Skip to content

Ghostwriter v4.0.0-rc2

Pre-release
Pre-release

Choose a tag to compare

@chrismaddalena chrismaddalena released this 21 Aug 21:14
07286b1

Summary

This release candidate includes all the changes from v4.0.0-rc1 with clean-up, bug fixes, and adjustments following feedback. This release also includes a major new feature, support for 2FA.

CHANGELOG

[4.0.0-rc2] - 21 August 2023

Added

  • Added a "People" tab to the project dashboard that shows the project's assignments and client contacts
  • Added configuration options for managing browser sessions
    • SESSION_COOKIE_AGE sets the number of seconds a session cookie will last before expiring
    • SESSION_EXPIRE_AT_BROWSER_CLOSE sets whether the session cookie will expire when the browser is closed
    • SESSION_SAVE_EVERY_REQUEST sets whether the session cookie will be saved on every request
  • Added support for two-factor authentication using TOTP

Changed

  • Separated the project form into two forms: one for the project details and assignments and one for project components (e.g., white cards, objectives)
    • This allows accounts with the user role to edit project components without permission to edit the project or its assignments
  • Moved project assignments to the new "People" tab on the project dashboard
  • Hid menus and buttons for features that are not available to the current user
  • Access to the admin console is now routed through the main login form to require 2FA (if enabled for the user)

Fixed

  • Fixed an issue that would prevent new projects from saving properly

Removed

  • Removed the unused restricted account role
    • This is a clean-up for the release candidate; the restricted role was experimental and never implemented in the access controls
  • Removed the user role's privileges to create, edit, and delete project assignments and client contacts to better adhere to the role's intended permissions
  • Removed permissions for updating report templates via the GraphQL API
    • This option will return in a future release when it is possible to upload a template file via the API