Skip to content

v0.1.8

Choose a tag to compare

@github-actions github-actions released this 03 Aug 23:18
· 93 commits to main since this release
v0.1.8
a1eac9f

[0.1.8] - 2026-08-03

Added

  • A shared queue-restoration algorithm that repairs stale snapshots by stable identity,
    preserves the selected surviving item, and chooses a deterministic nearest fallback.
  • Desktop Secret Service regression coverage for missing tooling, caller-buffer clearing,
    and invalid key rejection.
  • Host-side tests for the Flatpak-to-host mpv argument boundary.

Changed

  • Android and Linux now persist partially repaired queues immediately and report omitted
    entries rather than rediscovering the same stale state on every launch.
  • Desktop progress is force-checkpointed before queue mutation, on playback failure,
    during disconnect, and on orderly shutdown instead of only at five-second boundaries.
  • mpv JSON IPC commands carry request IDs, ignore unrelated messages, enforce bounded
    responses, and require an explicit successful command result.
  • Desktop pCloud disconnect removes the active source locally first, stops pCloud
    playback, persists a disconnect tombstone and clears affected queue state before
    attempting Secret Service cleanup and typed remote session revocation.
  • AppStream metadata now records release history and release validation requires the
    current VERSION to be represented.

Security

  • Secret Service subprocesses are bounded and terminated on timeout, caller credential
    buffers are cleared in finally, lookup keys are constrained, and oversized results
    are rejected.
  • The Flatpak host-mpv bridge rejects arbitrary host command flags and accepts only the
    deterministic properpcloud playback contract plus its private runtime socket.
  • mpv failures expose a fixed command error rather than response data that may include an
    ephemeral signed stream location.

Testing

  • Added shared restoration tests for missing predecessors, missing selected entries,
    end-of-queue fallback, and fully unavailable queues.
  • Added Android orchestration coverage proving the repaired selection and rewritten
    persisted index.
  • Expanded desktop mpv protocol tests for event filtering, response correlation, and
    redacted command failures.

Known limitations

  • Protected pCloud account validation and the GNOME/KDE/i3 compatibility matrix remain
    external gates; this patch makes no new live-provider claim.
  • Automatic mpv crash restart, long-duration soak evidence, broad desktop accessibility,
    and reproducible Arch packaging are intentionally assigned to 0.1.9.

Artifact status

The attached APK is an installable debug-signed demo build produced by the pinned Docker toolchain. Production signing remains an external maintainer boundary.

The deterministic demo source is fully exercised in public CI. Protected live pCloud OAuth, fallback direct-login, and regional-account validation require maintainer-provided sandbox credentials and are reported separately rather than simulated.

The exact jaudiotagger source archive used by the metadata adapter is attached under third-party/, checksum-verified, and rebuildable through the tagged Gradle project.

Linux packages

The release includes an x86_64 AppImage and a single-file Flatpak bundle. Both contain the application runtime. Playback still uses the distribution's installed mpv; the Flatpak invokes that host command through flatpak-spawn. Install the Flatpak bundle with flatpak install ./properpcloud-*.flatpak.