Compare commits
3
Commits
v1.9.0-alpha
...
main
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
cedfbb2b07 | ||
|
|
7ae812e3f6 | ||
|
|
bc386965da |
@@ -261,3 +261,44 @@ ahead of that work or as an untested addition to the current release.
|
|||||||
- This may become a real app later; preserve an explicit tested promotion path
|
- This may become a real app later; preserve an explicit tested promotion path
|
||||||
from node-only demo to proper public app release without duplicate app IDs,
|
from node-only demo to proper public app release without duplicate app IDs,
|
||||||
conflicting state, lost configuration or automatic exposure before approval.
|
conflicting state, lost configuration or automatic exposure before approval.
|
||||||
|
|
||||||
|
### V4V persistent playback and existing demo music catalog
|
||||||
|
|
||||||
|
- Use the demo song catalog from the existing V4V Portainer demo in the Gitea
|
||||||
|
repository identified above. Inspect its actual catalog configuration and media
|
||||||
|
sources; preserve artist attribution and payment destinations. Do not substitute
|
||||||
|
an invented catalog or copy credentials into public app configuration.
|
||||||
|
- Integrate V4V with the local player bar: leaving or closing the app view must
|
||||||
|
retain playback, expose track information and playback controls, and offer a
|
||||||
|
button to reopen V4V at the same track and position without restarting playback.
|
||||||
|
Explicit stop remains available. This concerns closing the app view; operating
|
||||||
|
system termination/background restrictions require separate qualification.
|
||||||
|
- Inspect supported app/player integration before choosing an implementation.
|
||||||
|
Maintain one playback session, prevent duplicate audio on reopen, authenticate
|
||||||
|
app-to-shell messages, and preserve the requirement of no native Nostr signer.
|
||||||
|
- Test navigation, repeated close/reopen, pause/resume/seek, track changes,
|
||||||
|
disconnect/recovery and unavailable media on desktop and the actual companion.
|
||||||
|
Check track, queue and position continuity, accessible compact controls and
|
||||||
|
mobile background behavior. Record platform limitations rather than promising
|
||||||
|
playback after an operating system terminates the app.
|
||||||
|
- Keep catalog and player integration within the Yaya-only demo scope until
|
||||||
|
separately approved for general release.
|
||||||
|
|
||||||
|
## 14. FIPS media transport requirement
|
||||||
|
|
||||||
|
- Operator explicitly requires FIPS for streaming peer files and distributed
|
||||||
|
IndeeHub media. Verify the actual node-to-node media-byte path uses FIPS, not
|
||||||
|
merely discovery, metrics, payment negotiation or a connection-status label.
|
||||||
|
- Reconcile the earlier multi-transport/swarm design with this requirement.
|
||||||
|
Preserve normal authenticated browser/companion playback interfaces while
|
||||||
|
carrying the inter-node stream over authenticated, authorized FIPS connections.
|
||||||
|
- Cover progressive/range requests, HLS segments as applicable, seek, pause/resume,
|
||||||
|
reconnect, producer/cache-peer outage, backpressure, bandwidth and resource use.
|
||||||
|
Preserve encrypted-content and timed-entitlement/payment enforcement end-to-end.
|
||||||
|
- Define and expose behavior when no usable FIPS route exists. Do not silently
|
||||||
|
call another media transport FIPS or mark this requirement complete while the
|
||||||
|
actual stream continues over an unrelated fallback. Any fallback policy must
|
||||||
|
be explicit and reconciled with the operator's all-streaming requirement.
|
||||||
|
- Instrument transport selection and verify it in headless multi-node integration
|
||||||
|
tests and actual mobile/desktop playback. Keep technical diagnostics available
|
||||||
|
without burdening normal playback with implementation details.
|
||||||
|
|||||||
@@ -963,3 +963,50 @@ were not independently completed (funded regtest, prior operator purchase/free
|
|||||||
reopen and persisted ownership/file evidence remain separate). Dev Bitcoin is
|
reopen and persisted ownership/file evidence remain separate). Dev Bitcoin is
|
||||||
still in IBD; live full-chain Angor evidence is from Shorty. Historical discovery
|
still in IBD; live full-chain Angor evidence is from Shorty. Historical discovery
|
||||||
limitation was explicitly accepted, not relabeled a passing recovery test.
|
limitation was explicitly accepted, not relabeled a passing recovery test.
|
||||||
|
|
||||||
|
### Public OTA assets verified and metadata promotion
|
||||||
|
|
||||||
|
Canonical release proposal5957be8c89cd192308860c194b05bed9f3077093d8284db0350503ec4adbded8
|
||||||
|
was marked applied. Local, ngit and Gitea main/tag parity passed; the annotated
|
||||||
|
v1.9.0-alpha tag points to7abd04a7. Follow-up FIPS backlog proposal
|
||||||
|
6015e09dcaba7004057dadb50b9dc09b5ada8e5cfdfa9be458ded7a0dad5002b
|
||||||
|
was also marked applied with exact accepted main mirrored.
|
||||||
|
|
||||||
|
Public backend, corrected frontend6d5135fa, signed manifest, signed catalog479f6193
|
||||||
|
and companion0.5.34 APK all passed full download byte-count and SHA256 checks:
|
||||||
|
`/tmp/archy-190-publish-ota.log`. Public manifest/catalog bytes also match their
|
||||||
|
locally verified pinned-root signatures. Promote those exact bytes to the live
|
||||||
|
metadata paths; no artifact or signature changed. ISO upload and demo deployment
|
||||||
|
are separate ongoing operations, not inferred passed from OTA asset publication.
