Skip to content

Releases: sl4de0day/wide

Wide 1.220926

Choose a tag to compare

@github-actions github-actions released this 20 Sep 19:00

Wide 1.2 — Multi-directional grid splitting, multi-tab terminal, UI zoom lock, and stability upgrades.

New Features & Security

  • Grid & Multi-Directional Window Splitting: Split your workspace horizontally, vertically, or in flexible 2x2 grids (with 1x2, 2x1, 2x2, 1x3, and 3x1 presets). Drag-and-drop tabs seamlessly across panes, maintain independent scrolling per tab, and cycle active panes with F6 and Shift+F6.
  • Multi-Tab Integrated Terminal Architecture: The built-in terminal now supports multiple simultaneous shell tabs. Switch, split, and manage distinct sessions across PowerShell, Command Prompt, Git Bash, or WSL without interrupting long-running processes.
  • Intelligent Execution Button & Environment: A contextual Run action automatically detects project entry points and scripts across package.json, Python, Rust (Cargo.toml), Go, Makefiles, and Dockerfiles, executing them in the terminal with the correct environment configured.
  • Opt-In Crash Reporting & Diagnostic Telemetry: A privacy-first crash recovery dialog detects fatal backend issues from prior sessions, displays transparent error stack traces, and allows one-click submission only with explicit user approval—zero silent background tracking.

Key Improvements & Fixes

  • Window Focus & Click-Through Optimization: Re-engineered Win32 message flow (WM_MOUSEACTIVATE, WM_SETFOCUS) eliminates dead clicks and focus-stealing lag when switching between the code editor, terminal, DevTools, and embedded browser tabs.
  • UI Zoom Lock & Editor-Only Font Scaling: Wide no longer zooms its entire shell like a website when pressing Ctrl + Mouse Wheel. The IDE frame, sidebars, and panels remain strictly locked, while wheel gestures inside code tabs smoothly scale editor font sizes.
  • Enhanced File Explorer & Context Menu: Full-featured right-click operations in the explorer tree, including Cut, Copy, Paste, Rename, Delete with confirmation, Reveal in Explorer, and Copy Relative/Absolute Path shortcuts.
  • Comment Cleaner Directive Protection: The automated comment-stripping engine now preserves vital compiler pragmas and security directives, including wide-ignore[...], wide-ignore-next-line[...], eslint-disable-line, and @ts-ignore.
  • Extension Marketplace Stability: Hardened installation state machines eliminate double-click race conditions, provide real-time progress indicators, and ensure immediate UI synchronization upon installing or removing extensions.

Verify

certutil -hashfile Wide-Setup-1.220926.exe SHA256

Compare with SHA256SUMS.

Wide 1.17926

Choose a tag to compare

@sl4de0day sl4de0day released this 07 Sep 13:53

Wide 1.1 — Catcher HTTPS capture that actually works, plus the last of the 1.0 backlog.

Catcher

  • Trust the CA from inside Wide. The proxy's MITM certificate is now installed into your user trust store with one button (no admin rights). Until now nothing trusted it, so every in-scope HTTPS page failed to load and captured nothing. The CA row shows whether it is trusted and can remove it again.
  • Scope now covers subdomains. youtube.com used to miss www.youtube.com; a bare host now matches the host and its subdomains (*.host still works). example.com still does not match example.com.evil.tld.
  • Failed TLS handshakes are visible. When a client rejects Wide's certificate the request list shows a real entry explaining why, instead of sitting silently empty.
  • Session vault. A new Catcher tab stores bearer tokens, cookies, custom headers and basic credentials, encrypted by Windows, and applies them to the Scanner, Repeater or Pitcher in one click.

