v0.3.0
Your copies are encrypted end to end: the server passes them between your devices and cannot read them.
What's new
- End-to-end encryption. Your devices share a key, which the first of them makes. Every copy is sealed with it before it leaves a device, and opened only on another; the server sees when a copy passes, from which device, and its type and size, never what it says. What the server can see.
- Pairing. Give the key to each other device once, with a code or a QR: from the Mac app (Settings → Encryption → Pair Another Device), with
mg pairandmg pair <code>, or in a browser, by the code's link. A code works once, for ten minutes. Pairing a device. - The web page encrypts too, in the browser, with a key it cannot export: on a computer, or on an iPhone's Home Screen, where scanning the Mac's QR pairs it. On an iPhone.
- A bridge for the iPhone Shortcuts, which cannot encrypt. It is off until you switch it on, on one of your devices, and then passes the Shortcuts' copies in the clear, as the setting says.
- The Mac app is notarized by Apple: it opens like any app you download, with no trip to System Settings. Its disk image shows its version.
mgsays inmg statuswhether this machine encrypts, exits with code 6 when it lacks the key, and refusesmg share listand the like, which used to publish your clipboard under that name.GET /clipboardnames the device the copy came from, as the history does, anddaemon_id, which names a client that posts copies, is documented (#30).- The web page fits a phone's width, and its front page shows midgard at work.
Upgrading
- Update every device. The first to run v0.3.0 makes your key; each other one asks to pair. Once your key exists, apps and daemons older than v0.3.0 have their copies refused, and are told to update.
- Pair each browser once, and your iPhone's Home Screen page by the Mac's QR.
- Shortcuts and Tasker call
/midgard/api/v1/plain/clipboardnow. Switch the bridge on (the Mac app's Settings → Encryption, orplain_bridge: truefor a daemon), and add the Shortcuts again from the web page. - If you run a server, there is nothing to set: it keeps your key's id, never the key. See Upgrading to encryption.
What's next
midgard is heading toward continuity between all of one's devices, with files, phone apps, handoff and agents: specs/roadmap.md.
Downloads
Midgard.dmg: the Mac app, notarized, for macOS 14 or later on Apple silicon or Intel.mgfor macOS, Linux and Windows.checksums.txtverifies every file here.
Full changelog: v0.2.0...v0.3.0