocolFeeAmount = (totalFeeAmount * protocolFee.share) / totalFeeShare;\n marketplaceFeeAmount = totalFeeAmount - protocolFeeAmount;\n }\n\n /**\n * @dev Maps permit type to permit selector\n * @param permitType PermitType enum variable with permit type\n * @return selector permit() function signature corresponding to the given permit type\n */\n function getPermitSelector(PermitType permitType) internal pure returns (bytes4 selector) {\n if (permitType == PermitType.None) revert NonePermitType();\n\n /*\n * Constants of non-value type not yet implemented, so we have to use else-if's\n * bytes4[3] internal constant PERMIT_SELECTORS = [\n * // PermitType.EIP2612\n * // keccak256(abi.encodePacked(\n * // 'permit(address,address,uint256,uint256,uint8,bytes32,bytes32)'\n * // ))\n * 0xd505accf,\n * // PermitType.DAI\n * // keccak256(abi.encodePacked(\n * // 'permit(address,address,uint256,uint256,bool,uint8,bytes32,bytes32)'\n * // ))\n * 0x8fcbaf0c,\n * // PermitType.Yearn\n * // keccak256(abi.encodePacked('permit(address,address,uint256,uint256,bytes)'))\n * 0x9fd5a6cf\n * ];\n */\n if (permitType == PermitType.EIP2612) return IEIP2612.permit.selector;\n if (permitType == PermitType.DAI) return IDAIPermit.permit.selector;\n if (permitType == PermitType.Yearn) return IYearnPermit.permit.selector;\n // There is no else case here, however, is marked as uncovered by tests\n }\n}\n"},"contracts/router/SignatureVerifier.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport { EIP712 } from \"@openzeppelin/contracts/utils/cryptography/draft-EIP712.sol\";\n\nimport { ISignatureVerifier } from \"../interfaces/ISignatureVerifier.sol\";\nimport { UsedHash } from \"../shared/Errors.sol\";\nimport {\n AbsoluteTokenAmount,\n AccountSignature,\n ProtocolFeeSignature,\n Fee,\n Input,\n Permit,\n SwapDescription,\n TokenAmount\n} from \"../shared/Structs.sol\";\n\ncontract SignatureVerifier is ISignatureVerifier, EIP712 {\n mapping(bytes32 => bool) private isHashUsed_;\n\n bytes32 internal constant ACCOUNT_SIGNATURE_TYPEHASH =\n keccak256(\n abi.encodePacked(\n \"AccountSignature(\",\n \"Input input,\",\n \"AbsoluteTokenAmount output,\",\n \"SwapDescription swapDescription,\",\n \"uint256 salt\",\n \")\",\n \"AbsoluteTokenAmount(address token,uint256 absoluteAmount)\",\n \"Fee(uint256 share,address beneficiary)\",\n \"Input(TokenAmount tokenAmount,Permit permit)\",\n \"Permit(uint8 permitType,bytes permitCallData)\",\n \"SwapDescription(\",\n \"uint8 swapType,\",\n \"Fee protocolFee,\",\n \"Fee marketplaceFee,\",\n \"address account,\",\n \"address caller,\",\n \"bytes callerCallData\",\n \")\",\n \"TokenAmount(address token,uint256 amount,uint8 amountType)\"\n )\n );\n bytes32 internal constant PROTOCOL_FEE_SIGNATURE_TYPEHASH =\n keccak256(\n abi.encodePacked(\n \"ProtocolFeeSignature(\",\n \"Input input,\",\n \"AbsoluteTokenAmount output,\",\n \"SwapDescription swapDescription,\",\n \"uint256 deadline\",\n \")\",\n \"AbsoluteTokenAmount(address token,uint256 absoluteAmount)\",\n \"Fee(uint256 share,address beneficiary)\",\n \"Input(TokenAmount tokenAmount,Permit permit)\",\n \"Permit(uint8 permitType,bytes permitCallData)\",\n \"SwapDescription(\",\n \"uint8 swapType,\",\n \"Fee protocolFee,\",\n \"Fee marketplaceFee,\",\n \"address account,\",\n \"address caller,\",\n \"bytes callerCallData\",\n \")\",\n \"TokenAmount(address token,uint256 amount,uint8 amountType)\"\n )\n );\n bytes32 internal constant ABSOLUTE_TOKEN_AMOUNT_TYPEHASH =\n keccak256(abi.encodePacked(\"AbsoluteTokenAmount(address token,uint256 absoluteAmount)\"));\n bytes32 internal constant