zipline: 4.7.0 -> 4.8.0, its second ladder step, both venues proven (R-462, R-742)
gates / gates (push) Successful in 2s

The route 4.8.0 itself asks for (its prisma -> drizzle migration needs 4.7.x first). Bench 9401
(harness v4, swap 0; two earlier attempts stopped at the FROM pull because the bench's own disk was
full — images removed by name, no prune): the user logs in before and after, 10-min watch 0 kills
(anon peak 34.3 %); the abort starts and serves. Box 9202: done in 32.8 s, the user logs in.
4.7.0 keeps its definition in steps/. Written by upgrade-test.py --write-ladder.

Evidence: felhom.eu/documentation/audits/more-night-apps-2026-09-30/

Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_0159rPz1ZhFKsS53msqPYxtS
This commit is contained in:
2026-09-30 20:22:53 +02:00
parent a9700e2b4c
commit fb8703020e
4 changed files with 208 additions and 1 deletions
+1
View File
@@ -127,3 +127,4 @@ i18n:
# gated by scripts/check-test-record.py. An image: move without a proven entry here is refused.
update_ladder:
- {"from": {"zipline": "ghcr.io/diced/zipline:4.6.1", "zipline-postgres": "postgres:16-alpine"}, "to": {"zipline": "ghcr.io/diced/zipline:4.7.0", "zipline-postgres": "postgres:16-alpine"}, "digest": {"zipline": "sha256:526fa08d2d3cf46bd959b2008987ca8d2a38b1ba840991b68cd9ff4b8c6a3fab", "zipline-postgres": "sha256:721873c34ceb9f8d8fc265984940dc982404c105f19ad51be9fdc5970a6080ea"}, "verdict": "proven", "tested_at": "2026-09-30T18:04:58Z", "harness_version": 4, "evidence": "felhom.eu/documentation/audits/more-night-apps-2026-09-30/bench/apps/zipline/bench/evidence/MV-zipline/verdict.json", "box_evidence": "felhom.eu/documentation/audits/more-night-apps-2026-09-30/box/zipline/step.txt", "memory_peak_pct": 41.7, "marks": {"files_may_change": false, "needs_person": null, "memory_tight": false}, "memory_basis": "anon", "memory_cgroup_peak_pct": 56.8}
- {"from": {"zipline": "ghcr.io/diced/zipline:4.7.0", "zipline-postgres": "postgres:16-alpine"}, "to": {"zipline": "ghcr.io/diced/zipline:4.8.0", "zipline-postgres": "postgres:16-alpine"}, "digest": {"zipline": "sha256:8ae3cdf8cdbba2ac98754e9fc4ccec67bbaa86b6e6ab1ccf9683ddcff85eee72", "zipline-postgres": "sha256:721873c34ceb9f8d8fc265984940dc982404c105f19ad51be9fdc5970a6080ea"}, "verdict": "proven", "tested_at": "2026-09-30T18:22:10Z", "harness_version": 4, "evidence": "felhom.eu/documentation/audits/more-night-apps-2026-09-30/bench/apps/zipline/bench/evidence/MV-zipline/verdict.json", "box_evidence": "felhom.eu/documentation/audits/more-night-apps-2026-09-30/box/zipline/step.txt", "memory_peak_pct": 34.3, "marks": {"files_may_change": false, "needs_person": null, "memory_tight": false}, "memory_basis": "anon", "memory_cgroup_peak_pct": 54.0}
+1 -1
View File
@@ -10,7 +10,7 @@
services:
zipline:
image: ghcr.io/diced/zipline:4.7.0
image: ghcr.io/diced/zipline:4.8.0
container_name: zipline
restart: unless-stopped
depends_on:
@@ -0,0 +1,123 @@
# =============================================================================
# .felhom.yml - App metadata for felhom-controller
# =============================================================================
# --- Display info (shown on dashboard) ---
display_name: "Zipline"
description: "ShareX/Flameshot szerver - screenshot és fájlmegosztás"
category: "files"
subdomain: "img"
slug: "zipline"
# catalog_since: the date THIS repo last changed this app's pinned images. Any commit that
# changes an image: line must set this to the same day (see CLAUDE.md).
catalog_since: "2026-09-30"
# --- Resource hints (displayed on deploy screen) ---
resources:
mem_request: "100M"
mem_limit: "512M"
pi_compatible: false
needs_hdd: false
# --- Deploy fields (first deployment only) ---
deploy_fields:
- env_var: DOMAIN
label: "Domain"
type: domain
description: "A szerver domain neve"
locked_after_deploy: true
- env_var: SUBDOMAIN
label: "Aldomain"
type: subdomain
default: "img"
required: true
locked_after_deploy: true
description: "Az alkalmazás aldomainje"
- env_var: CORE_SECRET
label: "Titkosítási kulcs"
type: secret
generate: "hex:32"
locked_after_deploy: true
- env_var: DB_PASSWORD
label: "Adatbázis jelszó"
type: secret
generate: "password:24"
locked_after_deploy: true
# --- The setup gate (controller >= 0.281.0, `09` §3 decisions 46-47) ---
# The first visitor would create the admin; a fresh install is closed to everyone but the household until the first setup is done.
setup_gate: true
# measured on 9202 2026-09-29: firstSetup true -> false once the first user exists (/api/setup itself answers 403 after the setup, so it cannot be the check).
setup_done_probe:
url: http://zipline:3000/api/server/public
field: firstSetup
done: "false"
# --- App info (info page content) ---
app_info:
tagline: "Screenshot és fájlmegosztó szerver ShareX/Flameshot integrációval"
docs_url: "https://zipline.diced.sh/docs/"
use_cases:
- 'Screenshotok automatikus feltöltése ShareX/Flameshot-ból'
- 'URL rövidítés és szöveg megosztás (paste)'
- 'Galéria nézet és album kezelés'
- 'API támogatás egyedi integrációkhoz'
- 'Felhasználói fiókok és meghívó rendszer'
first_steps:
- 'Nyisd meg az img.DOMAIN címet a böngészőben'
- 'Az első megnyitáskor hozd létre az admin fiókodat'
- 'Konfiguráld a ShareX-et vagy Flameshot-ot az API URL-lel'
- 'Tölts fel egy screenshot-ot a teszteléshez'
prerequisites:
- 'ShareX (Windows) vagy Flameshot (Linux) ajánlott a screenshot feltöltéshez'
# --- Controller-side health probe ---
healthcheck:
checks:
- type: api
port: 3000
# /api/healthcheck, not /api/health: this probe is `api` WITH an expect
# block, so a 404 on the wrong path reads as unhealthy. zipline's own compose healthcheck
# dials /api/healthcheck (R-618).
path: "/api/healthcheck"
expect:
status: 200
# --- English copy (localisation slice 5, R-560) --------------------------------------------
# The Hungarian above is UNCHANGED. A box on English reads this block field by field; a missing
# field shows the Hungarian one; a controller older than 0.257.0 ignores the block entirely.
i18n:
en:
description: 'A ShareX/Flameshot server - screenshots and file sharing'
app_info:
tagline: 'A screenshot and file sharing server that works with ShareX/Flameshot'
use_cases:
- 'Screenshots upload themselves from ShareX/Flameshot'
- 'Shorten a URL and share text (paste)'
- 'A gallery view and albums'
- 'An API, for integrations of your own'
- 'User accounts and invitations'
first_steps:
- 'Open img.DOMAIN in your browser'
- 'On the first visit, create your admin account'
- 'Point ShareX or Flameshot at the API address'
- 'Upload a screenshot to check it works'
prerequisites:
- 'ShareX (Windows) or Flameshot (Linux) is recommended for uploading screenshots'
deploy_fields:
- env_var: DOMAIN
label: 'Domain'
description: 'The server domain name'
- env_var: SUBDOMAIN
label: 'Subdomain'
description: 'The subdomain this app answers on'
- env_var: DB_PASSWORD
label: 'Database password'
- env_var: CORE_SECRET
label: 'Encryption key'
@@ -0,0 +1,83 @@
# Zipline - ShareX/Flameshot szerver - screenshot és fájlmegosztás
# Domain: ${SUBDOMAIN}.${DOMAIN}
# Database: postgres
# RAM: ~100M (mem_limit: 512M) | Pi-compatible: No
#
# Environment variables:
# DOMAIN - Your domain (e.g., demo-felhom.eu)
# CORE_SECRET - Titkosítási kulcs (auto-generated)
# DB_PASSWORD - Adatbázis jelszó (auto-generated)
services:
zipline:
image: ghcr.io/diced/zipline:4.7.0
container_name: zipline
restart: unless-stopped
depends_on:
zipline-postgres:
condition: service_healthy
environment:
- TZ=Europe/Budapest
- CORE_SECRET=${CORE_SECRET}
# FIGYELEM: a v4 óta a DB változó neve DATABASE_URL (prefix NÉLKÜL), míg a
# CORE_SECRET megtartotta a prefixet. A régi CORE_DATABASE_URL nevet a v4
# már nem ismeri fel, és indulás nélkül kilép:
# "No database environment variables found (DATABASE_URL or all of [...])"
- DATABASE_URL=postgresql://zipline:${DB_PASSWORD}@zipline-postgres:5432/zipline
volumes:
- zipline_uploads:/zipline/uploads
- zipline_public:/zipline/public
networks:
- traefik-public
- zipline-internal
deploy:
resources:
limits:
memory: 512M
healthcheck:
test: ["CMD", "node", "-e", "const http = require('http'); http.get('http://127.0.0.1:3000/api/healthcheck', (r) => { process.exit(r.statusCode === 200 ? 0 : 1) }).on('error', () => process.exit(1))"]
interval: 30s
timeout: 5s
retries: 3
start_period: 30s
labels:
- "traefik.enable=true"
- "traefik.http.routers.zipline.rule=Host(`${SUBDOMAIN}.${DOMAIN}`)"
- "traefik.http.routers.zipline.entrypoints=websecure"
- "traefik.http.routers.zipline.tls=true"
- "traefik.http.routers.zipline.tls.certresolver=letsencrypt"
- "traefik.http.services.zipline.loadbalancer.server.port=3000"
zipline-postgres:
image: postgres:16-alpine
container_name: zipline-postgres
restart: unless-stopped
environment:
- POSTGRES_USER=zipline
- POSTGRES_PASSWORD=${DB_PASSWORD}
- POSTGRES_DB=zipline
- TZ=Europe/Budapest
volumes:
- zipline_postgres_data:/var/lib/postgresql/data
networks:
- zipline-internal
deploy:
resources:
limits:
memory: 256M
healthcheck:
test: ["CMD-SHELL", "pg_isready -U zipline -d zipline"]
interval: 10s
timeout: 5s
retries: 5
start_period: 20s
volumes:
zipline_postgres_data:
zipline_public:
zipline_uploads:
networks:
traefik-public:
external: true
zipline-internal: