Skip to content

AChrix v0.3.0

Pre-release
Pre-release

Choose a tag to compare

@ach1992 ach1992 released this 05 Oct 04:53
cbdbaac

Developer source release of the pre-v1 v0.3 line. New consumers should pin github.com/AChWorks/achrix@v0.3.0 and begin with the versioned product quick start.

Included

  • Optional Multi-Site exact-authority resolver (achrix.multisite.resolve ABI 1) in the shared Foundation release. Single-site products may omit it; products still own trusted ingress and all site-bound authorization/data/storage/configuration.
  • Media private SVG opt-in with immutable schema version 3. Default PNG/JPEG and the finite common profile remain unchanged; SVG remains a private attachment format, not a public-inline capability.
  • Bounded per-instance Identity/Audit/Media pool and operation admission configuration via MaxConns / MaxOperations, preserving documented finite defaults.
  • Separately authorized clean PNG/JPEG preparation (achrix.media.prepare-public-image ABI 1). It prepares a verified private derivative result but grants no original Read, publication, public URL, storage activation or future authorization.
  • Media and Identity/Audit public dependency-error boundaries now preserve only documented safe categories/context identities rather than private provider/destination wrapper text or unwrap objects, while retaining bounded diagnostics, cancellation and unknown-outcome/accountability behavior.
  • Versioned v0.3 consumption and v0.2 -> v0.3 migration guidance.

These packages still share one Go module/version. Products own domain/content schemas, permissions, composition, ingress, configuration, deployment, publication and real recovery policy. A source release does not migrate a database or activate/deploy a product.

Compatibility and migration from v0.2

This is a breaking v0 minor relative to v0.2, not a v0.2.x patch.

  • Replace positional Identity/Audit/Media Config literals with keyed fields before adopting v0.3. Zero resource fields keep documented bounded defaults; zero never means unlimited.
  • Media schema version 3 requires explicit migration. Quiesce old writers, preserve a coherent PostgreSQL metadata/ledger plus private-original capture, run the migration with a deadline, then start only the new composition.
  • Published v0.2 source expects the older Media ledger and rejects schema version 3. Source downgrade is not database rollback; use the reviewed forward source or restore a coherent pre-upgrade capture into a compatible target.
  • PreparePublicImage and Multi-Site are additive capability ABI 1 surfaces and do not upgrade unrelated existing capability ABI revisions.
  • Consumers must not depend on pgx/provider/destination-specific error unwrap objects as public Foundation API. Existing mutation acknowledgement/reconciliation semantics are unchanged.

Published v0.1.0 and v0.2.0 tags/source remain immutable.

Environment and limits

The existing supported environment and owning Module guides remain authoritative. The release is a source Foundation dependency, not a production application distribution. Whole-product recovery/update UI, production deployment, Rixa runtime isolation proof and later retained-state proof remain separately owned outcomes.

Verified source identity

  • Source commit: cbdbaac4ce868b1c9096ab7d7cfe23d8ac4006ee
  • Source tree: e9232801247167a9a863e219ad55e6abb3db7c90
  • Exact-main baseline: run 37263849757 — SUCCESS
  • Hosted preparation: run 37265041700 — SUCCESS
  • Runtime safety corrections: #83 / PR #86 and #84 / PR #87, each independently reviewed and post-main verified
  • v0.3 release documentation: #88 / PR #89, independently reviewed COMPLETE/APPROVE and post-main verified