You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Hardened Electron renderer isolation (electron/main.js, electron/preload.js): Replaced direct renderer Node access with a context-isolated preload bridge, disabled renderer nodeIntegration, enabled contextIsolation, enabled renderer sandboxing, restored webSecurity, and allowlisted IPC invoke/send/listener channels exposed to the frontend.
Moved renderer file-system playlist writes behind IPC (BroadcastTab.js, mediaServer.js): Replaced direct fs and path usage in the Broadcast tab with a validated save-stream-playlist IPC handler that writes stream.m3u from the main process.
Restricted high-risk IPC surfaces (filesystem.js, system.js, extensionServer.js): Added protocol checks for external links, media-file extension checks for read/delete IPC handlers, custom player path validation, extension-server URL validation, and a request body limit for extension enqueue requests.
Hardened runtime binary downloads (provisioning.js): Added HTTPS-only binary download validation, HTTP status checks, timeout handling, and temporary-file atomic replacement before managed binaries are promoted into place.
Changed
Replaced renderer IPC access (src/): Migrated renderer calls from raw window.require('electron') / ipcRenderer usage to the window.saucebox preload API across app startup, storage persistence, downloads, gallery playback, playlist editing, broadcast controls, settings, and support links.
Replaced native browser confirmations (App.js, DownloadTab.js, BroadcastSecurityConfig.js): Removed remaining window.confirm usage and routed duplicate-download and internet-exposure confirmations through the modular ConfirmModal component.
Moved OS path lookups behind IPC (SettingsDownloadLocation.js, SettingsSecurityVault.js, SettingsAbout.js): Removed renderer os, path, and process.platform dependencies by exposing only platform metadata and resolved application paths from the main process.
Documentation
Updated agent security rules (AGENTS.md): Documented the window.saucebox preload bridge requirement, renderer Node-access ban, Electron security defaults, confirmation modal requirement, and current Electron source map entries.
Removed
Removed tracked scratch artifacts (scratch.js, release_notes_1.7.2.tmp): Deleted local one-off release/editing helper files from the tracked project tree.