Editor and AI

  • Send a route straight to Repeater or Pitcher. A gutter marker next to a route definition builds the request for you, inferring query and body fields from the handler. Recognises Express/Node, FastAPI/Flask, Django, Laravel, Spring, Rails and Go.
  • Verify a finding live. A SAST finding tied to a source line can fire a real request through the active scanner and be marked confirmed, or annotated as not reproduced.
  • Images in the assistant. Paste a screenshot or attach an image for Claude, DeepSeek and local vision models.

Fixes

  • Open tabs are restored again. Opening a project raced with the tab-saving debounce and wiped the saved list before it could be read, so everything came back closed.
  • The terminal follows the project folder. It kept the directory captured when the panel first mounted; changing project now restarts the shell in the new root.
  • The GitHub button opened the Codeberg panel. GitHub and Codeberg are now separate panels with separate sign-ins, usable at the same time.
  • Smoother extensions fly-out. It was scaling a shadowed box every frame; the animation is now composited and eased.
  • Keyboard-selectable rows in Intruder, Scanner and Collaborator; the route menu is fully keyboard operable.

Verify

certutil -hashfile Wide-Setup-1.17926.exe SHA256

Compare with SHA256SUMS.

Wide 1.07926

Choose a tag to compare

@sl4de0day sl4de0day released this 07 Sep 12:30

Wide 1.0 — the first major release.

AI Assistant

  • Markdown + syntax-aware code blocks in chat, with per-block Copy, Apply to the active file and Save as a new file
  • 22 slash commands — /explain /review /fix /security /harden /cwe /threats /refactor /optimize /tests /doc /commit-message /plan /regex /payload and more
  • Send the selection to the assistant (Ctrl+Alt+A) and Explain the selection
  • Inline @file mentions, regenerate / retry, a context-token indicator, copy/export the conversation
  • Project rules — .wide/ai-instructions.md feeds the system prompt
  • Three new agent tools: edit_file (targeted snippet edits instead of whole-file rewrites), run_command (build/test/lint, policy-gated) and git (status/diff/log/add/commit; destructive commands refused)

Traffic ↔ Code

  • Go to the route in the code — jump from a captured request straight to its handler. Indexes Express/Node, FastAPI/Flask, Django, Laravel, Spring, Rails and Go, with path-parameter matching. Available in Catcher and Repeater.

Pentest reporting

  • Professional report generator — cover page, executive summary with severity bars, findings register, detailed findings with CVSS/CWE/evidence, print-ready page breaks, Wide branding, and PDF / HTML / Markdown output
  • Payload & wordlist manager — save, reuse and delete your own lists in Intruder

Performance

  • Catcher traffic, Intruder results and Scanner findings are now virtualized — thousands of rows stay smooth
  • Intruder's per-request state append was O(n²); it is now batched per frame

Localhost integration

  • Terminal localhost links always open in Wide's built-in browser
  • Dev-server URLs are detected and opened automatically (with a setting)
  • A Local servers bar lists detected ports for one-click reopening
  • Opening a localhost URL adds it to the Catcher scope, so local traffic is captured immediately

Windows

  • A failing WebView2 runtime now reports the problem instead of leaving a blank window
  • Window size, position and maximized state are remembered
  • The window no longer re-maximizes and steals focus when the backend restarts
  • Drag and drop from Explorer
  • The uninstaller clears its shell-integration registry keys, and a silent uninstall no longer prompts to delete data — auto-update can no longer wipe your settings

Fixes

  • Settings now persist properly. Language and every other setting are stored on disk and restored on launch; the installer language is only applied on a genuine first run
  • Open tabs are restored per workspace
  • CyberChef follows Wide's theme across all four themes instead of using its own
  • Remote/SSH: fixed silent 8 MB truncation that could destroy a file on save, binary-file corruption, wrong relative-path resolution, non-atomic writes with no conflict detection, silent save/remove failures, and SSH option injection via host/user
  • A crashing panel no longer takes down the whole IDE
  • Complete i18n pass across all 7 languages, including the untranslated Settings label and the About description
  • Command palette now searches commands, files and findings; settings import/export added

Verify

certutil -hashfile Wide-Setup-1.07926.exe SHA256

Compare with SHA256SUMS.

Wide 0.97926

Choose a tag to compare

@sl4de0day sl4de0day released this 06 Sep 22:37

Wide 0.97926 — remote development, source control, testing, and deeper OWASP coverage.

Remote & containers

  • Remote workspace over SSH. Browse a remote host's files from the Remote panel, open and save files in editor tabs (they read/write over the connection), and create / rename / delete files and folders. A remote search (grep over SSH) jumps straight to a line in a remote file.
  • Docker development. List running containers and open a terminal straight into one (docker exec), with backend command execution inside the container.

Source control & testing

  • Built-in Source Control panel. A first-class local Git panel — stage, commit, branch, diff, stash, log, push/pull — always available, no longer gated behind a remote-host extension.
  • Test Explorer. Discovers tests across Vitest, Jest, Pytest, Go and Cargo into a file→test tree with filter and jump-to-source; run all / a file / a single test, with green/red status and output.

Security

  • Deeper OWASP Top 10 coverage. New rules close gaps in A04 Insecure Design (hard-coded backdoor / default credentials), A07 Authentication Failures (session fixation from client input, weak password minimum length, missing or over-long token expiry), and A09 Logging & Monitoring Failures (empty exception handlers that swallow errors, whole-request logging of PII, disabled logging).
  • SARIF / JSON import & compare. Import external scanner results (SARIF 2.1.0 or JSON) into Findings, and compare against a saved report to see what is new, resolved, or unchanged. HTML export now also writes a machine-readable JSON report.
  • OSV database automation. Refresh the offline .wide/osv.json advisory snapshot from osv-scanner (or an OSV dump) with one click, with the database date shown in Findings.
  • Authenticated DAST. The active scanner and crawler now apply a configurable authenticated session (headers/cookies) to every request, so scans reach logged-in areas.

Editor & requests

  • Structure/Outline upgrade. A filter box and a live cursor-synced highlight that tracks the symbol you are in, for both the language-server tree and the regex fallback.
  • Request export. Copy any Catcher request as cURL, and Pitcher's code generation now includes PowerShell.
  • CyberChef dark theme by default, matching the rest of the app (still switchable from CyberChef's own options).

Polish

  • Full UI localization pass. Fixed the remaining spots that stayed English after switching language (remote file toasts, the disk-change dialog, Intruder wordlist presets, the Markdown preview), across all seven non-English languages.

Notes

  • Binaries are not code-signed; Windows SmartScreen may warn on first launch. Verify integrity against the published SHA256SUMS.

Wide 0.86926

Choose a tag to compare

@sl4de0day sl4de0day released this 06 Sep 19:31

Wide 0.86926 — a security-analysis, workflow, and remote-development release.

Security analysis

  • Cross-file, inter-procedural taint. The project scanner now follows request-derived data across files and through multiple function calls to a sink, propagating function summaries to a fixpoint — so multi-hop chains (request → handler → helper → sink) are caught, not just single-hop flows.
  • Offline OSV vulnerability snapshot. The dependency (SCA) audit ships a curated, offline advisory snapshot for common npm, PyPI, Maven, and Go packages on top of the built-in CVE set. Drop a .wide/osv.json into a project — either Wide's simple shape or the OSV JSON schema — to extend or override it, entirely offline.
  • One-click security quick-fixes. Editor diagnostics now offer real autofixes: loose equality → strict (=== / !==), innerHTML → textContent, rel="noopener noreferrer" on target="_blank", the noopener feature on window.open, X-Frame-Options: DENY, and CSP frame-ancestors 'self'.

Findings

  • Triage workflow. Every finding carries a status — open / confirmed / false-positive / fixed — with a filter to hide resolved items.
  • Reporting. The HTML report now merges live project-scan findings, and a Print / PDF action was added.

Catcher & Pitcher

  • HAR import/export in Catcher. Export captured traffic to wide-traffic.har and import HAR files from Burp, ZAP, or browser DevTools.
  • Intruder sessions. Save and load full attack configurations, and flag any result row straight into Findings.
  • Pitcher OpenAPI/Swagger import. Now parses YAML specs (not just JSON), resolves $ref schemas, and generates realistic example request bodies.

Editor

  • Markdown Viewer extension. Enable it to get an icon beside .md tabs that opens a live, theme-aware Markdown preview in its own tab.

Remote

  • Remote / SSH development. A new Remote panel manages SSH host profiles (test and activate), turns the Terminal into a remote shell over your system SSH client and keys, and adds backend remote command and file operations.

Fixes

  • Auto-update reliability. Permanent fix for the post-publish propagation window that could wrongly block an update after two transient download attempts.

Notes

  • 40 new UI strings translated across all seven non-English languages (tr, es, de, fr, it, ja, ko).
  • Binaries are not code-signed; Windows SmartScreen may warn on first launch. Verify integrity against the published SHA256SUMS.

Wide 0.76926

Choose a tag to compare

@sl4de0day sl4de0day released this 06 Sep 17:40

A large release that deepens the security engine, integrates the four newest tools, adds reporting and CI paths, and fixes several tool installations.

Security engine

  • Dependency scanning (SCA). Wide now reads package.json, package-lock.json, requirements.txt, go.mod and pom.xml, and flags dependencies pinned to known-vulnerable versions (npm, pip, Maven and Go), each with its CVE and the version to upgrade to.
  • Infrastructure-as-code scanning. Dockerfiles, Kubernetes/Compose YAML, Terraform and .env files are now scanned — running as root, remote ADD, curl | sh, :latest base images, privileged/host-namespace containers, 0.0.0.0/0 ingress, public buckets and committed secrets.
  • Multi-line matching. A statement split across several lines (as formatters produce) is now matched as one, so calls whose arguments sit beyond the previous single-line window are caught — without changing single-line results.
  • Deeper taint tracking. Data-flow now reaches sinks whose tainted argument is further away, and taint now dies when a variable is re-assigned through a sanitizer, removing a class of false positives.
  • Custom rules. Write and test your own rules in .wide/security.json from a new editor in the Problems panel — a live tester shows what a pattern matches before you save.
  • Quick fix. Any inspector finding can be suppressed with one click, which inserts a scoped wide-ignore the scanner honours.
  • A rule corpus. The engine now ships a positive/negative test corpus and a harness, so rule changes are caught by tests.

New tools, wired into Wide

  • JS Miner → Findings and Repeater. Secrets pulled from captured JavaScript go to Findings with a severity; discovered endpoints go to Repeater as ready requests. A new Sources view recovers the original source files from source maps, fully offline.
  • Wappalyzer → Findings. Detected technologies and versions can be sent to Findings, both live in the browser and passively per host over captured traffic.
  • Send to CyberChef. A captured value in Proxy or Repeater can be piped straight into a CyberChef recipe.
  • Selector Test → code. Pick an element in the browser to get a robust CSS selector, and export it as a Playwright or querySelectorAll snippet.

Reporting and CI

  • Professional report. Export the findings as a self-contained, styled HTML report.
  • Headless Catcher. A command-line runner (scripts/catcher-run.cjs) scans URLs for the passive checks and emits JSON or SARIF, with a CI-friendly exit code.

Editor

  • SCSS/Sass get real language support, and the outline covers C and C++.
  • TypeScript debugging. Node debug sessions now use source maps, so breakpoints set in TypeScript bind to the compiled JavaScript.
  • Run tests. A one-click runner detects vitest, jest, mocha, pytest, go test or cargo test and runs it in the terminal.

Catcher and Pitcher

  • A GraphQL request template in Intruder, and WebSocket payload-list fuzzing in the Pitcher WebSocket client.

Tool installation fixes

  • CyberChef and TruffleHog now install correctly — CyberChef's release asset is matched properly, and TruffleHog uses its official prebuilt Windows binary (a plain go install is impossible for it).
  • Elixir (elixir-ls), Scala (metals, via Coursier) and Erlang (erlang_ls) now install, fetching the toolchain they need. Toolchains Wide installs stay on the terminal's PATH across restarts.

Performance and product

  • Wappalyzer's detection and JS Miner's scan are cached per captured entry, so large proxy histories no longer re-scan from scratch.
  • Portable mode: place a portable marker file next to the executable to keep all data inside the app folder.
  • Uninstall now offers to remove Wide's data (settings, keys, proxy CA, extensions, browser data).

Wide 0.66926

Choose a tag to compare

@sl4de0day sl4de0day released this 06 Sep 14:48

This release is mostly about reliability and depth. It hardens Wide against crashes and data loss, makes the security engine defensible for real work, closes long-standing gaps in Catcher, Pitcher and the editor, and adds four new marketplace tools with Turkish rule explanations.

Reliability and data safety

  • The sidecar no longer dies in silence. The backend installs uncaughtException and unhandledRejection guards, and the host now detects a dead sidecar and recovers it instead of leaving a window that looks alive but is not. Pending requests time out rather than hanging forever, so you no longer type into a dead IDE and lose the work.
  • Every user-data write is atomic. Writes go through a temporary file and a rename, so a crash or a full disk can no longer truncate a file. The proxy CA private key is preserved rather than silently regenerated, and saving a source file can no longer leave a zero-byte file behind.
  • Clean shutdown. Child processes — terminal shells, language servers, MCP servers, the OAST client and debug adapters — are terminated together with the app through a job object instead of being left running.
  • Silent updates hardened. The app really quits before the installer overwrites files; the update manifest is only accepted over HTTPS; and the path handed to the installer is validated before it runs.
  • Stored secrets are sealed to the machine through the OS data-protection API rather than a key derived from the hostname and username, tightening protection of the proxy CA private key and provider tokens.
  • Bounded WebSocket frames. Frame length is capped across the proxy, Pitcher, MCP, OAST and the browser readers, closing an unbounded-allocation path a hostile server could use to exhaust memory.
  • SSH hardening. Remote-connection arguments are validated, so a hostile remote.json can no longer smuggle an -oProxyCommand into the ssh command line and run code locally.

Security engine

  • SARIF and a command line. The scanner exports SARIF 2.1.0 (and JSON) and ships a CLI runner (scripts/scan.cjs), so findings can drive GitHub code scanning and CI gates instead of only being copied from a panel.
  • Suppression, exclusions, per-rule config and a baseline. Inline // wide-ignore (with file and next-line forms and rule-id lists), a .wide config to exclude paths and switch individual rules off, and a baseline (.wide/security-baseline.json) that hides known findings. test/ and fixtures/ are out of scope by default.
  • Confidence and calibrated severity. Every finding now carries a confidence, low-confidence rules no longer report as "error", and you can set a minimum confidence floor.
  • Data-flow (taint) findings for the sinks that matter — command execution, path, SQL, SSRF, open redirect, XSS, SSTI, NoSQL, mass assignment, deserialization and eval — each with its CWE and confidence.
  • SQLi and IDOR precision. The SQLi rules no longer silence every line that merely mentions a query builder, and the IDOR rules no longer suppress the very bug they are named for.
  • Fewer false positives. Safe query-builder idioms, bare require(...), Object.assign, guarded null checks and low-entropy "secrets" no longer misfire.
  • Tests now cover the engine's core behaviours: a taint flow, confidence on every finding, rule toggling, the baseline round-trip and the SARIF shape.

