Files
Capsule/CHANGELOG.md
2026-09-12 16:46:38 -04:00

2.3 KiB

Changelog

All notable changes to Capsule are documented in this file.

The format is based on Keep a Changelog, and this project adheres to Semantic Versioning.

[Unreleased]

Added

  • Electron + electron-vite desktop shell with a login view and a connected workspace.
  • Password sign-in through POST /api/login and optional connect-with-token from Admin ? Tokens. MFA accounts continue in-app (api/login/mfa/{loginCode}) until a token is issued. loginCode stays in the main process; a pasted Admin token skips MFA. POSTs send session CSRF (X-CSRF-Token); HTTP uses Electron net.fetch so the PHP session cookie persists.
  • Session stored in userData, encrypted with safeStorage when the OS allows it. The renderer never receives the token.
  • Logged-in chrome matches TTP: navy header, Font Awesome 6.7.1 / Bootstrap 5.3, centered full-width search, notifications and messages dropdowns, avatar account menu. Profile settings (avatar, gender, newsletter, timezone, date/time, page size, dark mode) live in-app and save through POST /api/profile/update. Email, password, and phone open the connected site.
  • After sign-in, Capsule loads GET /api/profile plus notifications, the messages inbox, and GET /api/messages/recent for the header dropdown (avatars + unread count). Inbox rows can mark read/unread or hide. Compose and reply follow canSend. Search uses the matching user-token endpoint. Contact and bug reports live on footer pages (#/contact, #/bugreport) instead of the dashboard. Disabled plugins show an unavailable note instead of demo data.
  • Footer chrome matches TTP copy and socials. The upper band keeps a dark-mode toggle, Privacy Policy, Terms of Service, Contact, and Report a Bug. There is no subscribe box.

Fixed

  • Settings no longer posts a display-name field. User CP has no such option; users.name is leftover, and Check::name() rejected typical values (Invalid name. / malformed input).
  • Avatar file previews are allowed (blob: on img-src). Choosing a photo no longer shows the missing-image icon. A { "error": "not found" } from the site is reported as a missing Capsule API action (the live TTP install still needs POST /api/profile/update).