|
||||||
|
|
||||||
|
### Publication status and subsequent storage regression
|
||||||
|
|
||||||
|
OTA metadata promotion proposal
|
||||||
|
`0e90b3847ff377ad5c9e400037651b565defa4ee229eac785a7897c30423a4e7`
|
||||||
|
was marked applied. Exact main/tag parity and public metadata bytes passed. Dev,
|
||||||
|
Yaya and Shorty now use the public catalog; their app IDs/start times and guard
|
||||||
|
configuration were preserved. Thirty-two external management-denial probes and
|
||||||
|
tailnet UI access passed after the change. Framework reaches the public manifest
|
||||||
|
and its saved current version is already1.9.0-alpha; this is a read-only result,
|
||||||
|
not a fresh authenticated update RPC acceptance.
|
||||||
|
|
||||||
|
The public demo was deployed with immutable qualified images and preserved
|
||||||
|
configuration/rollback. Public version is1.9.0-alpha-demo. Mobile login/dashboard
|
||||||
|
passed on retry after the initial30-second form wait timed out. Public resumable
|
||||||
|
upload recovery/exact bytes/visitor isolation and replace/zero-byte/cancel cases
|
||||||
|
passed. Fixed-quota and interrupted-TCP scenarios retain their isolated evidence.
|
||||||
|
|
||||||
|
The raw ISO and both checksum files passed full public-download hash checks.
|
||||||
|
The public signed checksum also verifies against the pinned release root. Logs:
|
||||||
|
`/tmp/archy-190-publish-iso.log` (ISO PASS before the idle upload tunnel closed),
|
||||||
|
`/tmp/archy-190-publish-iso-checksums.log` (small sidecars retried over HTTPS).
|
||||||
|
No ISO re-upload or artifact change was needed. A subsequent
|
||||||
|
follow-up backend suite exposed the pre-existing storage-prefix bug documented in
|
||||||
|
[known limitations](release-1.9.0-known-limitations.md). Its correction is being
|
||||||
|
qualified separately. Artifact-byte verification is not a claim that this newly
|
||||||
|
identified issue has been fixed in the already published release.
|
||||||
|
|
||||||
|
Public assets: [1.9.0-alpha release](https://source.archipelago-foundation.org/lfg2025/archy/releases/tag/v1.9.0-alpha).
|
||||||
|
The separate follow-up branch now passes1,683 backend tests (four existing ignored)
|
||||||
|
and all1,222 frontend tests after correcting the storage classifier. These are
|
||||||
|
source test results, not inclusion in the published artifacts or live acceptance.
|
||||||
|
|||||||
@@ -1,4 +1,6 @@
|
|||||||
# 1.9.0-alpha: Angor historical discovery
|
# 1.9.0-alpha: known limitations
|
||||||
|
|
||||||
|
## Angor historical discovery
|
||||||
|
|
||||||
Historical project discovery is incomplete. Funding commitments for all35
|
Historical project discovery is incomplete. Funding commitments for all35
|
||||||
reference projects were verified, but34 original signed announcements were not
|
reference projects were verified, but34 original signed announcements were not
|
||||||
@@ -16,3 +18,20 @@ The dev node is still syncing; full-chain evidence comes from Shorty.
|
|||||||
Evidence and inventory: [client acceptance](angor-client-acceptance-20261001.md),
|
Evidence and inventory: [client acceptance](angor-client-acceptance-20261001.md),
|
||||||
[project recovery inventory](angor-project-recovery-20261001.json), and
|
[project recovery inventory](angor-project-recovery-20261001.json), and
|
||||||
[release acceptance](release-1.9.0-acceptance.md).
|
[release acceptance](release-1.9.0-acceptance.md).
|
||||||
|
|
||||||
|
## Chat/contact storage migration — discovered during follow-up testing
|
||||||
|
|
||||||
|
A subsequent full backend test run exposed an existing random-prefix collision
|
||||||
|
in `storage_crypto::is_plaintext_json`: an encrypted store whose nonce begins
|
||||||
|
with `{` or `[` can be mistaken for legacy plaintext. This can prevent chat or
|
||||||
|
contact state loading correctly, and the message migration path can overwrite
|
||||||
|
that state. This helper is used for chat messages and mesh contact customizations,
|
||||||
|
not wallet databases.
|
||||||
|
|
||||||
|
The follow-up branch replaces the prefix-only heuristic with complete JSON
|
||||||
|
validation and adds deterministic encrypted-prefix regression cases. Qualification
|
||||||
|
is in progress; the published 1.9.0-alpha artifacts do not include that fix.
|
||||||
|
Existing release signatures and tags must not be silently replaced. Track a
|
||||||
|
corrective update and preserve affected state before further node restarts.
|
||||||
|
The earlier green release run did not detect this probabilistic failure; do not
|
||||||
|
interpret it as proof that this newly discovered issue is absent.