SWAP_DESCRIPTION_TYPEHASH =\n keccak256(\n abi.encodePacked(\n \"SwapDescription(\",\n \"uint8 swapType,\",\n \"Fee protocolFee,\",\n \"Fee marketplaceFee,\",\n \"address account,\",\n \"address caller,\",\n \"bytes callerCallData\",\n \")\",\n \"Fee(uint256 share,address beneficiary)\"\n )\n );\n bytes32 internal constant FEE_TYPEHASH =\n keccak256(abi.encodePacked(\"Fee(uint256 share,address beneficiary)\"));\n bytes32 internal constant INPUT_TYPEHASH =\n keccak256(\n abi.encodePacked(\n \"Input(TokenAmount tokenAmount,Permit permit)\",\n \"Permit(uint8 permitType,bytes permitCallData)\",\n \"TokenAmount(address token,uint256 amount,uint8 amountType)\"\n )\n );\n bytes32 internal constant PERMIT_TYPEHASH =\n keccak256(abi.encodePacked(\"Permit(uint8 permitType,bytes permitCallData)\"));\n bytes32 internal constant TOKEN_AMOUNT_TYPEHASH =\n keccak256(abi.encodePacked(\"TokenAmount(address token,uint256 amount,uint8 amountType)\"));\n\n /**\n * @param name String with EIP712 name.\n * @param version String with EIP712 version.\n */\n constructor(string memory name, string memory version) EIP712(name, version) {\n // solhint-disable-previous-line no-empty-blocks\n }\n\n /**\n * @inheritdoc ISignatureVerifier\n */\n function isHashUsed(bytes32 hashToCheck) external view override returns (bool hashUsed) {\n return isHashUsed_[hashToCheck];\n }\n\n /**\n * @inheritdoc ISignatureVerifier\n */\n function hashAccountSignatureData(\n Input memory input,\n AbsoluteTokenAmount memory output,\n SwapDescription memory swapDescription,\n uint256 salt\n ) public view override returns (bytes32 hashedData) {\n return\n _hashTypedDataV4(\n hash(ACCOUNT_SIGNATURE_TYPEHASH, input, output, swapDescription, salt)\n );\n }\n\n /**\n * @inheritdoc ISignatureVerifier\n */\n function hashProtocolFeeSignatureData(\n Input memory input,\n AbsoluteTokenAmount memory output,\n SwapDescription memory swapDescription,\n uint256 deadline\n ) public view override returns (bytes32 hashedData) {\n return\n _hashTypedDataV4(\n hash(PROTOCOL_FEE_SIGNATURE_TYPEHASH, input, output, swapDescription, deadline)\n );\n }\n\n /**\n * @dev Marks hash as used by the given account.\n * @param hashToMark Hash to be marked as used one.\n */\n function markHashUsed(bytes32 hashToMark) internal {\n if (isHashUsed_[hashToMark]) revert UsedHash(hashToMark);\n\n isHashUsed_[hashToMark] = true;\n }\n\n /**\n * @param typehash The required signature typehash\n * @param input Input described in `hashDada()` function\n * @param output Outut described in `hashDada()` function\n * @param swapDescription Swap parameters described in `hashDada()` function\n * @param saltOrDeadline Salt/deadline parameter preventing double-spending\n * @return `execute()` function data hashed\n */\n function hash(\n bytes32 typehash,\n Input memory input,\n AbsoluteTokenAmount memory output,\n SwapDescription memory swapDescription,\n uint256 saltOrDeadline\n ) internal pure returns (bytes32) {\n return\n keccak256(\n abi.encode(\n typehash,\n hash(input),\n hash(output),\n hash(swapDescription),\n saltOrDeadline\n )\n );\n }\n\n /**\n * @param input Input struct to be hashed\n * @return Hashed Input structs array\n */\n function hash(Input memory input) internal pure returns (bytes32) {\n return keccak256(abi.encode(INPUT_TYPEHASH, hash(input.tokenAmount), hash(input.permit)));\n }\n\n /**\n * @param tokenAmount TokenAmount struct to be hashed\n * @return Hashed TokenAmount struct\n */\n function hash(TokenAmount memory tokenAmount) internal pure returns (bytes32) {\n return\n keccak256(\n abi.encode(\n TOKEN_AMOUNT_TYPEHASH,\n