From fb8703020e06e2a46ac9c0222828a46f19fa1114 Mon Sep 17 00:00:00 2001 From: kisfenyo Date: Wed, 30 Sep 2026 20:22:53 +0200 Subject: [PATCH] zipline: 4.7.0 -> 4.8.0, its second ladder step, both venues proven (R-462, R-742) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit The route 4.8.0 itself asks for (its prisma -> drizzle migration needs 4.7.x first). Bench 9401 (harness v4, swap 0; two earlier attempts stopped at the FROM pull because the bench's own disk was full — images removed by name, no prune): the user logs in before and after, 10-min watch 0 kills (anon peak 34.3 %); the abort starts and serves. Box 9202: done in 32.8 s, the user logs in. 4.7.0 keeps its definition in steps/. Written by upgrade-test.py --write-ladder. Evidence: felhom.eu/documentation/audits/more-night-apps-2026-09-30/ Co-Authored-By: Claude Opus 5.5 (1M context) Claude-Session: https://claude.ai/code/session_0159rPz1ZhFKsS53msqPYxtS --- templates/zipline/.felhom.yml | 1 + templates/zipline/docker-compose.yml | 2 +- .../zipline/steps/da0fed39d57db1bf.felhom.yml | 123 ++++++++++++++++++ templates/zipline/steps/da0fed39d57db1bf.yml | 83 ++++++++++++ 4 files changed, 208 insertions(+), 1 deletion(-) create mode 100644 templates/zipline/steps/da0fed39d57db1bf.felhom.yml create mode 100644 templates/zipline/steps/da0fed39d57db1bf.yml diff --git a/templates/zipline/.felhom.yml b/templates/zipline/.felhom.yml index afac54e..0bca3b4 100644 --- a/templates/zipline/.felhom.yml +++ b/templates/zipline/.felhom.yml @@ -127,3 +127,4 @@ i18n: # gated by scripts/check-test-record.py. An image: move without a proven entry here is refused. update_ladder: - {"from": {"zipline": "ghcr.io/diced/zipline:4.6.1", "zipline-postgres": "postgres:16-alpine"}, "to": {"zipline": "ghcr.io/diced/zipline:4.7.0", "zipline-postgres": "postgres:16-alpine"}, "digest": {"zipline": "sha256:526fa08d2d3cf46bd959b2008987ca8d2a38b1ba840991b68cd9ff4b8c6a3fab", "zipline-postgres": "sha256:721873c34ceb9f8d8fc265984940dc982404c105f19ad51be9fdc5970a6080ea"}, "verdict": "proven", "tested_at": "2026-09-30T18:04:58Z", "harness_version": 4, "evidence": "felhom.eu/documentation/audits/more-night-apps-2026-09-30/bench/apps/zipline/bench/evidence/MV-zipline/verdict.json", "box_evidence": "felhom.eu/documentation/audits/more-night-apps-2026-09-30/box/zipline/step.txt", "memory_peak_pct": 41.7, "marks": {"files_may_change": false, "needs_person": null, "memory_tight": false}, "memory_basis": "anon", "memory_cgroup_peak_pct": 56.8} + - {"from": {"zipline": "ghcr.io/diced/zipline:4.7.0", "zipline-postgres": "postgres:16-alpine"}, "to": {"zipline": "ghcr.io/diced/zipline:4.8.0", "zipline-postgres": "postgres:16-alpine"}, "digest": {"zipline": "sha256:8ae3cdf8cdbba2ac98754e9fc4ccec67bbaa86b6e6ab1ccf9683ddcff85eee72", "zipline-postgres": "sha256:721873c34ceb9f8d8fc265984940dc982404c105f19ad51be9fdc5970a6080ea"}, "verdict": "proven", "tested_at": "2026-09-30T18:22:10Z", "harness_version": 4, "evidence": "felhom.eu/documentation/audits/more-night-apps-2026-09-30/bench/apps/zipline/bench/evidence/MV-zipline/verdict.json", "box_evidence": "felhom.eu/documentation/audits/more-night-apps-2026-09-30/box/zipline/step.txt", "memory_peak_pct": 34.3, "marks": {"files_may_change": false, "needs_person": null, "memory_tight": false}, "memory_basis": "anon", "memory_cgroup_peak_pct": 54.0} diff --git a/templates/zipline/docker-compose.yml b/templates/zipline/docker-compose.yml index fafd08a..2a48bcc 100644 --- a/templates/zipline/docker-compose.yml +++ b/templates/zipline/docker-compose.yml @@ -10,7 +10,7 @@ services: zipline: - image: ghcr.io/diced/zipline:4.7.0 + image: ghcr.io/diced/zipline:4.8.0 container_name: zipline restart: unless-stopped depends_on: diff --git a/templates/zipline/steps/da0fed39d57db1bf.felhom.yml b/templates/zipline/steps/da0fed39d57db1bf.felhom.yml new file mode 100644 index 0000000..0356337 --- /dev/null +++ b/templates/zipline/steps/da0fed39d57db1bf.felhom.yml @@ -0,0 +1,123 @@ +# ============================================================================= +# .felhom.yml - App metadata for felhom-controller +# ============================================================================= + +# --- Display info (shown on dashboard) --- +display_name: "Zipline" +description: "ShareX/Flameshot szerver - screenshot és fájlmegosztás" +category: "files" +subdomain: "img" +slug: "zipline" +# catalog_since: the date THIS repo last changed this app's pinned images. Any commit that +# changes an image: line must set this to the same day (see CLAUDE.md). +catalog_since: "2026-09-30" + +# --- Resource hints (displayed on deploy screen) --- +resources: + mem_request: "100M" + mem_limit: "512M" + pi_compatible: false + needs_hdd: false + +# --- Deploy fields (first deployment only) --- +deploy_fields: + - env_var: DOMAIN + label: "Domain" + type: domain + description: "A szerver domain neve" + locked_after_deploy: true + + - env_var: SUBDOMAIN + label: "Aldomain" + type: subdomain + default: "img" + required: true + locked_after_deploy: true + description: "Az alkalmazás aldomainje" + + - env_var: CORE_SECRET + label: "Titkosítási kulcs" + type: secret + generate: "hex:32" + locked_after_deploy: true + + - env_var: DB_PASSWORD + label: "Adatbázis jelszó" + type: secret + generate: "password:24" + locked_after_deploy: true + +# --- The setup gate (controller >= 0.281.0, `09` §3 decisions 46-47) --- +# The first visitor would create the admin; a fresh install is closed to everyone but the household until the first setup is done. +setup_gate: true +# measured on 9202 2026-09-29: firstSetup true -> false once the first user exists (/api/setup itself answers 403 after the setup, so it cannot be the check). +setup_done_probe: + url: http://zipline:3000/api/server/public + field: firstSetup + done: "false" + +# --- App info (info page content) --- +app_info: + tagline: "Screenshot és fájlmegosztó szerver ShareX/Flameshot integrációval" + docs_url: "https://zipline.diced.sh/docs/" + + use_cases: + - 'Screenshotok automatikus feltöltése ShareX/Flameshot-ból' + - 'URL rövidítés és szöveg megosztás (paste)' + - 'Galéria nézet és album kezelés' + - 'API támogatás egyedi integrációkhoz' + - 'Felhasználói fiókok és meghívó rendszer' + + first_steps: + - 'Nyisd meg az img.DOMAIN címet a böngészőben' + - 'Az első megnyitáskor hozd létre az admin fiókodat' + - 'Konfiguráld a ShareX-et vagy Flameshot-ot az API URL-lel' + - 'Tölts fel egy screenshot-ot a teszteléshez' + + prerequisites: + - 'ShareX (Windows) vagy Flameshot (Linux) ajánlott a screenshot feltöltéshez' + +# --- Controller-side health probe --- +healthcheck: + checks: + - type: api + port: 3000 + # /api/healthcheck, not /api/health: this probe is `api` WITH an expect + # block, so a 404 on the wrong path reads as unhealthy. zipline's own compose healthcheck + # dials /api/healthcheck (R-618). + path: "/api/healthcheck" + expect: + status: 200 + +# --- English copy (localisation slice 5, R-560) -------------------------------------------- +# The Hungarian above is UNCHANGED. A box on English reads this block field by field; a missing +# field shows the Hungarian one; a controller older than 0.257.0 ignores the block entirely. +i18n: + en: + description: 