Catcher

  • HTTP/2 support, which brings request-smuggling (CL.TE / TE.CL) testing with it.
  • Session automation that actually feeds the tools. Macro and session rules are wired into the Scanner and Intruder, so an authenticated scan re-authenticates on token expiry instead of quietly falling apart.
  • The Scanner's blind probes run out of the box. Blind SSRF, RCE, XXE, Log4Shell and SQLi no longer require you to stand up your own OAST server first.
  • A persistent, larger HTTP history rather than a 500-entry window that vanished on restart.
  • A crawler that sees modern apps — it follows JavaScript-driven links, submits forms and discovers POST endpoints.
  • A real intercept queue you can step through, instead of one that always showed the first held request.
  • WebSocket intercept and edit, with a WebSocket tab in Repeater.
  • A stronger Intruder, Sequencer, Decoder and Comparer — more payload generators and processing rules, a proper randomness battery, smart-decode and hashing, and word-level comparison.

Pitcher

  • File upload works. Multipart and binary bodies are actually sent instead of going out empty.
  • Round-trip import/export, including Postman v2.1, so Pitcher can read back what it exports.
  • Importing a Postman collection keeps its scripts instead of silently dropping them.
  • Response headers are shown, so Set-Cookie, Location and WWW-Authenticate are visible; the request history is surfaced in the UI, and a truncated response is marked as truncated.
  • Collection and folder-level auth inheritance, so a token is set once rather than on every request.
  • Safer, fuller scripting — sandboxed scripts, working async, a real expect().deep, and pm.sendRequest.
  • A CLI runner (scripts/pitcher-run.cjs) so the tests you write can run in a pipeline.
  • TLS control — skip verification for a self-signed staging server when you choose to.

Editor

  • tsconfig.json is read, so @/ path aliases resolve, "Go to definition" works across them, and the project's own settings are honoured.
  • Auto-import in completion.
  • JSON gains parsing and linting, and YAML, TOML, Dockerfile and shell scripts gain syntax highlighting.
  • A file changed outside Wide is detected in an open buffer, so a save after git pull no longer silently overwrites it; auto-save is available.
  • Image and binary preview, so opening a .png shows the image instead of dumping bytes into a buffer you could overwrite.
  • The Problems panel knows the whole project, not only the files you have open.
  • Merge-conflict resolution, stash, git clone and hunk-level staging in the source-control panel.
  • Terminal shell selection — cmd, PowerShell or Git Bash — and more than one terminal at a time.

New marketplace tools

Four tools join the extension marketplace, each wired into Wide rather than run from the terminal:

  • CyberChef — over three hundred encoding, encryption and analysis operations, chained into a recipe, in its own tab. The standalone build is downloaded once on install and runs fully offline.
  • Wappalyzer — identify the technologies a site is built with, live in Wide's browser as you navigate and passively over everything the Catcher proxy has captured, grouped by host with versions and categories. The open webappanalyzer ruleset is downloaded on install.
  • JS Miner — reads the JavaScript the Catcher proxy has captured and pulls out hidden endpoints and paths, leaked keys and tokens, and third-party libraries with their versions, sending no extra requests.
  • Selector Test — try a CSS or XPath selector against the page open in Wide's browser; it counts the matches, outlines each one and lists its tag, text and attributes.

Each appears only once you install it: CyberChef in the activity bar, Wappalyzer and Selector Test as browser panels, and JS Miner and Wappalyzer's passive view as Catcher sub-tabs.

Security-rule explanations in Turkish

The inspector's rule explanations — the message, the reasoning and the fix behind each finding — are now translated into Turkish when Wide is set to Turkish. English remains the source and the fallback; the other six languages keep the rule text in English, and the language picker in Settings marks them with a "beta" badge.

Wide 0.56926

Choose a tag to compare

@sl4de0day sl4de0day released this 05 Sep 22:03

Languages

Wide's interface is now available in eight languages: English, Turkish, Spanish, German, French, Italian, Japanese and Korean. The installer asks which one you want and Wide starts in it; you can change it at any time in Settings, and each language loads on demand rather than shipping in the main bundle.