tokenAmount.token,\n tokenAmount.amount,\n tokenAmount.amountType\n )\n );\n }\n\n /**\n * @param permit Permit struct to be hashed\n * @return Hashed Permit struct\n */\n function hash(Permit memory permit) internal pure returns (bytes32) {\n return\n keccak256(\n abi.encode(\n PERMIT_TYPEHASH,\n permit.permitType,\n keccak256(abi.encodePacked(permit.permitCallData))\n )\n );\n }\n\n /**\n * @param absoluteTokenAmount AbsoluteTokenAmount struct to be hashed\n * @return Hashed AbsoluteTokenAmount struct\n */\n function hash(AbsoluteTokenAmount memory absoluteTokenAmount) internal pure returns (bytes32) {\n return\n keccak256(\n abi.encode(\n ABSOLUTE_TOKEN_AMOUNT_TYPEHASH,\n absoluteTokenAmount.token,\n absoluteTokenAmount.absoluteAmount\n )\n );\n }\n\n /**\n * @param swapDescription SwapDescription struct to be hashed\n * @return Hashed SwapDescription struct\n */\n function hash(SwapDescription memory swapDescription) internal pure returns (bytes32) {\n return\n keccak256(\n abi.encode(\n SWAP_DESCRIPTION_TYPEHASH,\n swapDescription.swapType,\n hash(swapDescription.protocolFee),\n hash(swapDescription.marketplaceFee),\n swapDescription.account,\n swapDescription.caller,\n keccak256(abi.encodePacked(swapDescription.callerCallData))\n )\n );\n }\n\n /**\n * @param fee Fee struct to be hashed\n * @return Hashed Fee struct\n */\n function hash(Fee memory fee) internal pure returns (bytes32) {\n return keccak256(abi.encode(FEE_TYPEHASH, fee.share, fee.beneficiary));\n }\n}\n"},"contracts/shared/Base.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport { SafeERC20 } from \"@openzeppelin/contracts/token/ERC20/utils/SafeERC20.sol\";\nimport { IERC20 } from \"@openzeppelin/contracts/token/ERC20/IERC20.sol\";\nimport { Address } from \"@openzeppelin/contracts/utils/Address.sol\";\n\nimport { FailedEtherTransfer, ZeroReceiver } from \"./Errors.sol\";\n\n/**\n * @title Library unifying transfer, approval, and getting balance for ERC20 tokens and Ether\n */\nlibrary Base {\n address internal constant ETH = 0xEeeeeEeeeEeEeeEeEeEeeEEEeeeeEeeeeeeeEEeE;\n\n /**\n * @notice Transfers tokens or Ether\n * @param token Address of the token or `ETH` in case of Ether transfer\n * @param receiver Address of the account that will receive funds\n * @param amount Amount to be transferred\n * @dev This function is compatible only with ERC20 tokens and Ether, not ERC721/ERC1155 tokens\n * @dev Reverts on zero `receiver`, does nothing for zero amount\n * @dev Should not be used with zero token address\n */\n function transfer(\n address token,\n address receiver,\n uint256 amount\n ) internal {\n if (amount == uint256(0)) return;\n if (receiver == address(0)) revert ZeroReceiver();\n\n if (token == ETH) {\n Address.sendValue(payable(receiver), amount);\n } else {\n SafeERC20.safeTransfer(IERC20(token), receiver, amount);\n }\n }\n\n /**\n * @notice Safely approves type(uint256).max tokens\n * @param token Address of the token\n * @param spender Address to approve tokens to\n * @param amount Tokens amount to be approved\n * @dev Should not be used with zero or `ETH` token address\n */\n function safeApproveMax(\n address token,\n address spender,\n uint256 amount\n ) internal {\n uint256 allowance = IERC20(token).allowance(address(this), spender);\n if (allowance < amount) {\n if (allowance > uint256(0)) {\n SafeERC20.safeApprove(IERC20(token), spender, uint256(0));\n }\n SafeERC20.safeApprove(IERC20(token), spender, type(uint256).max);\n }\n }\n\n /**\n * @notice Calculates the token balance for the given account\n * @param token Address of the token\n * @param account Address of