Immutable
release. Only release title and notes can be modified.
What's new in v1.0.43
- π registry auth survives an http to https token realm redirect behind a TLS proxy (#1428)
- π security: update Go to 1.25.13 (8 HIGH stdlib CVEs) and update docker-compose to 5.5.0
- β¨ Compose validate - a preflight linter & validator for compose files
- β¨ Bitwarden Secrets Manager as a secret provider via an operator-installed bws client (PR#1416, @StefanSa)
- β¨ Proton Pass as a secret provider via an operator-installed pass-cli client
- β¨ Infisical: Universal Auth (Machine Identity) as well as a static token (#1398, @strausmann)
- β¨ detect newer version tags for pinned images and show them as a badge with release notes (#1176)
- β¨ OpenAPI spec at /api/docs with a Scalar viewer, opt-in via FEAT_API_DOCS (#814, PR#1342, @strausmann)
- β¨ Zabbix notification channel via the history.push API (PR#1419, @snesterkov)
- π concurrent git syncs sharing an SSH credential no longer fail on a missing temp key (#1413, PR#1143, @HoroTW)
- π backup notifications show a real title and message instead of "undefined" (#1414)
- π git stacks accept a compose/env path with a leading slash (#1355)
- π container update notifications now fire properly (#1424)
- π Infisical: the project ID is optional when using a service token - it's taken from the token (#1398)
- π API: adopting a stack rejects a compose path not on Dockhand's filesystem (#1375)
- π API: validating a stack's env vars no longer drops the environment id (#1423)
- π editing a secret provider no longer wipes its stored token (#1432)
Docker image
docker pull fnsys/dockhand:v1.0.43Also available as fnsys/dockhand:latest