|
||||||
|
|||||||
+37
-34
@@ -1,46 +1,49 @@
|
|||||||
{
|
{
|
||||||
"changelog": [
|
"changelog": [
|
||||||
"Fixed Nginx Proxy Manager launch readiness choosing a proxy listener instead of its admin port after container recreation.",
|
"Keep Cuprate and NetBird supporting components out of app listings and consolidate BTCPay Server under Commerce.",
|
||||||
"Network diagnostic failures no longer stop all apps or rebuild shared container networking.",
|
"Default on-chain sends, channel opens and cooperative closes to a dynamic next-block fee target, preserving explicit slower and custom choices.",
|
||||||
"Prevented orphaned companion dashboards from repeatedly reinstalling themselves after their backend app was removed.",
|
"Add reviewed fee-bump quotes, explicit budgets and durable operation tracking for supported wallet transactions.",
|
||||||
"Fixed companion dashboard builds still referencing a retired image registry.",
|
"Preserve Nginx Proxy Manager storage, same-node upstream connectivity, certificates and access controls through managed migrations.",
|
||||||
"Fixed Angor Indexer health checks choosing IPv6 localhost for an IPv4 listener and unnecessarily restarting the working service.",
|
"Restrict public management access while retaining configured public apps and ACME certificate validation.",
|
||||||
"Prevented false app restarts by probing each published port at its actual bind address; Nginx Proxy Manager now checks its internal admin API.",
|
"Serve the Mempool explorer on the Angor indexer origin alongside its API.",
|
||||||
"Added a backed-up migration for the recognized legacy Nginx Proxy Manager tunnel/LND port conflict in both OTA and ISO startup paths.",
|
"Include the self-contained LoRa flashing tool and explicit board selection in update and installer payloads.",
|
||||||
"Checked Bitcoin and Electrum companion dashboards instead of backend protocol ports, preserving dashboard access during initial sync.",
|
"Preserve paid-file Lightning entitlements across restarts and recover settled invoices from LND. Retry delivery without paying again and retain purchased files in the owned cache.",
|
||||||
"Removed web-interface waiting messages from headless services such as Phoenixd and clarified which interface is unavailable for launchable apps.",
|
"Return explicit payment-status errors with safe retry guidance when verification is unavailable.",
|
||||||
"Finished runtime app-file promotion before manifest loading, preventing startup catalog refresh from forgetting disk-only apps.",
|
"Keep upload progress on its original screen, show completion there or notify on other screens, and cancel active and queued uploads.",
|
||||||
"Named the app in compact readiness messages and kept app-card actions aligned at the bottom.",
|
"Resume interrupted uploads while the app remains open, preserve the original destination, and verify saved file contents before reporting completion.",
|
||||||
"Removed duplicate Mempool cards caused by frontend container aliases in restored inventory.",
|
"Provision a unique private File Browser login on each node while keeping Cloud sign-in automatic and preserving existing accounts and files.",
|
||||||
"Kept installed apps visible through restarts and hard refreshes, and delayed app launches until their web interface is ready.",
|
"Update Nostr dependencies to reject forged relay events and oversized encrypted messages; preserve native signing and encryption compatibility.",
|
||||||
"Made Bitcoin version selection readable and usable in the ThinkPad kiosk, above the pruning settings.",
|
"Allow apps to opt in to a validated public-key list of user identities without granting signing access.",
|
||||||
"Restored GitWorkshop build files in installation/update payloads and made slow image-pull progress clearer.",
|
"Make transaction filters transparent and horizontally scrollable on mobile.",
|
||||||
"Fixed same-node Gitea access from Portainer, with persistent runtime migration, state backups and recovery after failed restarts.",
|
"Keep Immich internal services out of My Apps, avoid false recovery states for healthy stacks, and allow removal of retired catalog apps.",
|
||||||
"Preserved Gitea configuration and SSH operation during fresh setup and upgrades.",
|
"Repair the redundant managed Portainer network override that can prevent startup, preserving custom overrides and persistent state.",
|
||||||
"Improved paid-file delivery, saved-file permissions and repeat-download compatibility; verified Tor-only payment with change, rejection refunds and free repeat downloads.",
|
"Offer Standard, Medium, Fast and custom fees when cooperatively closing Lightning channels.",
|
||||||
"Added a headless Angor Indexer service using the existing Mempool/ElectrumX stack, and an optional separate Angor relay.",
|
"Add a clear-search icon to My Apps, Services and the App Store on desktop and mobile.",
|
||||||
"Prevented manifest command arguments containing apostrophes from being corrupted in generated services."
|
"Keep Angor Indexer and the optional Angor Relay in the signed app catalog. Full indexing requires a synced, unpruned Bitcoin node and its indexing dependencies.",
|
||||||
|
"Improve the mobile photo/video viewer with persistent action menus, fullscreen controls and companion download support.",
|
||||||
|
"Publish companion 0.5.34/build54 with the existing signing identity and verified phone save/open behavior.",
|
||||||
|
"Known limitation: Angor historical project discovery is incomplete. Funding data for 35 reference projects was verified, but 34 original project announcements remain unavailable from the relays checked; recovery is tracked separately."
