(release): RigStage v0.4.0
RigStage v0.4.0 adds workspace-protected private visual assets and a manual 3D review workflow.
- Upload bounded JPEG, PNG, or WebP source images to private R2 storage.
- Upload self-contained glTF 2.0 GLB models with signature, size, and external-resource validation.
- Stream files only through Access- and workspace-protected API routes.
- Preview GLB files with lazy-loaded Three.js controls and short-lived browser blob URLs.
- Require a stored model, the complete checklist, and verified dimensions before approval.
- Reset review evidence on file replacement and preserve optimistic D1 transitions.
- Apply the phase 6 D1 migration before deployment.
- Keep Worker and static-asset security policies synchronized by regression test.
Validated with 49 tests, type and lint checks, production build, Cloudflare dry-run, dependency audit, main CI, and live production route and header checks.