v1.4.2
v1.4.2
- Clarified CHM and built-in docs so
registeris no longer confused with macro registries andmacro_install ..._registryworkflows. - Added built-in macro trust-by-origin for shipped bundled macros: known macros from the built-in macro directory can resolve to
trustedwithout detached signatures when their shipped hash matches and they do not trigger hard risk flags. - Prevented accidental trust escalation for modified or extra files in the built-in macro directory by checking real file origin plus a built-in hash manifest instead of trusting
{{macro_dir}}usage alone. - Kept JavaScript and external URL risk flags authoritative, so risky built-in macros still resolve to
untrusted. - Updated
trust,verify,sign,macro_dir, and macro registry documentation to explain the new built-in trust behavior and common trust outcomes. - Expanded the CHM/HTML guides with more workflow-oriented trust guidance, including when to use built-ins, unsigned local macros, or signed registry-delivered macro packs.
- Fixed
signandverifysubcommands so macro paths using{{macro_dir}}resolve correctly there as well.
What's Changed
- v1.4.2 by @bryan-ente in #4
Full Changelog: v1.3.1...v1.4.2
ProtoML release checksums
Generated at (UTC): 2026-04-18T21:57:18.523Z
fb512cbe108a7dd34bc57e2b088677c54444d4597e75e4933a9ebb49ae1fc103 protoml-help.chm
5aa428a4a94210a181bcb21052a2cbef3ab422e9d9836f880890b2487c78f823 protoml-help.chw
8b4c0840c7c7f4bcddb92022a27915d1999268f0012928e7b8d4456ef89af5f5 protoml-parser-linux
affc50b09bfa9948ce61f4e29f0bb07242571850c35eca2ebf989eaa53f0a8ee protoml-parser-win.exe