Skip to main content

42 posts tagged with "Release Note"

View All Tags

· One min read
moonrailgun
  • Security: markdown output is now sanitized with rehype-sanitize, and raw HTML tags are no longer supported in markdown.
  • Files uploaded from the chat box are now tagged with their usage, and the admin file page can filter by usage, which makes cleanup easier.
  • Nickname rendering keeps a placeholder to avoid flickering on hover.

· One min read
moonrailgun

This is a security release, upgrading is recommended.

  • Fixed an XSS issue when rendering iframes in markdown.
  • Iframes only accept http(s) links, and SVG sources are no longer allowed.
  • Iframe rendering is disabled in message markdown.

· One min read
moonrailgun
  • Added the DISABLE_TRACING environment variable to turn off tracing, which saves a large amount of log output.
  • Markdown: embedded iframes no longer autoplay, and fixed an issue where meta tags could be rendered.
  • Admin: improved the file table display, and the "chat images" filter now excludes group avatars and backgrounds.
  • Adjusted the spacing of system messages.

· One min read
moonrailgun
  • Reworked read-state (ack) loading to only fetch the conversations that are needed instead of all of them, which speeds up startup for accounts with many conversations.
  • Security: custom styles are no longer allowed in markdown rendering (#252).
  • Added the DISABLE_INFO_LOG environment variable to keep only error logs.
  • Fixed a list crash when user information is empty.
  • Refreshed the offline icon set.
  • Docs: added a BT Panel (宝塔) deployment guide.

· One min read
moonrailgun
  • Performance: the friend list (#238) and the inbox list now use virtual lists, so very long lists stay smooth.
  • Admin: added a "chat files only" filter to the file management page, which makes it easy to find and remove unused chat files.
  • Admin: image URL fields now show an inline preview.
  • Adjusted the code block style of the markdown editor.
  • Client SDK: bots can now read their own user ID.
  • Docs: added community project source links and updated the bot documentation.