Repository navigation
v3.2.6-sr94.65: upstream issue fixes
Applicable upstream issues
- Fix numeric-leading email searches in the admin Users list and count (thedevs-network#1033).
- Update ioredis within major 5 for DNS-family handling (thedevs-network#1020); AAAA-only DNS is not emulated in the smoke test.
- Preserve published links, visits and domains when an account is deleted, and show the retained-link count before confirmation (thedevs-network#1008).
- Correct annual statistics to twelve calendar months (thedevs-network#1000).
- Return HTTP 409 for duplicate custom aliases without mutating the existing link (thedevs-network#975).
- Emit UTC ISO 8601 API expiry output while retaining relative-expiry input (thedevs-network#930).
- Accept one-digit URL ports (thedevs-network#926).
- Generate verification token and expiry for admin-created unverified users (thedevs-network#825).
All 69 open upstream issues were reviewed: eight fixed here, 31 already covered, ten hosted/unreproduced, and 20 separate feature or policy requests. Issue-by-issue disposition.
Verification
Source tag at 406fc810d6780a9b5343df89f6c171a6db5d6379; main CI, tag/image CI, and Shortcut CI passed. Source image ghcr.io/robinmjd/kutt@sha256:054a624d1ad162f3551d9c8f2b5015f8489e7354820c812bf9c24ce8360444d5 matched the tagged source. The hardened homelab image passed full isolated tests and an image scan with zero Critical/High and three Medium findings.
Live public WAF/SSO smoke, signed Authentik logout, original-record checks, two healthy samples and full lab validation passed. Pre- and post-change backups were copied off-host; the post-change local and NAS restores matched byte-for-byte across 75 files and passed writable candidate-image database recovery. Existing records and secrets were retained.
Compatibility and recovery
No schema, WAF, SSO, CSP, TLS or public-redirect policy change. API expire_in output is now UTC ISO 8601; relative input still works. Image-only rollback to .64 preserves the current database and secrets but restores the old defects. Do not overwrite newer data with a stale snapshot. Reload open admin pages after upgrading.