Skip to content

v1.7.3

Choose a tag to compare

@CLOUDWERX-DEV CLOUDWERX-DEV released this 17 May 23:22
· 14 commits to main since this release

Security

  • Hardened Electron renderer isolation (electron/main.js, electron/preload.js): Replaced direct renderer Node access with a context-isolated preload bridge, disabled renderer nodeIntegration, enabled contextIsolation, enabled renderer sandboxing, restored webSecurity, and allowlisted IPC invoke/send/listener channels exposed to the frontend.
  • Moved renderer file-system playlist writes behind IPC (BroadcastTab.js, mediaServer.js): Replaced direct fs and path usage in the Broadcast tab with a validated save-stream-playlist IPC handler that writes stream.m3u from the main process.
  • Restricted high-risk IPC surfaces (filesystem.js, system.js, extensionServer.js): Added protocol checks for external links, media-file extension checks for read/delete IPC handlers, custom player path validation, extension-server URL validation, and a request body limit for extension enqueue requests.
  • Hardened runtime binary downloads (provisioning.js): Added HTTPS-only binary download validation, HTTP status checks, timeout handling, and temporary-file atomic replacement before managed binaries are promoted into place.

Changed

  • Replaced renderer IPC access (src/): Migrated renderer calls from raw window.require('electron') / ipcRenderer usage to the window.saucebox preload API across app startup, storage persistence, downloads, gallery playback, playlist editing, broadcast controls, settings, and support links.
  • Replaced native browser confirmations (App.js, DownloadTab.js, BroadcastSecurityConfig.js): Removed remaining window.confirm usage and routed duplicate-download and internet-exposure confirmations through the modular ConfirmModal component.
  • Moved OS path lookups behind IPC (SettingsDownloadLocation.js, SettingsSecurityVault.js, SettingsAbout.js): Removed renderer os, path, and process.platform dependencies by exposing only platform metadata and resolved application paths from the main process.

Documentation

  • Updated agent security rules (AGENTS.md): Documented the window.saucebox preload bridge requirement, renderer Node-access ban, Electron security defaults, confirmation modal requirement, and current Electron source map entries.

Removed

  • Removed tracked scratch artifacts (scratch.js, release_notes_1.7.2.tmp): Deleted local one-off release/editing helper files from the tracked project tree.