Skip to content

Prepare Configurator 2.0.3 with combined dependency updates - #74

Merged
stojadin2701 merged 3 commits into
mainfrom
release/2.0.3
Oct 5, 2026
Merged

stojadin2701 merged 3 commits into
mainfrom
release/2.0.3

Conversation

@stojadin2701

Copy link
Copy Markdown
Member

Prepare Configurator 2.0.3 by combining the open dependency updates to Vitest 5.0.3, Vite 8.3.2, and Plotly 4.1.1. Preserve their locked transitive versions and synchronize the application, installer, README, and changelog versions.

Closes #70
Closes #71
Closes #72

Disable Plotly 4's new cloud-upload button in the app and standalone HTML exports to preserve the local flight-log workflow.

Omit standalone .sig downloads from release assets after embedding their signatures in latest.json. Retain the Mac .app.tar.gz archives required for automatic updates.

Validation:

  • Clean npm ci; 88 renderer/bridge tests and 68 native tests passed (11 opt-in hardware/network tests skipped).
  • ESLint, Prettier, Rust formatting, Clippy, production-target and release-contract/version checks passed; production/full npm audits reported no vulnerabilities.
  • Production-built browser checks passed for eight graphs, events, zoom, metric/imperial redraw, and both HTML exports, with no cloud-upload button or external requests.
  • Native Windows app passed a dummy-Vega check of auto-connect, configuration, flight logs, preflight, profile read, and disconnect.
  • Windows 2.0.3 installer built; its updater signature verified and a modified installer was rejected.
  • Exact release cleanup command verified against all four updater packages: every installer and embedded signature remains, with no standalone .sig downloads. Release-contract and formatting checks passed.

The combined branch needs the PR's four-platform CI run before merging. The earlier green main run validated 2.0.2, not these combined dependency updates.

Combine the open Dependabot updates to Vite 8.3.2, Vitest 5.0.3, and
Plotly 4.1.1 while retaining their locked transitive versions. Synchronize
application and installer versions and document the release changes.

Disable Plotly 4's new cloud-upload button in the app and standalone HTML
exports to preserve the local flight-log workflow.

Verified clean npm ci, 88 renderer tests, 68 native tests (11 opt-in tests
skipped), lint, formatting, Clippy, audits, and release contracts. Production
browser graphs and offline exports passed; the native app passed a dummy
Vega check. Built the Windows installer and verified its updater signature,
including rejection of modified bytes.
Keep release assets focused on installers, updater packages, and latest.json. Remove detached signature files after their contents have been embedded in the update manifest, while retaining them in CI build artifacts.

Verified the exact workflow command against all four platform packages: latest.json and every embedded signature remain unchanged, all seven package assets remain, and no standalone signature files reach publication. Release-contract and Prettier checks passed. Removed the four redundant 2.0.2 public signature assets and verified all remaining asset identities and digests, unchanged public manifest bytes, valid signatures, and rejection of altered packages.
Replace the packaging fix already shipped in 2.0.2 with the signature-download cleanup included in the 2.0.3 branch. Describe the preserved signature verification through latest.json.

Verified changelog and workflow formatting, application release contracts, the 2.0.3 version contract, and lockfile provenance against the unchanged three Dependabot PR heads.
@stojadin2701 stojadin2701 self-assigned this Oct 5, 2026
@stojadin2701
stojadin2701 merged commit 53da7a8 into main Oct 5, 2026
5 checks passed
@stojadin2701
stojadin2701 deleted the release/2.0.3 branch October 5, 2026 21:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant