Forgepost 0.2.0
Video embeds, one-command demo, zip backups, and a hardening pass on the server.
Highlights
- Video blocks — a line that is exactly one YouTube/Rumble URL or an
<iframe>becomes a click-to-load video block: lazy thumbnail, zero third-party requests until the reader plays, privacy-host YouTube embeds and strict referrer policy,og:video+ JSON-LDVideoObject - One-command demo —
forgepost demoinstalls and serves a bundled six-article blog with images and a live A/B experiment - SQLite ZIP backups —
forgepost backup createseals the database + media into a self-verifying.fpbarchive;verify/restorewith a pre-restore rollback snapshot - Show/hide password toggle on the login and setup forms
- Security hardening — rate limits keyed on the socket peer (never spoofable via forwarded headers), a layered proptest-backed regression suite with
cargo auditin CI, server-verified experiment attribution (one shared assignment function between render and events), once-per-visitor conversions, one running experiment per block, latch-guarded experiment conclusions - Internal — the monolithic server split into
domain/application/infrastructurecrates
Assets
forgepost(Linux x86_64): sha2564c9b50a0293fb524945ce390014b3b7bea2b5a1ac974e26d544b2bf3f2573944