Updates

Wide verifies an update against the release's SHA256SUMS before installing it. If the checksum is missing or does not match, the update is refused rather than installed, and a version that fails twice is skipped instead of retried on every launch. Updates continue to install silently while the splash screen is up.

MCP servers

A project's .wide/mcp.json can ask Wide to start an MCP server, which runs on your machine with your permissions. Wide now asks before starting one and remembers the answer for that exact command; nothing runs until you approve it. The assistant's MCP tool calls are governed by their own capability and appear as their own line in the policy audit.

Stored secrets

Provider API keys and the proxy CA private key are sealed to the machine rather than to a key file kept next to them. A store that cannot be decrypted is now preserved rather than overwritten, so a bad read can no longer destroy the keys you have saved.

Fixes

Proxy. A CONNECT to a scoped host that then went silent held an open socket for the life of the process. Protocols that are neither TLS nor HTTP are passed through to the real host instead of being answered by Wide's own server. Match & Replace rules apply to every response again, not only to scoped ones. The loopback guard recognises the decimal, hexadecimal and IPv4-mapped forms of 127.0.0.1.

Browser. A tab could keep running against the previous proxy or debug port after the settings changed. DevTools opens against the tab you are looking at, and works again after the change that broke it. Browser tabs survive a remote connection being added or removed. A favicon that failed to load once is no longer lost for the life of the tab, request counts are correct for pages served on a non-default port, and the address bar's suggestions no longer squeeze the page out of view.

DOM Invader. A page can no longer report that Wide's hooks are installed when they are not, values collected from the page are validated before they are displayed, and reopening the panel re-arms the document-start hook so load-time flows are not missed.

Assistant. A lost reply could leave a conversation permanently unable to accept a new message. Stop now shows that it is stopping and always releases the conversation. A question that was never answered is kept in the transcript instead of being replaced by the next one. A file the assistant proposed to change is no longer discarded when the file cannot be read for an unrelated reason, and a truncated tool call is sent back for correction instead of ending the turn.

Debugger. Removing one breakpoint no longer leaves an unrelated breakpoint unarmed.

Notes

Wide installs per user and updates itself from this page. The binaries are not code-signed, so Windows SmartScreen may warn on first run.

SHA256SUMS is published alongside the installer and is what Wide checks against.

Wide 0.45926

Choose a tag to compare

@sl4de0day sl4de0day released this 05 Sep 11:44

Wide 0.45926

  • Editor tabs: the whole tab is clickable now, so switching tabs no longer feels stuck.
  • Browser and Settings moved into the activity bar (Browser under Pitcher, Settings pinned at the bottom); the title bar's search, command-palette, browser and settings buttons are gone.
  • Every theme swatch in Settings now shows that theme's real palette.
  • New splash screen: the logo alone, centered and three times larger, on a fully transparent window — no panel, no text.
  • Larger logo on the welcome screen.

Download Wide-Setup-0.45926.exe below and run it. Wide installs per user, so no administrator rights are required, and it updates itself automatically at startup.

The WebView2 Runtime is required; the installer provisions it if it is missing. The binaries are not code-signed, so Windows SmartScreen or antivirus software may warn on first run.

Wide 0.35926

Choose a tag to compare

@sl4de0day sl4de0day released this 04 Sep 23:10

Wide 0.35926

  • Automatic updates now install silently on the splash screen at startup — no button and no visible installer window.
  • New themes: Tokyo Night, One Dark Pro and Ariake Dark (Settings, Appearance).
  • The Turkish interface is loaded before the first frame, so it is fully translated from the start.

Download Wide-Setup-0.35926.exe below and run it. Wide installs per user, so no administrator rights are required, and from now on it updates itself automatically at startup.

The WebView2 Runtime is required; the installer provisions it if it is missing. The binaries are not code-signed, so Windows SmartScreen or antivirus software may warn on first run.