the account\n * @dev Should not be used with zero token address\n */\n function getBalance(address token, address account) internal view returns (uint256) {\n if (token == ETH) return account.balance;\n\n return IERC20(token).balanceOf(account);\n }\n\n /**\n * @notice Calculates the token balance for `this` contract address\n * @param token Address of the token\n * @dev Returns `0` for zero token address in order to handle empty token case\n */\n function getBalance(address token) internal view returns (uint256) {\n if (token == address(0)) return uint256(0);\n\n return Base.getBalance(token, address(this));\n }\n}\n"},"contracts/shared/Enums.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nenum ActionType {\n None,\n Deposit,\n Withdraw\n}\n\nenum AmountType {\n None,\n Relative,\n Absolute\n}\n\nenum SwapType {\n None,\n FixedInputs,\n FixedOutputs\n}\n\nenum PermitType {\n None,\n EIP2612,\n DAI,\n Yearn\n}\n"},"contracts/shared/Errors.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport { ActionType, AmountType, PermitType, SwapType } from \"./Enums.sol\";\nimport { Fee } from \"./Structs.sol\";\n\nerror BadAccount(address account, address expectedAccount);\nerror BadAccountSignature();\nerror BadAmount(uint256 amount, uint256 requiredAmount);\nerror BadAmountType(AmountType amountType, AmountType requiredAmountType);\nerror BadFee(Fee fee, Fee baseProtocolFee);\nerror BadFeeAmount(uint256 actualFeeAmount, uint256 expectedFeeAmount);\nerror BadFeeSignature();\nerror BadFeeShare(uint256 protocolFeeShare, uint256 baseProtocolFeeShare);\nerror BadFeeBeneficiary(address protocolFeeBanaficiary, address baseProtocolFeeBeneficiary);\nerror BadLength(uint256 length, uint256 requiredLength);\nerror BadMsgSender(address msgSender, address requiredMsgSender);\nerror BadProtocolAdapterName(bytes32 protocolAdapterName);\nerror BadToken(address token);\nerror ExceedingDelimiterAmount(uint256 amount);\nerror ExceedingLimitFee(uint256 feeShare, uint256 feeLimit);\nerror FailedEtherTransfer(address to);\nerror HighInputBalanceChange(uint256 inputBalanceChange, uint256 requiredInputBalanceChange);\nerror InconsistentPairsAndDirectionsLengths(uint256 pairsLength, uint256 directionsLength);\nerror InputSlippage(uint256 amount, uint256 requiredAmount);\nerror InsufficientAllowance(uint256 allowance, uint256 requiredAllowance);\nerror InsufficientMsgValue(uint256 msgValue, uint256 requiredMsgValue);\nerror LowActualOutputAmount(uint256 actualOutputAmount, uint256 requiredActualOutputAmount);\nerror LowReserve(uint256 reserve, uint256 requiredReserve);\nerror NoneActionType();\nerror NoneAmountType();\nerror NonePermitType();\nerror NoneSwapType();\nerror PassedDeadline(uint256 timestamp, uint256 deadline);\nerror TooLowBaseFeeShare(uint256 baseProtocolFeeShare, uint256 baseProtocolFeeShareLimit);\nerror UsedHash(bytes32 hash);\nerror ZeroReceiver();\nerror ZeroAmountIn();\nerror ZeroAmountOut();\nerror ZeroFeeBeneficiary();\nerror ZeroLength();\nerror ZeroProtocolAdapterRegistry();\nerror ZeroSigner();\nerror ZeroSwapPath();\nerror ZeroTarget();\n"},"contracts/shared/Ownable.