Skip to content

TokenGauge v0.0.3

Choose a tag to compare

@Gares95 Gares95 released this 08 Aug 15:38
· 16 commits to main since this release
87649b7

Summary

TokenGauge v0.0.3 releases the current public main after the v0.0.2 Marketplace publication.

This patch keeps the existing package identity:

  • Publisher: gares-extensions
  • Name: tokengauge-vscode
  • Extension ID: gares-extensions.tokengauge-vscode
  • Version: 0.0.3

Fixed

  • Manual Refresh now clears retained Codex probe state before forcing a fresh Codex native-status probe, matching the settings toggle behavior without requiring the user to disable and re-enable the probe.
  • Codex app-server responses that expose recognized usage windows through rateLimitsByLimitId are accepted when direct rate-limit slots contain no recognized window, while duplicate recognized fallback windows still fail closed.

Changed

  • README installation and project-status wording now reflects the existing GitHub Releases and Visual Studio Marketplace publication.

Security and maintenance

  • Development and test tooling maintenance updated @vscode/test-electron to 3.1.0 and refreshed affected dev-only transitive packages, including linkify-it, brace-expansion, fast-uri, js-yaml, nanoid, postcss, and undici.
  • Full npm audit: zero vulnerabilities.
  • Production npm audit: zero vulnerabilities.

These maintenance items are development/test tooling changes. No installed-user runtime exposure was identified.

Install from GitHub Releases

Download the attached VSIX:

tokengauge-vscode-0.0.3.vsix

Verify its SHA-256:

ce8f2b9d30182486a975f3986ce3dbeb39e8d56bddf86597459b5f7c7743130c

Install from a terminal:

code --install-extension tokengauge-vscode-0.0.3.vsix

Visual Studio Marketplace

The permanent Marketplace identity remains:

gares-extensions.tokengauge-vscode

Marketplace publication of this exact v0.0.3 VSIX is a separate owner-authenticated upload step. Do not rebuild a different VSIX for Marketplace.

Validation

  • PR checks passed on Ubuntu, macOS, and Windows.
  • Post-merge checks passed on Ubuntu, macOS, and Windows.
  • CodeQL passed.
  • GitGuardian passed.
  • Local tagged-source validation passed with npm run check.
  • VSIX package audit passed with 12 entries.

Artifact provenance

  • Tag: v0.0.3
  • Commit: 87649b70df9cab448c204f316f76dc9f9d9af0b1
  • Tree: ca813f632c972c3b617adc0ef0457d004a58401f
  • Final VSIX SHA-256: ce8f2b9d30182486a975f3986ce3dbeb39e8d56bddf86597459b5f7c7743130c
  • Packaged production extension/dist/extension.js SHA-256: 82aa1e1381a8713fa40dc201e1d87ac18e20f55d02f84905814f6a7fa933fe2b
  • Packaged extension/dist/webview/cockpit.js SHA-256: dd26e8c1a89cbef22dadf9d97bab9022b0e4e20ae88d9ec1dba41b8453b1c6aa
  • Packaged extension/dist/webview/assets/cockpit-7T_AkNyk.css SHA-256: 20e796fa2a878f4a5f15ab1f87444a17c691b935fa345666282bd4aff7e7479a