Skip to content

v0.3 — Redis storage, passkeys & offline support

Latest

Choose a tag to compare

@IAMSDR IAMSDR released this 20 Sep 10:57
· 10 commits to main since this release

Upgrading from v0.2

v0.3 replaces NuxtHub and Cloudflare D1 with Redis. Your old data is not moved across automatically, so please back up first, then restore in the new version.

  1. On your current v0.2 app, unlock app and export an encrypted backup from Backup & Restore. Keep the backup password safe.
  2. Update to v0.3 and add your Redis environment variables (see below).
  3. Open the new v0.3 app, create your vault, then restore the .backup file from Backup & Restore.
  4. Check that your codes work, then remove the old D1 database.

The backup format is unchanged between versions, so a v0.2 backup opens fine in v0.3.

Breaking changes

  • NuxtHub and Cloudflare D1 removed. Storage now runs on Redis. D1 data is not migrated automatically — use the backup and restore steps above.
  • New environment variables are required:
    • UPSTASH_REDIS_REST_URL and UPSTASH_REDIS_REST_TOKEN (Upstash REST — good for Cloudflare and Vercel), or
    • REDIS_URL (self-hosted Redis over TCP — Node.js only).
    • NUXT_SESSION_PASSWORD is still required.
  • Drizzle config, database schema, and migrations removed. There is no SQL database anymore.

Highlights

  • New Redis storage layer that works with both Upstash REST and self-hosted Redis (ioredis), including rate limiting done with an atomic script.
  • Better passkey support using the WebAuthn PRF extension.
  • Offline access — accounts are cached locally, and you get clear messages when a change can't be saved offline.
  • New vault setup and change-password screens.
  • New toast notifications and a refreshed theme system that no longer flashes the wrong color on reload.
  • Smoother Cloudflare deployment (fixed the reflect-metadata and string_decoder build issues).

Fixes

  • Encrypted backup restore no longer fails on URI files, and now shows progress.
  • Passkey PRF salt is sent correctly as base64url.
  • Login rate-limit window tightened from 10 minutes to 2 minutes.
  • Toasts now appear above modals and sheets, and fit better on mobile.
  • Icon suggestions restored in forms.

Dependencies and docs

  • Resolved 69 Dependabot security alerts and upgraded major dependencies (Nuxt 4, SimpleWebAuthn 14, Zod 4, Tailwind 4, and more).
  • Added Vitest unit tests and end-to-end smoke tests.
  • Licensed under AGPL-3.0.

Full changelog

Compare v0.2...v0.3