Skip to content

Releases: Loecedas/InkGist

Release list

v1.1.0

Choose a tag to compare

@Loecedas Loecedas released this 25 Sep 05:09

墨萃 InkGist v1.1.0 正式版发布 | Release Notes

🇨🇳 中文:墨萃 InkGist — 轻量高颜值 AI 网页智能速读、像素级离线快照、多层级书签管理与 Karakeep 直连同步平台。
🌐 English: InkGist — A lightweight, aesthetic platform for AI web summarization, pixel-perfect offline snapshots, hierarchical bookmark management, and Karakeep direct synchronization.


🇨🇳 中文说明 (Chinese)

🚀 核心新特性与改进

1. 🦔 Karakeep (Hoarder) 直连同步 & 自定义实例配置

  • 多端直连互通:支持直连同步到 Karakeep 官方云端 (https://cloud.karakeep.app) 以及私有局域网自建实例(如群晖、NAS、本地 Docker 等)。
  • 分类与标签自动映射:同步时自动在 Karakeep 中检索或创建对应 Lists 目录,精准映射「一句话核心概括」与「关键功能说明」。
  • 一键测试连接:同步弹窗内置网络连通性与 API Key 有效性即时测试探测。

2. 🔒 工业级客户端 Web Crypto 凭据加密引擎 (安全加固)

  • 拒绝明码存储:前端输入 Karakeep API Key 后,采用浏览器原生 Web Cryptography API (AES-GCM-256) 结合本地设备种子与 PBKDF2(100,000 轮)动态加密存储,杜绝任何明码泄露。
  • 平滑自动迁移:自动迁移并彻底销毁旧版本明文项;清空密钥时自动销毁本地密文。
  • 显隐眼睛切换:密码输入框新增一键切换明暗小眼睛按钮,防误触防输错。

3. 🛡️ 服务端 SSRF 深度防御与端口封堵

  • 拦截云元数据探针:服务端代理严格拦截 169.254.169.254、metadata.google.internal 等云厂商元数据地址。
  • 拦截高危敏感端口:封锁系统与数据库非 Web 敏感端口(如 Redis 6379、SSH 22、Docker 2375 等),防止内网穿透渗透。
  • 协议白名单与 CRLF 过滤:严格仅允许 HTTP/HTTPS 协议,杜绝回车换行走私攻击。
  • 请求限流防刷:接口增加针对单个客户端 IP 的高频防刷安全限制。

4. ⚡ 自动化构建、版本内联与 Cloudflare 边缘兼容

  • Cloudflare 边缘版本内联:版本号与 Git Commit SHA 在编译时直接注入客户端与服务端,彻底解决 Serverless 边缘环境下因缺少文件系统而无法正确识别版本的问题。
  • 纯净本地 Release 打包工具:自动按版本在本地 release/v{VERSION}/ 独立建档,并自动配置 .gitignore 严防安装包泄露到公共 Git 仓库。
  • 全量自动化测试套件:新增全量自动化回归测试,100% 覆盖 SSRF、加解密完整性与边界校验。

🌐 English Release Notes

🚀 Key Highlights & Improvements

1. 🦔 Karakeep (Hoarder) Direct Synchronization & Instance Configuration

  • Seamless Connectivity: Direct one-click synchronization to Karakeep Cloud (https://cloud.karakeep.app) or self-hosted private instances (NAS, Synology, Docker, LAN).
  • Intelligent Category & Tag Mapping: Automatically queries or creates corresponding Lists in Karakeep, with semantic field mapping for one-line summaries and core descriptions.
  • One-Click Connectivity Diagnostics: Built-in real-time connection test tool in the export modal to verify instance accessibility and API Key permissions.

2. 🔒 Enterprise-Grade Web Crypto Credential Encryption (Security Hardening)

  • Zero Plaintext Storage: Karakeep API Keys entered on the client side are encrypted via the browser-native Web Cryptography API (AES-GCM-256) derived using PBKDF2 (100,000 iterations) with device-isolated seeds.
  • Seamless Auto-Migration: Automatically upgrades and destroys legacy unencrypted storage entries; clears ciphertexts when keys are removed.
  • Interactive Visibility Toggle: Eye icon added to the password input field for quick inspection.

3. 🛡️ Server-Side SSRF Defense & Sensitive Port Guard

  • Cloud Metadata Defense: Blocks sensitive cloud instance metadata addresses (169.254.169.254, metadata.google.internal).
  • Dangerous Port Blocklist: Blocks non-Web system and database ports (e.g., Redis 6379, SSH 22, Docker 2375) against intranet probing.
  • Strict Protocol Whitelist & CRLF Sanitization: Rejects non-HTTP/HTTPS schemes and CRLF injection.
  • Rate Limiting: Built-in IP-level rate limiting to thwart brute-force probes and proxy abuse.

