Repository navigation
Termimus v0.3.0
Pre-releaseTermimus v0.3.0 — Sync Overhaul & Resilience Update
Termimus v0.3.0 brings a major overhaul to Self-Hosted Sync, with improved onboarding, reliable cross-device synchronization, stronger encryption enforcement, and better background sync resilience.
What's New
Self-Hosted Sync
Restore from Sync — Easily restore an existing vault on a new device without vault salt mismatch issues.
Deletion Sync — Deleted hosts, folders, snippets, credentials, and port-forwarding rules are now synchronized using tombstones, preventing deleted records from reappearing.
Persistent Device IDs — Devices now use persistent UUIDs for reliable identification.
Automatic Store Refresh — Sync updates automatically refresh Hosts, Keychain, Snippets, Port Forwarding, and Known Hosts.
Sync & Server Reliability
Background Live Sync — WebSocket sync now remains active across the entire application.
WebSocket Heartbeat — Added automatic ping/pong keep-alives to prevent idle connections from being dropped by reverse proxies.
Revision Pruning — Server automatically keeps the latest 15 revisions to reduce storage usage.
Server Hardening — Added request size limits, constant-time token validation, and Docker health checks.
Security
Zero-Knowledge E2EE Enforcement — Sync operations now require a Sync Passphrase and encrypted snapshots are validated by the server.
Atomic Vault Rekeying — Master Password changes are now handled atomically, including recovery for legacy records.
Desktop Improvements
Added Cloud Sync status indicator to the application header.
Added Connected Devices management under Self-Hosted Sync settings.
Added native macOS window controls.
Improved authentication and
TERMIMUS_AUTH_TOKENdiagnostics.
Component Versions
Component | Version -- | -- Desktop App | v0.3.0 Sync Server | v0.3.0 Docker Image | ghcr.io/termimus/termimus-sync:v0.3.0Docker Upgrade
docker pull ghcr.io/termimus/termimus-sync:v0.3.0docker stop termimus-sync
docker rm termimus-sync
docker run -d
--name termimus-sync
-p 8080:8080
-v termimus_data:/data
-e TERMIMUS_AUTH_TOKEN="your-secret-token"
--restart unless-stopped
ghcr.io/termimus/termimus-sync:v0.3.0
See the commit history for the complete changelog since v0.2.1.