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\n/**\n * @title Abstract contract with basic Ownable functionality and two-step ownership transfer\n */\nabstract contract Ownable {\n address private pendingOwner_;\n address private owner_;\n\n /**\n * @notice Emits old and new pending owners\n * @param oldPendingOwner Old pending owner\n * @param newPendingOwner New pending owner\n */\n event PendingOwnerSet(address indexed oldPendingOwner, address indexed newPendingOwner);\n\n /**\n * @notice Emits old and new owners\n * @param oldOwner Old contract's owner\n * @param newOwner New contract's owner\n */\n event OwnerSet(address indexed oldOwner, address indexed newOwner);\n\n modifier onlyPendingOwner() {\n require(msg.sender == pendingOwner_, \"O: only pending owner\");\n _;\n }\n\n modifier onlyOwner() {\n require(msg.sender == owner_, \"O: only owner\");\n _;\n }\n\n /**\n * @notice Initializes owner variable with msg.sender address\n */\n constructor() {\n emit OwnerSet(address(0), msg.sender);\n\n owner_ = msg.sender;\n }\n\n /**\n * @notice Sets pending owner to the `newPendingOwner` address\n * @param newPendingOwner Address of new pending owner\n * @dev The function is callable only by the owner\n */\n function setPendingOwner(address newPendingOwner) external onlyOwner {\n emit PendingOwnerSet(pendingOwner_, newPendingOwner);\n\n pendingOwner_ = newPendingOwner;\n }\n\n /**\n * @notice Sets owner to the pending owner\n * @dev The function is callable only by the pending owner\n */\n function setOwner() external onlyPendingOwner {\n emit OwnerSet(owner_, msg.sender);\n\n owner_ = msg.sender;\n delete pendingOwner_;\n }\n\n /**\n * @return owner Owner of the contract\n */\n function getOwner() external view returns (address owner) {\n return owner_;\n }\n\n /**\n * @return pendingOwner Pending owner of the contract\n */\n function getPendingOwner() external view returns (address pendingOwner) {\n return pendingOwner_;\n }\n}\n"},"contracts/shared/Structs.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport { ActionType, AmountType, PermitType, SwapType } from \"./Enums.sol\";\n\n//=============================== Adapters Managers Structs ====================================\n\n// The struct consists of adapter name and address\nstruct AdapterNameAndAddress {\n bytes32 name;\n address adapter;\n}\n\n// The struct consists of token and its adapter name\nstruct TokenAndAdapterName {\n address token;\n bytes32 name;\n}\n\n// The struct consists of hash (hash of token's bytecode or address) and its adapter name\nstruct HashAndAdapterName {\n bytes32 hash;\n bytes32 name;\n}\n\n// The struct consists of TokenBalanceMeta structs for\n// (base) token and its underlying tokens (if any)\nstruct FullTokenBalance {\n TokenBalanceMeta base;\n TokenBalanceMeta[] underlying;\n}\n\n// The struct consists of TokenBalance struct with token address and absolute amount\n// and ERC20Metadata struct with ERC20-style metadata\n// 0xEeee...EEeE address is used for Ether\nstruct TokenBalanceMeta {\n TokenBalance tokenBalance;\n ERC20Metadata erc20metadata;\n}\n\n// The struct consists of ERC20-style token metadata\nstruct ERC20Metadata {\n string name;\n string symbol;\n uint8 decimals;\n}\n\n// The struct consists of protocol adapter's name and array of TokenBalance structs\n// with token addresses and absolute amounts\nstruct AdapterBalance {\n bytes32 name;\n TokenBalance[] tokenBalances;\n}\n\n// The struct consists of protocol adapter's name and array of supported tokens' addresses\nstruct AdapterTokens {\n bytes32 name;\n address[] tokens;\n}\n\n// The struct consists of token address and its absolute amount (may be negative)\n// 0xEeee...EEeE is used for Ether\nstruct TokenBalance {\n address token;\n int256 amount;\n}\n\n//=============================== Interactive Adapters Structs ====================================\n\n// The struct consists of swap type, fee descriptions (share & beneficiary), account address,\n// and Caller contract address with call data used for the call\nstruct SwapDescription {\n SwapType swapType;\n Fee protocolFee;\n Fee marketplaceFee;\n address account;\n address caller;\n bytes callerCallData;\n}\n\n// The struct consists of name of the protocol adapter, action type,\n// array of token amounts, and some additional data (depends on the protocol)\nstruct Action {\n bytes32 protocolAdapterName;\n ActionType actionType;\n TokenAmount[] tokenAmounts;\n bytes data;\n}\n\n// The struct consists of token address, its amount, and amount type,\n// as well as permit type and calldata.