4. ⚡ Cloudflare Edge Compatibility & Automated Packaging

  • Compile-Time Version Inlining: Directly inlines appVersion and Git Commit SHA at build time to ensure accurate version display in Serverless Edge environments (Cloudflare Pages/Workers).
  • Clean Local Release Tooling: Versioned output to release/v{VERSION}/ with automatic .gitignore protection against binary leakages into Git repositories.
  • Comprehensive Automated Test Suite: 21/21 automated tests passing with 100% regression coverage.

📦 资产校验和 / Checksums (SHA-256)

94ffd98ed3a6c3149bd6fde8ba0577342defb272748e2981fb3d7a93b4416ed7  inkgist-v1.1.0-standalone.zip
74f33c4edc3b975e506c0c4c13cada9f7cc8376cc350306bb12e8890b3aa1213  inkgist-bookmarks-extension.zip
fe576a61b4833a52b9cd1d3922bb3e23a3749523ea2733d6bcde59d6e96c81b6  inkgist-bookmarks-assistant.crx

v1.0.0

Choose a tag to compare

@Loecedas Loecedas released this 05 Sep 10:09

墨萃 InkGist — 轻量高颜值 AI 网页智能速读、像素级离线快照与多层级书签管理平台
AI-powered web reading companion, pixel-perfect offline snapshot archiver, and hierarchical bookmark management system.

🇨🇳 中文更新说明 (Release Notes - CN)

✨ 新增功能

  • 📸 网页全量离线快照 (Offline Snapshots):
    • 支持直接在首页粘贴 URL 一键捕获无损离线快照;
    • 100% 还原原网页图文排版、嵌入样式与字体资产,突破反爬、登录墙与折叠拦截;
    • 正文全量保存在浏览器本地 IndexedDB 中,并生成专属永久离线分享链接,彻底解决 404 与内容失效问题;
    • 快照库提供全功能画廊浏览、搜索与批量管理,支持 1024px 与移动端自适应响应式排布。
  • 🤖 AI 深度智能速读 (AI Deep Summaries):
    • 集成 Defuddle 高性能正文提取引擎;
    • 接入 Gemini、OpenAI、Claude、DeepSeek、GLM 等主流大模型及自定义 OpenAI 兼容接口;
    • 秒级生成核心价值摘要、提纲脑图与精选金句,支持实时打字机流式输出与在线二次编辑;
    • 支持最多 5 任务受控并发流水线批量处理。
  • 📑 现代化书签管理系统 (Hierarchical Bookmarks):
    • 支持无限层级文件夹分类、标签筛选与模糊搜索;
    • 完美支持标准 Netscape HTML 书签格式一键导入与导出(兼容 Chrome / Edge / Firefox / Safari);
    • 响应式多列布局自由切换(1 列 / 2 列 / 3 列)。
  • ⚡ 跨端免扩展小书签 (Universal Bookmarklet):
    • 无需安装任何臃肿的浏览器插件,拖拽小书签至浏览器书签栏即可在任意第三方网页一键呼出快照或智能总结。
  • 🔄 系统平滑在线自动更新 (Seamless Auto-Update):
    • 贴心内置版本检测与在线更新弹窗,支持中英双语更新说明无缝切换;
    • 完美适配 Git/Node.js、Docker 容器化、1Panel / 宝塔面板等多种部署形态;
    • 数据层与程序层完全解耦,升级过程绝不覆盖或影响已有书签与快照数据。

🇺🇸 English Release Notes (EN)

✨ New Features

  • 📸 Full-Fidelity Offline Web Snapshots:
    • Direct one-click snapshot generation from homepage URL inputs;
    • 100% lossless DOM and styling preservation with embedded images and fonts, immune to 404s, login gates, and anti-crawler barriers;
    • Persistent offline storage backed by IndexedDB with dedicated sharable offline URLs;
    • Clean gallery view with search, filtering, and responsive grid layouts (optimized for 1024px tablets and mobile screens).
  • 🤖 AI Deep Summaries & Multi-Model Support:
    • Powered by Defuddle content extraction engine;
    • Seamlessly integrated with Gemini, OpenAI, Claude, DeepSeek, GLM, and custom OpenAI-compatible endpoints;
    • Real-time streaming output of executive summaries, structured outlines, and key takeaways with interactive in-place markdown editing;
    • Controlled 5-concurrency pipeline batch processing.
  • 📑 Hierarchical Bookmark Management:
    • Unlimited nested folder organization, tag filtering, and fuzzy search;
    • Full compatibility with Netscape HTML standard bookmark import and export (Chrome, Edge, Safari, Firefox);
    • Dynamic multi-column layout switching (1 / 2 / 3 columns).
  • ⚡ Universal Zero-Dependency Bookmarklet:
    • Drag-and-drop to browser bookmark bar for instant snapshots or summaries without extension installs.
  • 🔄 Non-Destructive In-App Updates:
    • Built-in update check with bilingual (CN/EN) release notes switching;
    • Supports Git/Node.js, Docker containers, and 1Panel/BT-Panel workflows without touching user data.

📥 安装 / Installation

Docker:

docker run -d \
  --name inkgist \
  -p 3000:3000 \
  --restart unless-stopped \
  ghcr.io/loecedas/inkgist:latest