| Age | Commit message (Collapse) | Author | |
|---|---|---|---|
| 91 min. | web: bokftui in the browser (ttyd + bokfweb login gate); per-user login limitv0.1.69 | Anders Betts | |
| New image bokf-web (Dockerfile target "web", compose service "web" on 127.0.0.1:8790): Caddy routing with forward_auth, the bokfweb login gate (C, authenticates with bokfd's session.open, per-address limit, cookie + terminal handle, one login handed to the TUI via /redeem) and ttyd running bokftui in web mode in an isolated throwaway HOME. TLS stays with the host's reverse proxy. BOKF_WEB=1 blocks every local file and viewer path in the TUI. bokfd's login limiter is now per user name instead of one global counter (5 wrong guesses from anyone locked out everybody), and a full counter table no longer disables it. The cross build and deploy.sh build and ship both images. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com> | |||
| 3 hours | user.set_password: change your own password; TUI "Byt lösenord"v0.1.68 | Anders Betts | |
| Needs the current password (wrong ones rate limited like logins) and a password session, requires at least 10 characters, closes the user's other sessions and is audited without secrets. The TUI main menu gets "Byt lösenord" with masked prompts; ^R keeps working with the new password. Masked prompt buffers are wiped before they are freed. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com> | |||
| 3 days | commands: shared DB-error helpers | Anders Betts | |
| Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> | |||
| 3 days | commands: split the command table by domain | Anders Betts | |