|
||||||
],
|
],
|
||||||
"components": [
|
"components": [
|
||||||
{
|
{
|
||||||
"current_version": "1.8.22-alpha",
|
"current_version": "1.9.0-alpha",
|
||||||
"download_url": "https://source.archipelago-foundation.org/lfg2025/archy/releases/download/v1.8.22-alpha/archipelago",
|
"download_url": "https://source.archipelago-foundation.org/lfg2025/archy/releases/download/v1.9.0-alpha/archipelago",
|
||||||
"name": "archipelago",
|
"name": "archipelago",
|
||||||
"new_version": "1.8.22-alpha",
|
"new_version": "1.9.0-alpha",
|
||||||
"sha256": "e108b78bbbd21cb7d5d47c8d0b7b9b19b63fb0c44678773603202440ec7d6f5b",
|
"sha256": "560aa6006cd9ef8be95b1f7831cf3b53854e911622b50022bb4402ce0f8b010a",
|
||||||
"size_bytes": 65627704
|
"size_bytes": 66475120
|
||||||
},
|
},
|
||||||
{
|
{
|
||||||
"current_version": "1.8.22-alpha",
|
"current_version": "1.9.0-alpha",
|
||||||
"download_url": "https://source.archipelago-foundation.org/lfg2025/archy/releases/download/v1.8.22-alpha/archipelago-frontend-1.8.22-alpha.tar.gz",
|
"download_url": "https://source.archipelago-foundation.org/lfg2025/archy/releases/download/v1.9.0-alpha/archipelago-frontend-1.9.0-alpha.tar.gz",
|
||||||
"name": "archipelago-frontend-1.8.22-alpha.tar.gz",
|
"name": "archipelago-frontend-1.9.0-alpha.tar.gz",
|
||||||
"new_version": "1.8.22-alpha",
|
"new_version": "1.9.0-alpha",
|
||||||
"sha256": "2da485a2da75ff2fbe4aba52d6f217150e303be43a031723480c9c4ff9d43f41",
|
"sha256": "6d5135fa8e79b1bc84c8ed972770ebf99fe6611d819e5c1453f38f1593c26e66",
|
||||||
"size_bytes": 98131119
|
"size_bytes": 106942370
|
||||||
}
|
}
|
||||||
],
|
],
|
||||||
"release_date": "2026-09-30",
|
"release_date": "2026-10-05",
|
||||||
"signature": "34e9e3902d5960c977b528c4edbb4366ad862f761076755632296840604c8a84ae1bbb503d8d26b2fe7622ca1eccfaa15cb8d23935bcec6dbecdaf6c53f7f50e",
|
"signature": "695fe223a525bec266ec20da497883c80cad05a2779003618229cd97cec4477c9054d564ad4aef938d0c7872b42ae112d8b04406413bced43dd007eaf865e707",
|
||||||
"signed_by": "did:key:z6Mkfu5LT8d4DjETtrkATvHh9Dvcbnr7zBCUwfau8Sw7DLWT",
|
"signed_by": "did:key:z6Mkfu5LT8d4DjETtrkATvHh9Dvcbnr7zBCUwfau8Sw7DLWT",
|
||||||
"version": "1.8.22-alpha"
|
"version": "1.9.0-alpha"
|
||||||
}
|
}
|
||||||
|
|||||||
+127
-7
@@ -151,18 +151,22 @@
|
|||||||
},
|
},
|
||||||
"category": "money",
|
"category": "money",
|
||||||
"container": {
|
"container": {
|
||||||
"image": "source.archipelago-foundation.org/chaum/angor-indexer:1.0.1",
|
"image": "source.archipelago-foundation.org/chaum/angor-indexer:1.0.2",
|
||||||
"network": "archy-net",
|
"network": "archy-net",
|
||||||
"pull_policy": "if-not-present"
|
"pull_policy": "if-not-present"
|
||||||
},
|
},
|
||||||
"dependencies": [
|
"dependencies": [
|
||||||
|
{
|
||||||
|
"app_id": "mempool",
|
||||||
|
"version": ">=3.0.0"
|
||||||
|
},
|
||||||
{
|
{
|
||||||
"app_id": "mempool-api",
|
"app_id": "mempool-api",
|
||||||
"version": ">=3.0.0"
|
"version": ">=3.0.0"
|
||||||
},
|
},
|
||||||
"bitcoin:archival"
|
"bitcoin:archival"
|
||||||
],
|
],
|
||||||
"description": "Headless Bitcoin indexer endpoint for Angor. Reuses this node’s Mempool and Electrum index; requires a synced, unpruned Bitcoin node. Add this service’s address as the custom indexer in Angor settings. A relay is optional and installed separately.",
|
"description": "Bitcoin indexer endpoint for Angor with the existing Mempool explorer. Reuses this node’s Mempool and Electrum index; requires a synced, unpruned Bitcoin node. Add this service’s address as the custom indexer in Angor settings. A relay is optional and installed separately.",
|
||||||
"health_check": {
|
"health_check": {
|
||||||
"endpoint": "http://127.0.0.1:8080",
|
"endpoint": "http://127.0.0.1:8080",
|
||||||
"interval": "30s",
|
"interval": "30s",
|
||||||
@@ -173,11 +177,12 @@
|
|||||||
},
|
},
|
||||||
"id": "angor-indexer",
|
"id": "angor-indexer",
|
||||||
"install_prerequisites": [
|
"install_prerequisites": [
|
||||||
|
"mempool",
|
||||||
"mempool-api"
|
"mempool-api"
|
||||||
],
|
],
|
||||||
"interfaces": {
|
"interfaces": {
|
||||||
"main": {
|
"main": {
|
||||||
"description": "Use this origin as Angor’s custom mainnet indexer URL. HTTPS is required for browser clients.",
|
"description": "Use this origin as Angor’s custom mainnet indexer URL, or open it to view the existing Mempool explorer. HTTPS is required for browser clients.",
|
||||||
"name": "Angor Indexer API",
|
"name": "Angor Indexer API",
|
||||||
"path": "/",
|
"path": "/",
|
||||||
"port": 8998,
|
"port": 8998,
|
||||||
@@ -188,6 +193,7 @@
|
|||||||
"metadata": {
|
"metadata": {
|
||||||
"features": [
|
"features": [
|
||||||
"Angor mainnet API",
|
"Angor mainnet API",
|
||||||
|
"Mempool explorer on the same origin",
|
||||||
"Reuses existing Mempool indexing",
|
"Reuses existing Mempool indexing",
|
||||||
"No separate blockchain database",
|
"No separate blockchain database",
|
||||||
"Optional independent relay"
|
"Optional independent relay"
|
||||||
@@ -223,10 +229,10 @@
|
|||||||
"kind": "github",
|
"kind": "github",
|
||||||
"repo": "block-core/angor"
|
"repo": "block-core/angor"
|
||||||
},
|
},
|
||||||
"version": "1.0.1"
|
"version": "1.0.2"
|
||||||
}
|
}
|
||||||
},
|
},
|
||||||
"version": "1.0.1"
|
"version": "1.0.2"
|
||||||
},
|
},
|
||||||
"angor-relay": {
|
"angor-relay": {
|
||||||
"manifest": {
|
"manifest": {
|
||||||
@@ -4495,6 +4501,120 @@
|
|||||||
]
|
]
|
||||||
}
|
}
|
||||||
},
|
},
|
||||||
|
"manifest_variants": [
|
||||||
|
{
|
||||||
|
"manifest": {
|
||||||
|
"app": {
|
||||||
|
"backup_before_runtime_change": true,
|
||||||
|
"container": {
|
||||||
|
"image": "source.archipelago-foundation.org/lfg2025/nginx-proxy-manager@sha256:8b91afcca90f5f2a7b2b8937999824f623c8a8748ae8013a1c9bf94f62177f08",
|
||||||
|
"network": "slirp4netns:allow_host_loopback=true,cidr=169.254.1.0/24",
|
||||||
|
"pull_policy": "if-not-present"
|
||||||
|
},
|
||||||
|
"dependencies": [
|
||||||
|
{
|
||||||
|
"storage": "1Gi"
|
||||||
|
}
|
||||||
|
],
|
||||||
|
"description": "Reverse proxy with SSL. Beautiful web interface for managing proxies. The node's public web server forwards configured domains through this service, preserving its access lists, certificates and custom routes.",
|
||||||
|
"environment": [],
|
||||||
|
"health_check": {
|
||||||
|
"endpoint": "http://127.0.0.1:81/api/",
|
||||||
|
"interval": "30s",
|
||||||
|
"retries": 3,
|
||||||
|
"timeout": "5s",
|
||||||
|
"type": "http"
|
||||||
|
},
|
||||||
|
"id": "nginx-proxy-manager",
|
||||||
|
"interfaces": {
|
||||||
|
"main": {
|
||||||
|
"description": "Nginx Proxy Manager admin interface",
|
||||||
|
"name": "Admin UI",
|
||||||
|
"path": "/",
|
||||||
|
"port": 8081,
|
||||||
|
"protocol": "http",
|
||||||
|
"type": "ui"
|
||||||
|
}
|
||||||
|
},
|
||||||
|
"metadata": {
|
||||||
|
"author": "Nginx Proxy Manager",
|
||||||
|
"category": "networking",
|
||||||
|
"icon": "/assets/img/app-icons/nginx.svg",
|
||||||
|
"repo": "https://github.com/NginxProxyManager/nginx-proxy-manager",
|
||||||
|
"tier": "optional"
|
||||||
|
},
|
||||||
|
"name": "Nginx Proxy Manager",
|
||||||
|
"ports": [
|
||||||
|
{
|
||||||
|
"auth": "open",
|
||||||
|
"auth_rationale": "Nginx Proxy Manager enforces its own admin account on every page; the initial setup wizard also has to answer before any account exists.",
|
||||||
|
"bind": "127.0.0.1",
|
||||||
|
"container": 81,
|
||||||
|
"host": 8081,
|
||||||
|
"protocol": "tcp"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"auth": "local",
|
||||||
|
"bind": "127.0.0.1",
|
||||||
|
"container": 80,
|
||||||
|
"host": 8088,
|
||||||
|
"protocol": "tcp"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"auth": "local",
|
||||||
|
"bind": "127.0.0.1",
|
||||||
|
"container": 443,
|
||||||
|
"host": 8444,
|
||||||
|
"protocol": "tcp"
|
||||||
|
}
|
||||||
|
],
|
||||||
|
"resources": {
|
||||||
|
"disk_limit": "1Gi",
|
||||||
|
"memory_limit": "512Mi"
|
||||||
|
},
|
||||||
|
"security": {
|
||||||
|
"capabilities": [
|
||||||
|
"CHOWN",
|
||||||
|
"SETUID",
|
||||||
|
"SETGID",
|
||||||
|
"DAC_OVERRIDE",
|
||||||
|
"NET_BIND_SERVICE"
|
||||||
|
],
|
||||||
|
"network_policy": "isolated",
|
||||||
|
"no_new_privileges": true,
|
||||||
|
"readonly_root": false
|
||||||
|
},
|
||||||
|
"upstream": {
|
||||||
|
"kind": "github",
|
||||||
|
"repo": "NginxProxyManager/nginx-proxy-manager"
|
||||||
|
},
|
||||||
|
"version": "2.14.0",
|
||||||
|
"volumes": [
|
||||||
|
{
|
||||||
|
"options": [
|
||||||
|
"rw"
|
||||||
|
],
|
||||||
|
"source": "/var/lib/archipelago/nginx-proxy-manager",
|
||||||
|
"target": "/data",
|
||||||
|
"type": "bind"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"options": [
|
||||||
|
"rw"
|
||||||
|
],
|
||||||
|
"source": "/var/lib/archipelago/nginx-proxy-manager/letsencrypt",
|
||||||
|
"target": "/etc/letsencrypt",
|
||||||
|
"type": "bind"
|
||||||
|
}
|
||||||
|
]
|
||||||
|
}
|
||||||
|
},
|
||||||
|
"requires": [
|
||||||
|
"runtime-migration-backup-v1",
|
||||||
|
"npm-legacy-host-gateway-v1"
|
||||||
|
]
|
||||||
|
}
|
||||||
|
],
|
||||||
"version": "latest"
|
"version": "latest"
|
||||||
},
|
},
|
||||||
"nostr-rs-relay": {
|
"nostr-rs-relay": {
|
||||||
@@ -5958,7 +6078,7 @@
|
|||||||
"tag": "NOSTR IDENTITY // YOUR NODE"
|
"tag": "NOSTR IDENTITY // YOUR NODE"
|
||||||
},
|
},
|
||||||
"schema": 1,
|
"schema": 1,
|
||||||
"signature": "66b78a5bc60992222b01ae901c5f4a40802667332a5ae47bdad7f34e149669261012ff6fd543478a4f318e850b0339be497af71a50266d829395a872ad386704",
|
"signature": "1befe88b57e8b73728ceab79ff1989091372a149ce47ff9c9a8555e7a8cd7f537971a11b78b7fc56fd6b3d88fab1aadea13cc66577f4e10aa782e1dab620da06",
|
||||||
"signed_by": "did:key:z6Mkfu5LT8d4DjETtrkATvHh9Dvcbnr7zBCUwfau8Sw7DLWT",
|
"signed_by": "did:key:z6Mkfu5LT8d4DjETtrkATvHh9Dvcbnr7zBCUwfau8Sw7DLWT",
|
||||||
"storefront": {
|
"storefront": {
|
||||||
"popular": [
|
"popular": [
|
||||||
@@ -5984,5 +6104,5 @@
|
|||||||
}
|
}
|
||||||
]
|
]
|
||||||
},
|
},
|
||||||
"updated": "2026-09-30"
|
"updated": "2026-10-05"
|
||||||
}
|
}
|
||||||
|
|||||||
+37
-34
@@ -1,46 +1,49 @@
|
|||||||
{
|
{
|
||||||
"changelog": [
|
"changelog": [
|
||||||
"Fixed Nginx Proxy Manager launch readiness choosing a proxy listener instead of its admin port after container recreation.",
|
"Keep Cuprate and NetBird supporting components out of app listings and consolidate BTCPay Server under Commerce.",
|
||||||
"Network diagnostic failures no longer stop all apps or rebuild shared container networking.",
|
"Default on-chain sends, channel opens and cooperative closes to a dynamic next-block fee target, preserving explicit slower and custom choices.",
|
||||||
"Prevented orphaned companion dashboards from repeatedly reinstalling themselves after their backend app was removed.",
|
"Add reviewed fee-bump quotes, explicit budgets and durable operation tracking for supported wallet transactions.",
|
||||||
"Fixed companion dashboard builds still referencing a retired image registry.",
|
"Preserve Nginx Proxy Manager storage, same-node upstream connectivity, certificates and access controls through managed migrations.",
|
||||||
"Fixed Angor Indexer health checks choosing IPv6 localhost for an IPv4 listener and unnecessarily restarting the working service.",
|
"Restrict public management access while retaining configured public apps and ACME certificate validation.",
|
||||||
"Prevented false app restarts by probing each published port at its actual bind address; Nginx Proxy Manager now checks its internal admin API.",
|
"Serve the Mempool explorer on the Angor indexer origin alongside its API.",
|
||||||
"Added a backed-up migration for the recognized legacy Nginx Proxy Manager tunnel/LND port conflict in both OTA and ISO startup paths.",
|
"Include the self-contained LoRa flashing tool and explicit board selection in update and installer payloads.",
|
||||||
"Checked Bitcoin and Electrum companion dashboards instead of backend protocol ports, preserving dashboard access during initial sync.",
|
"Preserve paid-file Lightning entitlements across restarts and recover settled invoices from LND. Retry delivery without paying again and retain purchased files in the owned cache.",
|
||||||
"Removed web-interface waiting messages from headless services such as Phoenixd and clarified which interface is unavailable for launchable apps.",
|
"Return explicit payment-status errors with safe retry guidance when verification is unavailable.",
|
||||||
"Finished runtime app-file promotion before manifest loading, preventing startup catalog refresh from forgetting disk-only apps.",
|
"Keep upload progress on its original screen, show completion there or notify on other screens, and cancel active and queued uploads.",
|
||||||
"Named the app in compact readiness messages and kept app-card actions aligned at the bottom.",
|
"Resume interrupted uploads while the app remains open, preserve the original destination, and verify saved file contents before reporting completion.",
|
||||||
"Removed duplicate Mempool cards caused by frontend container aliases in restored inventory.",
|
"Provision a unique private File Browser login on each node while keeping Cloud sign-in automatic and preserving existing accounts and files.",
|
||||||
"Kept installed apps visible through restarts and hard refreshes, and delayed app launches until their web interface is ready.",
|
"Update Nostr dependencies to reject forged relay events and oversized encrypted messages; preserve native signing and encryption compatibility.",
|
||||||
