Releases: musqz/archcanary
Releases · musqz/archcanary
Release list
v0.1.31
What's Changed
- chore: set real sha256 for v0.1.30 tarball by @musqz in #227
- chore: set real sha256 for v0.1.30 tarball by @musqz in #228
- remove the yad GUI, go pure CLI by @musqz in #229
- Feat/archcanary tui by @musqz in #231
- fix: run --run-lynis output filter under LC_ALL=C by @musqz in #230
- fix: package archcanary-tui and document its flags for release by @musqz in #232
- chore: bump version to 0.1.31 by @musqz in #233
Full Changelog: v0.1.30...v0.1.31
v0.1.30
What's Changed
- chore: set real sha256 for v0.1.29 tarball by @musqz in #223
- fix: ship yay-init.lua as a system-wide template, fix doctor hint by @musqz in #224
- fix: don't suggest overwriting a user's own yay init.lua by @musqz in #225
- chore: bump version to 0.1.30 by @musqz in #226
Full Changelog: v0.1.29...v0.1.30
v0.1.29
What's Changed
- chore: fill in real sha256 for the v0.1.28 release tarball by @musqz in #217
- docs: add aurweb v6.5.0 adoption-review fix to SOURCES.md by @musqz in #218
- fix: don't flag source+=() as duplicate source=() in PKGBUILD scan by @musqz in #219
- feat: detect Tor-fetch/self-propagation payloads in PKGBUILD/.install… by @musqz in #220
- docs: add xsnow/xsnow-bin incident to SOURCES.md by @musqz in #221
- chore: bump version to 0.1.29 by @musqz in #222
Full Changelog: v0.1.28...v0.1.29
v0.1.28
What's Changed
- chore: fill in real sha256 for the v0.1.27 release tarball by @musqz in #209
- fix: scan-all-homes cross-user list-path leak + unreadable bundled lists by @musqz in #210
- docs: add v0.1.28 changelog entry by @musqz in #211
- feat: add --scan-user=NAME for checking specific accounts by @musqz in #212
- fix: add --scan-user to bash completion by @musqz in #213
- feat: pause on Enter after yay's archcanary verdict by @musqz in #214
- feat: detect duplicate source=() and report storageexplorer-bin by @musqz in #215
- chore: bump version to 0.1.28 by @musqz in #216
Full Changelog: v0.1.27...v0.1.28
v0.1.27
What's Changed
- chore: set real sha256 for v0.1.26 release tarball by @musqz in #193
- feat: broaden GUI aur-audit toggle to an internet-connection switch by @musqz in #194
- fix: resolve DKMS module ownership by dkms.conf, not name-guessing by @musqz in #195
- docs: collapse redundant checks in the infected-response checklist by @musqz in #196
- docs: move paru integration out of my-setup.md by @musqz in #197
- docs: fix my-setup.md's install paths for --system by @musqz in #198
- docs: drop the canary alias story by @musqz in #199
- docs: clarify yay hook doesn't call the archcanary binary by @musqz in #200
- Fix/aur audit red version aware by @musqz in #201
- Fix/yad center resize jump by @musqz in #202
- docs: trim _center_pos comment, add v0.1.27 changelog entry by @musqz in #203
- feat: downgrade repeat LOG_HIST matches to informational after first … by @musqz in #204
- fix: isolate check_logs test fixtures from the real seen-file cache by @musqz in #205
- docs: drop possessive apostrophe from doctor's hook labels by @musqz in #206
- feat: make yay hook verdict lines shout ARCHCANARY: instead of blending in by @musqz in #207
- chore: bump version to 0.1.27 by @musqz in #208
Full Changelog: v0.1.26...v0.1.27
v0.1.26
What's Changed
- chore: set real sha256 for v0.1.25 release tarball by @musqz in #175
- docs: add a beginner's guide to reading a PKGBUILD by @musqz in #176
- docs: fix false timeline implication in the Chrome RAT example by @musqz in #177
- docs: rewrite pkgbuild guide as practical reference, not narrative by @musqz in #178
- chore: drop stale python-isounidecode from package list by @musqz in #179
- fix: don't mark scan INCOMPLETE for lynis unless explicitly requested by @musqz in #180
- feat: number check-summary rows to match their detail section by @musqz in #181
- fix: only seed yay init.lua when yay is installed by @musqz in #182
- fix: consolidate install.sh root steps into one script by @musqz in #183
- fix: use --text-info for the infected dialog to respect --height by @musqz in #184
- feat: add --help/-h to install.sh by @musqz in #185
- fix: reject unknown CLI flags instead of silently ignoring them by @musqz in #186
- fix: move yay pattern-block hook to AURPostDownload by @musqz in #187
- docs: note paru's before-review hook timing as a known limitation by @musqz in #188
- docs: scope the sudoers example to hostname, not ALL by @musqz in #189
- feat: add --scan-all-homes for multi-user home scanning by @musqz in #190
- docs: add v0.1.26 changelog entry by @musqz in #191
- chore: bump version to 0.1.26 by @musqz in #192
Full Changelog: v0.1.25...v0.1.26
v0.1.25
What's Changed
- chore: set real sha256 for v0.1.24 release tarball by @musqz in #162
