Repository navigation
Envelope v1.3.0 — rShield
rShield checks every message you receive for phishing and dangerous attachments, explains why it flagged each one, and blocks risky downloads, all on your machine.
- rShield: a local threat score (0-100) for each message from six analyzers, a reader banner with "Why?", "Mark safe" and "Report",
envelope threat scan|show|explain|mark-safe|release|report|stats, and blocked downloads of malware-grade attachments (override with--unsafe). - Egress: every outbound HTTP request goes through one guarded client that refuses private addresses, follows no redirects, and times out.
- Read tracking: reads made on another client (phone, Apple Mail) show up as
message_seenevents and inenvelope analytics show. - Rules: one executor runs rules everywhere,
envelope watch --run-rulesnow works, and a newconfirmaction offers actions for you to approve. - Behaviour change:
envelope watch --webhookrefuses a private orlocalhostURL at startup. - Behaviour change:
add_tagrules now apply their tags. Existing tag rules start tagging mail on the next run. - Behaviour change: snooze and unsubscribe rules are skipped until you run
envelope rule enable <name> --acknowledge-batch-actions.
See CHANGELOG.md for details.
What's Changed
- fix(email): one guarded HTTP client for every outbound request by @tymrtn in #139
- feat(store): detect reads from other clients as message_seen events by @tymrtn in #140
- feat(rules): one attributed executor, watch --run-rules, confirmable offers by @tymrtn in #141
- feat(threat): rShield threat core (A4) by @tymrtn in #142
- chore(release): prepare v1.3.0 by @tymrtn in #143
Full Changelog: v1.2.8...v1.3.0