"Made Bitcoin version selection readable and usable in the ThinkPad kiosk, above the pruning settings.",
|
"Allow apps to opt in to a validated public-key list of user identities without granting signing access.",
|
||||||
"Restored GitWorkshop build files in installation/update payloads and made slow image-pull progress clearer.",
|
"Make transaction filters transparent and horizontally scrollable on mobile.",
|
||||||
"Fixed same-node Gitea access from Portainer, with persistent runtime migration, state backups and recovery after failed restarts.",
|
"Keep Immich internal services out of My Apps, avoid false recovery states for healthy stacks, and allow removal of retired catalog apps.",
|
||||||
"Preserved Gitea configuration and SSH operation during fresh setup and upgrades.",
|
"Repair the redundant managed Portainer network override that can prevent startup, preserving custom overrides and persistent state.",
|
||||||
"Improved paid-file delivery, saved-file permissions and repeat-download compatibility; verified Tor-only payment with change, rejection refunds and free repeat downloads.",
|
"Offer Standard, Medium, Fast and custom fees when cooperatively closing Lightning channels.",
|
||||||
"Added a headless Angor Indexer service using the existing Mempool/ElectrumX stack, and an optional separate Angor relay.",
|
"Add a clear-search icon to My Apps, Services and the App Store on desktop and mobile.",
|
||||||
"Prevented manifest command arguments containing apostrophes from being corrupted in generated services."
|
"Keep Angor Indexer and the optional Angor Relay in the signed app catalog. Full indexing requires a synced, unpruned Bitcoin node and its indexing dependencies.",
|
||||||
|
"Improve the mobile photo/video viewer with persistent action menus, fullscreen controls and companion download support.",
|
||||||
|
"Publish companion 0.5.34/build54 with the existing signing identity and verified phone save/open behavior.",
|
||||||
|
"Known limitation: Angor historical project discovery is incomplete. Funding data for 35 reference projects was verified, but 34 original project announcements remain unavailable from the relays checked; recovery is tracked separately."
|
||||||
],
|
],
|
||||||
"components": [
|
"components": [
|
||||||
{
|
{
|
||||||
"current_version": "1.8.22-alpha",
|
"current_version": "1.9.0-alpha",
|
||||||
"download_url": "https://source.archipelago-foundation.org/lfg2025/archy/releases/download/v1.8.22-alpha/archipelago",
|
"download_url": "https://source.archipelago-foundation.org/lfg2025/archy/releases/download/v1.9.0-alpha/archipelago",
|
||||||
"name": "archipelago",
|
"name": "archipelago",
|
||||||
"new_version": "1.8.22-alpha",
|
"new_version": "1.9.0-alpha",
|
||||||
"sha256": "e108b78bbbd21cb7d5d47c8d0b7b9b19b63fb0c44678773603202440ec7d6f5b",
|
"sha256": "560aa6006cd9ef8be95b1f7831cf3b53854e911622b50022bb4402ce0f8b010a",
|
||||||
"size_bytes": 65627704
|
"size_bytes": 66475120
|
||||||
},
|
},
|
||||||
{
|
{
|
||||||
"current_version": "1.8.22-alpha",
|
"current_version": "1.9.0-alpha",
|
||||||
"download_url": "https://source.archipelago-foundation.org/lfg2025/archy/releases/download/v1.8.22-alpha/archipelago-frontend-1.8.22-alpha.tar.gz",
|
"download_url": "https://source.archipelago-foundation.org/lfg2025/archy/releases/download/v1.9.0-alpha/archipelago-frontend-1.9.0-alpha.tar.gz",
|
||||||
"name": "archipelago-frontend-1.8.22-alpha.tar.gz",
|
"name": "archipelago-frontend-1.9.0-alpha.tar.gz",
|
||||||
"new_version": "1.8.22-alpha",
|
"new_version": "1.9.0-alpha",
|
||||||
"sha256": "2da485a2da75ff2fbe4aba52d6f217150e303be43a031723480c9c4ff9d43f41",
|
"sha256": "6d5135fa8e79b1bc84c8ed972770ebf99fe6611d819e5c1453f38f1593c26e66",
|
||||||
"size_bytes": 98131119
|
"size_bytes": 106942370
|
||||||
}
|
}
|
||||||
],
|
],
|
||||||
"release_date": "2026-09-30",
|
"release_date": "2026-10-05",
|
||||||
"signature": "34e9e3902d5960c977b528c4edbb4366ad862f761076755632296840604c8a84ae1bbb503d8d26b2fe7622ca1eccfaa15cb8d23935bcec6dbecdaf6c53f7f50e",
|
"signature": "695fe223a525bec266ec20da497883c80cad05a2779003618229cd97cec4477c9054d564ad4aef938d0c7872b42ae112d8b04406413bced43dd007eaf865e707",
|
||||||
"signed_by": "did:key:z6Mkfu5LT8d4DjETtrkATvHh9Dvcbnr7zBCUwfau8Sw7DLWT",
|
"signed_by": "did:key:z6Mkfu5LT8d4DjETtrkATvHh9Dvcbnr7zBCUwfau8Sw7DLWT",
|
||||||
"version": "1.8.22-alpha"
|
"version": "1.9.0-alpha"
|
||||||
}
|
}
|
||||||
|
|||||||
File diff suppressed because one or more lines are too long
@@ -1,49 +0,0 @@
|
|||||||
{
|
|
||||||
"changelog": [
|
|
||||||
"Keep Cuprate and NetBird supporting components out of app listings and consolidate BTCPay Server under Commerce.",
|
|
||||||
"Default on-chain sends, channel opens and cooperative closes to a dynamic next-block fee target, preserving explicit slower and custom choices.",
|
|
||||||
"Add reviewed fee-bump quotes, explicit budgets and durable operation tracking for supported wallet transactions.",
|
|
||||||
"Preserve Nginx Proxy Manager storage, same-node upstream connectivity, certificates and access controls through managed migrations.",
|
|
||||||
"Restrict public management access while retaining configured public apps and ACME certificate validation.",
|
|
||||||
"Serve the Mempool explorer on the Angor indexer origin alongside its API.",
|
|
||||||
"Include the self-contained LoRa flashing tool and explicit board selection in update and installer payloads.",
|
|
||||||
"Preserve paid-file Lightning entitlements across restarts and recover settled invoices from LND. Retry delivery without paying again and retain purchased files in the owned cache.",
|
|
||||||
"Return explicit payment-status errors with safe retry guidance when verification is unavailable.",
|
|
||||||
"Keep upload progress on its original screen, show completion there or notify on other screens, and cancel active and queued uploads.",
|
|
||||||
"Resume interrupted uploads while the app remains open, preserve the original destination, and verify saved file contents before reporting completion.",
|
|
||||||
"Provision a unique private File Browser login on each node while keeping Cloud sign-in automatic and preserving existing accounts and files.",
|
|
||||||
"Update Nostr dependencies to reject forged relay events and oversized encrypted messages; preserve native signing and encryption compatibility.",
|
|
||||||
"Allow apps to opt in to a validated public-key list of user identities without granting signing access.",
|
|
||||||
"Make transaction filters transparent and horizontally scrollable on mobile.",
|
|
||||||
"Keep Immich internal services out of My Apps, avoid false recovery states for healthy stacks, and allow removal of retired catalog apps.",
|
|
||||||
"Repair the redundant managed Portainer network override that can prevent startup, preserving custom overrides and persistent state.",
|
|
||||||
"Offer Standard, Medium, Fast and custom fees when cooperatively closing Lightning channels.",
|
|
||||||
"Add a clear-search icon to My Apps, Services and the App Store on desktop and mobile.",
|
|
||||||
"Keep Angor Indexer and the optional Angor Relay in the signed app catalog. Full indexing requires a synced, unpruned Bitcoin node and its indexing dependencies.",
|
|
||||||
"Improve the mobile photo/video viewer with persistent action menus, fullscreen controls and companion download support.",
|
|
||||||
"Publish companion 0.5.34/build54 with the existing signing identity and verified phone save/open behavior.",
|
|
||||||
"Known limitation: Angor historical project discovery is incomplete. Funding data for 35 reference projects was verified, but 34 original project announcements remain unavailable from the relays checked; recovery is tracked separately."
|
|
||||||
],
|
|
||||||
"components": [
|
|
||||||
{
|
|
||||||
"current_version": "1.9.0-alpha",
|
|
||||||
"download_url": "https://source.archipelago-foundation.org/lfg2025/archy/releases/download/v1.9.0-alpha/archipelago",
|
|
||||||
"name": "archipelago",
|
|
||||||
"new_version": "1.9.0-alpha",
|
|
||||||
"sha256": "560aa6006cd9ef8be95b1f7831cf3b53854e911622b50022bb4402ce0f8b010a",
|
|
||||||
"size_bytes": 66475120
|
|
||||||
},
|
|
||||||
{
|
|
||||||
"current_version": "1.9.0-alpha",
|
|
||||||
"download_url": "https://source.archipelago-foundation.org/lfg2025/archy/releases/download/v1.9.0-alpha/archipelago-frontend-1.9.0-alpha.tar.gz",
|
|
||||||
"name": "archipelago-frontend-1.9.0-alpha.tar.gz",
|
|
||||||
"new_version": "1.9.0-alpha",
|
|
||||||
"sha256": "6d5135fa8e79b1bc84c8ed972770ebf99fe6611d819e5c1453f38f1593c26e66",
|
|
||||||
"size_bytes": 106942370
|
|
||||||
}
|
|
||||||
],
|
|
||||||
"release_date": "2026-10-05",
|
|
||||||
"signature": "695fe223a525bec266ec20da497883c80cad05a2779003618229cd97cec4477c9054d564ad4aef938d0c7872b42ae112d8b04406413bced43dd007eaf865e707",
|
|
||||||
"signed_by": "did:key:z6Mkfu5LT8d4DjETtrkATvHh9Dvcbnr7zBCUwfau8Sw7DLWT",
|
|
||||||
"version": "1.9.0-alpha"
|
|
||||||
}
|
|
||||||
Reference in New Issue
Block a user