Skip to content

CodeRim 2.1.8

Choose a tag to compare

@dlfkdLR dlfkdLR released this 22 Sep 11:15
· 168 commits to main since this release
3652308

CodeRim 2.1.8

This release improves Windows feature coverage and brings notch controls, account menus and usage navigation closer to the macOS app. Windows widgets remain outside scope.

Usage and interface

  • Match the macOS resting settings arc, hover controls, account-menu focus, four-edge positioning and scaled notch geometry. Prevent refreshed popovers from covering their own controls, and remove native scroll chrome from provider lists.
  • Preserve provider/account selection, keyboard focus, chart ranges and Back navigation. Keep totals, unknown costs and currency/count units accurate in narrow windows.
  • Keep Codex and Claude local activity separate from account-wide quotas; preserve session, image and sub-agent accounting across appended, replaced and archived logs.
  • Preserve Unicode when Windows CLI output is redirected, without changing interactive console codepages.

Provider connections

  • Expand explicit API, Web, CLI and local sources, including regional MiniMax/Moonshot/Alibaba connections, DeepSeek balance and optional usage details, Kimi and StepFun recovery, Groq console refresh and Factory WorkOS sessions.
  • Add verified Firefox imports for supported readers and explicit Chromium profile imports for DeepSeek, Factory and MiniMax. Imported Windows snapshots are encrypted for the current user. Protected Chromium cookies are not decrypted.
  • Read current browser storage manifests and committed records with bounds, origin checks and stable-source verification. Reject ambiguous account/session combinations instead of reviving obsolete token bytes.
  • Preserve Factory refresh-token rotation and its first usage result while rejecting stale account changes, failed compare-and-swap writes and late responses. Keep retry cooldowns specific to the selected account.
  • On macOS, read closed Safari WAL databases from private copies, retain source-bound rotated access tokens and stop fixed-endpoint authentication requests from forwarding credentials through redirects.

Updates and installation

Windows now includes a managed, publisher-verified installation/update/recovery implementation. It activates only in packages built with a configured publisher certificate and matching public-key pin. The public Windows ZIPs in this release are unsigned: release checks work, and installation remains manual. A real signed Windows installation/update cycle has not been verified.

macOS uses its existing Sparkle update path. The macOS app is Universal 2 for Apple silicon and Intel, ad-hoc signed and not Apple-notarized. Windows 11 x64 and ARM64 packages are self-contained. Verify downloads using the matching SHA-256 manifests; settings, accounts and local history remain in their current locations.

Verification boundaries

The final local macOS source suite executed 999 tests: 990 passed, 9 environment-dependent skips, and no failures. The Windows candidate passed 1,611 Core tests on each native x64 and ARM64 CI host, ten payload-manifest tests per architecture, packaged WPF/CLI checks, fourteen Factory credential-rotation scenarios, and six unsigned-updater refusal cases. These tests use synthetic provider data; they do not certify all 70 live provider accounts.

Native x64 CI confirmed pointer hover and queued mouse-wheel input. ARM64 CI's desktop was obscured by a host window, so its physical pointer/wheel checks remain inconclusive even though native rendering and routed interactions passed. Physical mixed-DPI/multimonitor, screen-reader and real-account workflows remain separate from this evidence. No claim of 100% live-provider verification or identical pixels on every display is made.

See the Windows guide and audit continuation for supported sources and detailed boundaries.