Changelog
Highlights: Remote PDF loading now combines reliable HTTP connection cleanup with opt-in download size budgets.
- Cancelled unread HTTP error responses so failed library and CLI reads release their connections.
- Added an opt-in HTTP(S) download size budget via
fetchMaxBytesand--fetch-max-bytes; downloads remain unlimited by default. Thanks @SebTardif. - Fixed docs-heading sanitization, removed Windows shell interpolation from package checks, and restricted CI token permissions. Thanks @vincentkoc.
- Updated development dependencies, including Vitest 5, Node.js type definitions, and pnpm; refreshed CI and Pages actions, including deployment polling backoff.
npm
- npm version: https://www.npmjs.com/package/clawpdf/v/0.3.2
- registry tarball: https://registry.npmjs.org/clawpdf/-/clawpdf-0.3.2.tgz
- dist-tag:
latest(0.3.2) - Node.js engine:
>=22 - shasum:
adf056702e1c64aa8fdc70a50760cd2075898c64 - integrity:
sha512-1JudW0rZ5B7O2E9+cgnU5F4As7K6HZ3/s/3CHUXm5uG0+965uPOk11gvhmprpwXGJaRXhrmywZ1WWc5a+GZ7TQ== - published:
2026-09-05T18:51:01.780Z
Proof
- Release commit:
636ef3eaa32c4be964601cfa67f06e75ec833c4e - CI (Node 22/24/26): https://github.com/openclaw/clawpdf/actions/runs/33984995261
- CodeQL: https://github.com/openclaw/clawpdf/actions/runs/33984995315
- Pages: https://github.com/openclaw/clawpdf/actions/runs/33984995267
- Frozen install, build, strict typecheck, 18 tests, installed-package CLI/library integration, docs, and dry-run packaging passed. The large-HTTP regression verifies a valid 100,000,684-byte PDF succeeds by default and is rejected with an explicit 100 MB budget.
- The dependency audit reported zero vulnerabilities; live home, loading, and CLI documentation pages matched the release build.