Skip to content

Releases: tchubaba/pausepi

v0.6.0 - Laravel 13 Upgrade & Security Overhaul

Choose a tag to compare

@tchubaba tchubaba released this 22 Aug 01:57
Immutable release. Only release title and notes can be modified.
10b9d88

Release v0.6.0

This is a security and maintenance release that resolves all outstanding vulnerabilities, upgrades the core framework to the bleeding edge (Laravel 13), and brings all ecosystem and testing dependencies up to their latest major versions.

Security & Vulnerability Patches

• Patched Laravel Core Vulnerabilities: Upgraded the framework to resolve critical vulnerabilities including the CRLF injection in default email rule and Temporary Signed URL Path Confusion.
• JS Blanket Update: Upgraded frontend dependencies to patch known vulnerabilities in axios, form-data, postcss, nanoid, vite, and laravel-vite-plugin.
• PHP Blanket Update: Upgraded core backend dependencies including guzzlehttp/guzzle, league/commonmark, symfony/http-foundation, and symfony/routing.

Framework & Ecosystem Upgrades

• Upgraded to Laravel 13: Successfully jumped two major versions to completely align the app with the absolute latest 13.x framework features and security baseline.
• Upgraded PHPUnit: Bumped the testing suite from PHPUnit 11 to PHPUnit 12.
• Cleaned up Abandoned Packages: Automatically removed legacy abandoned development packages (sebastian/code-unit and sebastian/code-unit-reverse-lookup) via the PHPUnit upgrade.

What's Changed

  • Updated PHP and JS dependencies by @tchubaba in #29
  • Upgraded the Laravel framework, related packages and phpunit to lates… by @tchubaba in #30

Full Changelog: v0.5.6...v0.6.0

Dependency security update

Choose a tag to compare

@tchubaba tchubaba released this 27 May 01:23
Immutable release. Only release title and notes can be modified.
d93123a

v0.5.6 – Dependency security update

What changed

  • Updated all PHP dependencies to their latest patch/security versions (83 packages, including Laravel framework, Symfony components, Guzzle, Spatielibraries)
  • Upgraded vite from ^5.0 → ^8.0.14 and updated npm devDependencies accordingly
  • Rebuilt frontend assets for the new dependency tree
  • Added .github/SECURITY.md with private vulnerability reporting policy — security issues can now be reported via GitHub's

No functional changes, no breaking changes — just keeping the dependency tree healthy and secure.

v0.5.3

Choose a tag to compare

@tchubaba tchubaba released this 16 Apr 04:50

What's New in v0.5.3

UI Overhaul

The entire frontend has been redesigned with a modern dark theme.

  • Doughnut countdown timer — a ring-style SVG timer shows exactly how much blocking time remains, formatted as MM:SS (or HH:MM:SS for longer pauses).
  • Dynamic ring colour — the ring transitions smoothly from green → amber → red as time runs out (at 50% and 25% remaining)
  • Per-Pi-hole status cards — each configured Pi-hole is shown with its name, hostname, and whether it was successfully paused or failed.
  • Improved error states — the "all failed" error screen now displays correctly when all Pi-holes fail authentication, and partial failures (some paused, some not) are shown accurately in the status cards.
  • "Pause Again" button — correctly disabled while the pause is active; re-enables (and becomes "Try Again") when the timer expires or all requests fail.

Docker Setup Overhaul

The Docker setup has been significantly simplified.

  • No more nginx — the app now runs directly via php artisan serve, removing the need for a separate web server container.

  • Live file updates — the project directory is bind-mounted into the container, so any file change on the host is immediately reflected without copying files or rebuilding the image.

  • Vendor folder on the host — composer install runs at container start and writes to the bind-mounted directory, so your IDE can read the installed packages.

  • Automatic bootstrap — on first start, the container creates .env from .env.example, generates the app key, and runs migrations automatically.

  • Makefile shortcuts — common operations are now a single make command:

    Command Description
    make up / make down Start or stop the container
    make build / make rebuild Build or force-rebuild the image
    make logs / make shell Tail logs or open a shell
    make manager Launch the interactive Pi-hole configuration tool
  • Dev mode — set APP_ENV=local in .env to install dev dependencies (GrumPHP, php-cs-fixer, IDE helper) and generate the IDE helper file on startup. APP_ENV=production is the default and requires no changes for end-users.

  • GrumPHP hooks in-repo — pre-commit and commit-msg hooks now live in .githooks/ and are installed automatically on dev container start. Hooks delegate to the container, so PHP does not need to be installed on the host.


PWA Support

  • PausePi can now be installed as a Progressive Web App. On mobile or desktop browsers, use "Add to Home Screen" (or the browser's install prompt) to pin it as a standalone app icon. A minimal service worker is included to satisfy PWA install criteria; it does not cache any content and all requests go directly to the network.

Bug fixes

  • Fixed APP_URL becoming stale when overriding the default port via APP_PORT. The .env.example now defines APP_PORT=8000 and derives APP_URL from it
    (APP_URL="http://localhost:${APP_PORT}"), so changing the port in one place is enough.
  • Fixed a Vite build artifact inconsistency in public/build/.

0.4.4

Choose a tag to compare

@tchubaba tchubaba released this 15 Mar 02:57

Includes support for the latest Pi-hole version 6, as well as still supporting version 5.

0.3.1

Choose a tag to compare

@tchubaba tchubaba released this 13 Mar 23:59
25b3d24

Last release for PausePi with version 5 support only.