
Research
2025 Report: Destructive Malware in Open Source Packages
Destructive malware is rising across open source registries, using delays and kill switches to wipe code, break builds, and disrupt CI/CD.
@crossmint/client-sdk-react-ui
Advanced tools
## You can check the full documentation at [docs.crossmint.com](https://docs.crossmint.com/)
@crossmint/client-sdk-react-uiIf you're using React.js, or Next.js, Crossmint provides a client integration specific for you.
First, add the Crossmint Client SDK to your project with the following command:
pnpm add @crossmint/client-sdk-react-ui
Check our dedicated section for payments in the docs.
Check out our quickstart in the docs.
We provide two essential React context providers:
CrossmintProvider - Base provider for accessing Crossmint servicesCrossmintAuthProvider - Authentication context provider for your componentsCrossmintWalletProvider - Wallet context provider for your components, can be used to integrate with other auth providers. Visit Crossmint Signers Demo for complete implementation details and advanced features.Visit our customization guide to learn more about styling options and email templates.
Check out our quickstart in the docs.
We provide two essential React hooks for integrating Crossmint wallets into your application:
useAuthimport { useAuth } from "@crossmint/client-sdk-react-ui";
Manages authentication state and user sessions. Key features:
status - Current auth state ("logged-in" | "logged-out" | "in-progress" | "initializing")user - Active user informationjwt - Current user's JWT tokengetUser() - Retrieve current user informationlogin() - Initiate user authenticationlogout() - End user sessioncrossmintAuth - Access to the CrossmintAuth instanceuseWalletimport { useWallet } from "@crossmint/client-sdk-react-ui";
Handles wallet creation and management. Key features:
status - Wallet state ("not-loaded" | "in-progress" | "loading-error" | "loaded")wallet - Access to the EVMSmartWallet instancetype - Wallet type ("evm-smart-wallet" | "solana-smart-wallet")getOrCreateWallet() - Initialize or retrieve user's walletclearWallet() - Reset wallet statecreatePasskeySigner() - Create a passkey signer for the wallet (not supported for Solana)Visit our documentation for complete implementation details and advanced features.
We offer two components to help you quickly get up and running with your project using Crossmint wallets:
CrossmintNFTCollectionView - Display a grid of NFTs.

CrossmintNFTDetail - Display a card showing all NFT related details.

Visit our documentation for integration instructions.
.env file in the demo app directory:cd apps/wallets/smart-wallet/next
NEXT_PUBLIC_CROSSMINT_API_KEY=your_api_key_here
You can obtain a staging client-side API key from the Crossmint Console. For detailed instructions on getting an API key, see our documentation.
cd apps/wallets/smart-wallet/next
pnpm i
pnpm build
pnpm start
For more information on how to run the demo application, see the Smart Wallets Demo (Next.js Starter Kit) README.
FAQs
Unknown package
The npm package @crossmint/client-sdk-react-ui receives a total of 2,120 weekly downloads. As such, @crossmint/client-sdk-react-ui popularity was classified as popular.
We found that @crossmint/client-sdk-react-ui demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 9 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
Destructive malware is rising across open source registries, using delays and kill switches to wipe code, break builds, and disrupt CI/CD.

Security News
Socket CTO Ahmad Nassri shares practical AI coding techniques, tools, and team workflows, plus what still feels noisy and why shipping remains human-led.

Research
/Security News
A five-month operation turned 27 npm packages into durable hosting for browser-run lures that mimic document-sharing portals and Microsoft sign-in, targeting 25 organizations across manufacturing, industrial automation, plastics, and healthcare for credential theft.