- docs: fill in the v0.1.24 changelog by @musqz in #163
- fix: point check_pkgbuild_caches' WARNING at where to report it by @musqz in #164
- fix: check_pkgbuild_caches false-positived on legit -bin packages by @musqz in #165
- fix: check_logs ignored install date vs. actual compromise window by @musqz in #166
- fix: check_autostart false-positived on /etc/skel workaround scripts by @musqz in #167
- feat: paru PreBuildCommand hook + yay pattern-block coverage parity by @musqz in #168
- docs: cover the paru PreBuildCommand hook and yay's clean-message merge by @musqz in #169
- fix: --color silently accepted any value instead of validating it by @musqz in #170
- fix: check_logs applied aur-audit's live verdict to any historical install by @musqz in #171
- chore: remove traur integration entirely by @musqz in #172
- docs: add Acroread (2018) and google-chrome-stable RAT (2025) sources by @musqz in #173
- chore: bump version to 0.1.25 by @musqz in #174
Full Changelog: v0.1.24...v0.1.25
v0.1.24
What's Changed
- chore: set real sha256 for v0.1.23 release tarball by @musqz in #148
- fix: move mailing-list package batch into community_reports.txt by @musqz in #149
- feat: detect a stale yay init.lua in --doctor by @musqz in #150
- fix: split pacman.log check severity by current install state by @musqz in #151
- feat: add --search-packages flag for quick threat-list lookup by @musqz in #152
- fix: use pkexec root-helper in autostart allowlist hint text by @musqz in #153
- fix: add remediation hint to check_kmod's untracked-DKMS warning by @musqz in #154
- fix: add remediation hints to WARNING findings missing one by @musqz in #155
- feat: detect undocumented ELF binaries in AUR helper caches by @musqz in #156
- fix: stop check_pkginteg gluing stdout/stderr lines together by @musqz in #157
- fix: only suggest reinstalling for check_pkginteg's binary mismatches by @musqz in #158
- fix: only treat check_pkginteg's binary mismatches as warnings by @musqz in #159
- feat: let GUI scan results be saved to a remembered location by @musqz in #160
- chore: bump version to 0.1.24 for release by @musqz in #161
Full Changelog: v0.1.23...v0.1.24
v0.1.23
What's Changed
- chore: set real sha256 for v0.1.22 release tarball by @musqz in #138
- fix: strip quotes from .desktop Exec= before matching/display by @musqz in #139
- fix: PKGBUILD ANSI-C obfuscation check flagged read -d $'\0' by @musqz in #140
- docs: drop the "Unreleased" heading from CHANGELOG by @musqz in #141
- change: softer RESULT wording when skip is the only reason for non-zero by @musqz in #142
- change: softer RESULT wording when skip is the only reason for non-zero by @musqz in #143
- feat: doctor detects stale user-level bash completion shadowing system copy by @musqz in #144
- docs: complete the README flag reference table by @musqz in #145
- chore: add 45 packages from latest Arch mailing list update by @musqz in #147
- chore: bump version to 0.1.23 by @musqz in #146
Full Changelog: v0.1.22...v0.1.23
v0.1.22
What's Changed
- chore: set real sha256 for v0.1.21 release tarball by @musqz in #117
- docs: add contribution flow for reporting AUR packages by @musqz in #118
- docs: reorder README so Quick Start comes before the deep-dive material by @musqz in #119
- docs: show the --refresh Lists-loaded banner in Quick Start by @musqz in #120
- fix: PKGBUILD never installed the audit-rules.conf template by @musqz in #121
- feat: add allowlist CLI verbs and --format=json for archcanary-gtk by @musqz in #122
- feat: add --extra-lists-list/add/remove CLI verbs by @musqz in #123
- feat: add CLI verbs for aur-audit toggle, audit rules, Lynis profile by @musqz in #124
- feat: allow-list unowned user-systemd ExecStart binaries by @musqz in #125
- fix: match unowned-ExecStart allowlist on full path, not basename by @musqz in #126
- fix: bash completion missing 14 CLI verbs from recent PRs by @musqz in #127
- fix: allowlist-add/remove rejected full-path values by @musqz in #128
- fix: register bash completion for ./archcanary.sh too by @musqz in #129
- docs: add per-package git-grep evidence source to SOURCES.md by @musqz in #130
- fix: two check_autostart false positives (home-bin script, commented RC) by @musqz in #131
- feat: soften INFECTED wording for heuristic checks, add allowlist hints by @musqz in #132
- docs: add openconnect-sso + second-wave AUR attack sources by @musqz in #133
- fix: check_autostart false positive for Flatpak apps by @musqz in #134
- chore: remove aurscan integration by @musqz in #135
- fix: GUI Full scan blocked entirely without root; wrong diagnosis by @musqz in #137
- chore: bump version to 0.1.22 by @musqz in #136
Full Changelog: v0.1.21...v0.1.22