Skip to content

v1.4.2

Choose a tag to compare

@bryan-ente bryan-ente released this 18 Apr 21:55
· 3 commits to master since this release
95aa65a

v1.4.2

  • Clarified CHM and built-in docs so register is no longer confused with macro registries and macro_install ..._registry workflows.
  • Added built-in macro trust-by-origin for shipped bundled macros: known macros from the built-in macro directory can resolve to trusted without detached signatures when their shipped hash matches and they do not trigger hard risk flags.
  • Prevented accidental trust escalation for modified or extra files in the built-in macro directory by checking real file origin plus a built-in hash manifest instead of trusting {{macro_dir}} usage alone.
  • Kept JavaScript and external URL risk flags authoritative, so risky built-in macros still resolve to untrusted.
  • Updated trust, verify, sign, macro_dir, and macro registry documentation to explain the new built-in trust behavior and common trust outcomes.
  • Expanded the CHM/HTML guides with more workflow-oriented trust guidance, including when to use built-ins, unsigned local macros, or signed registry-delivered macro packs.
  • Fixed sign and verify subcommands so macro paths using {{macro_dir}} resolve correctly there as well.

What's Changed

Full Changelog: v1.3.1...v1.4.2


ProtoML release checksums

Generated at (UTC): 2026-04-18T21:57:18.523Z

fb512cbe108a7dd34bc57e2b088677c54444d4597e75e4933a9ebb49ae1fc103 protoml-help.chm
5aa428a4a94210a181bcb21052a2cbef3ab422e9d9836f880890b2487c78f823 protoml-help.chw
8b4c0840c7c7f4bcddb92022a27915d1999268f0012928e7b8d4456ef89af5f5 protoml-parser-linux
affc50b09bfa9948ce61f4e29f0bb07242571850c35eca2ebf989eaa53f0a8ee protoml-parser-win.exe