'A ShareX/Flameshot server - screenshots and file sharing' + app_info: + tagline: 'A screenshot and file sharing server that works with ShareX/Flameshot' + use_cases: + - 'Screenshots upload themselves from ShareX/Flameshot' + - 'Shorten a URL and share text (paste)' + - 'A gallery view and albums' + - 'An API, for integrations of your own' + - 'User accounts and invitations' + first_steps: + - 'Open img.DOMAIN in your browser' + - 'On the first visit, create your admin account' + - 'Point ShareX or Flameshot at the API address' + - 'Upload a screenshot to check it works' + prerequisites: + - 'ShareX (Windows) or Flameshot (Linux) is recommended for uploading screenshots' + deploy_fields: + - env_var: DOMAIN + label: 'Domain' + description: 'The server domain name' + - env_var: SUBDOMAIN + label: 'Subdomain' + description: 'The subdomain this app answers on' + - env_var: DB_PASSWORD + label: 'Database password' + - env_var: CORE_SECRET + label: 'Encryption key' diff --git a/templates/zipline/steps/da0fed39d57db1bf.yml b/templates/zipline/steps/da0fed39d57db1bf.yml new file mode 100644 index 0000000..fafd08a --- /dev/null +++ b/templates/zipline/steps/da0fed39d57db1bf.yml @@ -0,0 +1,83 @@ +# Zipline - ShareX/Flameshot szerver - screenshot és fájlmegosztás +# Domain: ${SUBDOMAIN}.${DOMAIN} +# Database: postgres +# RAM: ~100M (mem_limit: 512M) | Pi-compatible: No +# +# Environment variables: +# DOMAIN - Your domain (e.g., demo-felhom.eu) +# CORE_SECRET - Titkosítási kulcs (auto-generated) +# DB_PASSWORD - Adatbázis jelszó (auto-generated) + +services: + zipline: + image: ghcr.io/diced/zipline:4.7.0 + container_name: zipline + restart: unless-stopped + depends_on: + zipline-postgres: + condition: service_healthy + environment: + - TZ=Europe/Budapest + - CORE_SECRET=${CORE_SECRET} + # FIGYELEM: a v4 óta a DB változó neve DATABASE_URL (prefix NÉLKÜL), míg a + # CORE_SECRET megtartotta a prefixet. A régi CORE_DATABASE_URL nevet a v4 + # már nem ismeri fel, és indulás nélkül kilép: + # "No database environment variables found (DATABASE_URL or all of [...])" + - DATABASE_URL=postgresql://zipline:${DB_PASSWORD}@zipline-postgres:5432/zipline + volumes: + - zipline_uploads:/zipline/uploads + - zipline_public:/zipline/public + networks: + - traefik-public + - zipline-internal + deploy: + resources: + limits: + memory: 512M + healthcheck: + test: ["CMD", "node", "-e", "const http = require('http'); http.get('http://127.0.0.1:3000/api/healthcheck', (r) => { process.exit(r.statusCode === 200 ? 0 : 1) }).on('error', () => process.exit(1))"] + interval: 30s + timeout: 5s + retries: 3 + start_period: 30s + labels: + - "traefik.enable=true" + - "traefik.http.routers.zipline.rule=Host(`${SUBDOMAIN}.${DOMAIN}`)" + - "traefik.http.routers.zipline.entrypoints=websecure" + - "traefik.http.routers.zipline.tls=true" + - "traefik.http.routers.zipline.tls.certresolver=letsencrypt" + - "traefik.http.services.zipline.loadbalancer.server.port=3000" + + zipline-postgres: + image: postgres:16-alpine + container_name: zipline-postgres + restart: unless-stopped + environment: + - POSTGRES_USER=zipline + - POSTGRES_PASSWORD=${DB_PASSWORD} + - POSTGRES_DB=zipline + - TZ=Europe/Budapest + volumes: + - zipline_postgres_data:/var/lib/postgresql/data + networks: + - zipline-internal + deploy: + resources: + limits: + memory: 256M + healthcheck: + test: ["CMD-SHELL", "pg_isready -U zipline -d zipline"] + interval: 10s + timeout: 5s + retries: 5 + start_period: 20s + +volumes: + zipline_postgres_data: + zipline_public: + zipline_uploads: + +networks: + traefik-public: + external: true + zipline-internal: