-
Notifications
You must be signed in to change notification settings - Fork 0
Routes and Features
homepage with dynamic latest feed, latest journal, and music cards.
- list/search/paginate feed posts from
data/feed/*.txt - create visibility depends on admin or
allowedPagescontainingfeed - writes derived
index.toml -
@mentionsin BBCode are highlighted client-side for notification-aware feed posts
Related:
/feed/create/feed/edit/feed/posts/{id}
- single-post thread view for a feed item
- logged-in users can reply with BBCode and image uploads
- reply edit/delete is allowed for the reply author, admins, the original post owner, or accounts with
allowedPagescontainingcomments - replies persist under
data/feed/replies/{postId}.json
- list/search/paginate journal posts from
data/journal/*.txt - create visibility depends on admin or
allowedPagescontainingjournal - published journal bodies are trusted HTML
- preview/edit flows support draft files and optional
FORMAT:html
Related:
/journal/create/journal/create/preview/journal/edit/journal/edit/preview/journal/posts/{id}
- list entries from
data/guestbook/*.txt - one-post-per-IP gate via
data/guestbook/ip_index.json - owner/admin edit and delete flow
Related:
/guestbook/create/guestbook/edit
- builds album grids from
data/music/frdg3/*.jsonanddata/music/cactile/*.json - songs reference
data/audio/* - integrates with the shared mini player
- paginated listing of
data/images/* - admin delete actions call
/api/gallery/delete
- server-rendered bookmark listing for logged-in users
- client-side localStorage enhancement for anonymous users
- supports feed, journal, and newsletter bookmark ids
- UI shell only
- persistence handled by
/api/settings - includes theme/glow settings and mobile-friendly-view preference
- shows a Discord linking action for logged-in users and disables it once
discordUserIdis already linked
currently just redirects:
- logged in ->
/ - logged out ->
/account/login
- secure session config
- CSRF protection
- login throttling via
data/accounts/login_attempts.json - reads
data/accounts/accounts.json - sets session user payload and
is_admincookie - users with
mustResetPasswordare redirected into the password-change flow before using the rest of the site
destroys session and auth cookies, then redirects back to login.
admin-only account creation flow that writes to data/accounts/accounts.json.
- can seed
discordUserId - can grant
commentspermission - newly created accounts are flagged with
mustResetPassword - if a Discord id is provided, it asks the local toast bot to DM the invite credentials
both update the current user password hash in accounts.json.
- first-login forced password reset lands here via
?first_login=1
- logged-in-only Discord linking flow
- validates the Discord user id, checks uniqueness across accounts, and asks the local toast bot to verify the member is in the server
- stores
discordUserIdon the account and assigns the Discordregisteredrole through the bot
not covered in the older references, but very real.
- admin-only account directory
- reads all accounts and renders permission badges
- links to per-account edit page
- admin-only account editor
- supports rename, display-name change, permission changes, reset password, and delete
- preserves unknown extra account fields through an editable JSON object field
- blocks deleting the currently logged-in account
- includes
commentsas a grantableallowedPagespermission - password resets now preserve the account and flip
mustResetPasswordback on
Helpers live in account/admin/helpers.php.
contact page wrapper.
archive page for published newsletter HTML files in data/newsletter/*.html.
- newsletter cards can be bookmarked like feed/journal entries
Related:
/email/newsletter/create/email/newsletter/create/preview/email/newsletter/preview/email/newsletter/release/{id}
Mailing-list status wrappers:
/email/mailinglist/subscribe/email/mailinglist/unsubscribe/email/mailinglist/invalid/email/mailinglist/error
simple wrapper page for the Discord community entry point.
simple wrapper page for merch links/content.
misc landing page for routes that do not fit elsewhere.
Subroutes:
/others/off-topic-archive/others/toast-discord-bot/others/fridge-builds-websites
frontend archive viewer backed by data/etc/off-topic-archive.json.
UI shell for toast bot status, controls, and stream playback.
- admin-only DM inbox/sender for toast
- reads tracked DM history, resolves linked website usernames to Discord ids, and can send outbound DMs through the local bot service
wrapper/marketing page for custom website work. this exists in code even though the older docs mostly ignored it.
/formatting/formatting/example_page/error/403/error/404/error/50x/error/wip