Skip to content

LumenBox 0.3.5

Choose a tag to compare

@fakechris fakechris released this 03 Oct 03:56

LumenBox 0.3.5 improves sensitive form input and personal/team Box access.

  • Confirm repeated sensitive input once per turn. The same approved value can be reused for the same data category and origin within the same user, conversation, turn and desktop. Changed scope, expiry and restarts require a new approval. Writes are bound to the checked field, so page focus handlers cannot redirect the input.
  • Personal Boxes and template access. Personal Box provisioning and delivery are integrated with membership checks; template reads and imports respect Box membership.
  • Team administration. Directory synchronization, department Box quotas and authenticated first-administrator enrollment have been added.
  • Managed skills. Five maintained skill packages cover site playbooks, errands, acting on the user’s behalf, routines and skills, and code work.

Build: afa0f2116299cd300ec8821c68ff0d21675ad087. Includes INV-955 / PR #326 and the changes merged since 0.3.4.

Validation: 2,290 tests and release CI passed; npm run release:check passed against these four installers and the published Docker image. A fresh 0.3.5 Box passed 42/42 smoke checks. Both signed macOS packages passed signature verification, packaged CLI launch and source/build-stamp checks; each ZIP carries all 66 required runtime packages. INV-955 also passed real Chromium tests for approval reuse, scope changes, expired consent, focus redirection and repeated rich-text input. Real-model workflows, live directory-provider integration and clean-machine native UI acceptance were not run for this release.

Downloads: signed macOS ARM64 and Intel DMG/ZIP (not notarized). Docker: fakechris/lumenbox:0.3.5 and latest, linux/arm64. Existing Box containers need recreation to use the new daemon.