\nstruct Input {\n TokenAmount tokenAmount;\n Permit permit;\n}\n\n// The struct consists of permit type and call data\nstruct Permit {\n PermitType permitType;\n bytes permitCallData;\n}\n\n// The struct consists of token address, its amount, and amount type\n// 0xEeee...EEeE is used for Ether\nstruct TokenAmount {\n address token;\n uint256 amount;\n AmountType amountType;\n}\n\n// The struct consists of fee share and beneficiary address\nstruct Fee {\n uint256 share;\n address beneficiary;\n}\n\n// The struct consists of deadline and signature\nstruct ProtocolFeeSignature {\n uint256 deadline;\n bytes signature;\n}\n\n// The struct consists of salt and signature\nstruct AccountSignature {\n uint256 salt;\n bytes signature;\n}\n\n// The struct consists of token address and its absolute amount\n// 0xEeee...EEeE is used for Ether\nstruct AbsoluteTokenAmount {\n address token;\n uint256 absoluteAmount;\n}\n"},"contracts/shared/TokensHandler.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\nimport { ITokensHandler } from \"../interfaces/ITokensHandler.sol\";\n\nimport { Base } from \"./Base.sol\";\nimport { Ownable } from \"./Ownable.sol\";\n\n/**\n * @title Abstract contract returning tokens lost on the contract\n */\nabstract contract TokensHandler is ITokensHandler, Ownable {\n receive() external payable {\n // solhint-disable-previous-line no-empty-blocks\n }\n\n /**\n * @inheritdoc ITokensHandler\n */\n function returnLostTokens(address token, address payable beneficiary) external onlyOwner {\n Base.transfer(token, beneficiary, Base.getBalance(token));\n }\n}\n"},"contracts/shared/Weth.sol":{"content":"// Copyright (C) 2020 Zerion Inc. <https://zerion.io>\n//\n// This program is free software: you can redistribute it and/or modify\n// it under the terms of the GNU General Public License as published by\n// the Free Software Foundation, either version 3 of the License, or\n// (at your option) any later version.\n//\n// This program is distributed in the hope that it will be useful,\n// but WITHOUT ANY WARRANTY; without even the implied warranty of\n// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\n// GNU General Public License for more details.\n//\n// You should have received a copy of the GNU General Public License\n// along with this program. If not, see <https://www.gnu.org/licenses/>.\n//\n// SPDX-License-Identifier: LGPL-3.0-only\n\npragma solidity 0.8.12;\n\n/**\n * @title Abstract contract storing Wrapped Ether address for the current chain\n */\nabstract contract Weth {\n address private immutable weth_;\n\n /**\n * @notice Sets Wrapped Ether address for the current chain\n * @param weth Wrapped Ether address\n */\n constructor(address weth) {\n weth_ = weth;\n }\n\n /**\n * @notice Returns Wrapped Ether address for the current chain\n * @return weth Wrapped Ether address\n */\n function getWeth() public view returns (address weth) {\n return weth_;\n }\n}\n"}},"settings":{"optimizer":{"enabled":true,"runs":1000000},"outputSelection":{"*":{"*":["abi","evm.bytecode","evm.deployedBytecode","evm.methodIdentifiers","metadata","devdoc","userdoc"],"":["ast"]}}}}