From d4247e90394247a3b9501cdb113f9239b7f27927 Mon Sep 17 00:00:00 2001 From: vorotamoroz Date: Tue, 29 Sep 2026 12:18:21 +0000 Subject: [PATCH] chore: pin published Commonlib 0.1.33 --- docs/design_docs/time_bound_setup_uri.md | 14 ++++++++++---- package-lock.json | 8 ++++---- package.json | 2 +- utils/couchdb/livesync-commonlib.ts | 4 ++-- utils/flyio/deno.lock | 6 +++--- utils/livesync-commonlib-version.ts | 2 +- utils/setup/livesync-commonlib.ts | 12 ++++++------ 7 files changed, 27 insertions(+), 21 deletions(-) diff --git a/docs/design_docs/time_bound_setup_uri.md b/docs/design_docs/time_bound_setup_uri.md index 5fc89075..fb3a45dc 100644 --- a/docs/design_docs/time_bound_setup_uri.md +++ b/docs/design_docs/time_bound_setup_uri.md @@ -1,6 +1,6 @@ --- date: 2026-09-28 -commonlib-version: "0.1.32" +commonlib-version: "0.1.33" feasibility-probe-version: "0.1.27" self-hosted-livesync-version: "1.0.32" status: implementing @@ -23,9 +23,9 @@ the entered passphrase. Neither the mode nor a timestamp is stored in the URI. The design is technically feasible with the existing encryption primitives. An executable protocol probe passes 22 cases against Commonlib 0.1.27 and -octagonal-wheels 0.1.54. The implementation is published as Commonlib 0.1.32 -on the npm `next` tag. LiveSync pins that exact release in its npm dependency -and independent Deno tool imports. A mobile performance bound remains +octagonal-wheels 0.1.54. The implementation was first published as Commonlib 0.1.32 +on the npm `next` tag. LiveSync now pins Commonlib 0.1.33 from that tag in its npm +dependency and independent Deno tool imports. A mobile performance bound remains outstanding. This document records the proposed key derivation and integration contract. The @@ -402,6 +402,12 @@ passphrase and cancellation. The WebPeer browser test confirms that its monitor remains available after the URI window ends for a device which has already imported the URI. +The subsequent update to published Commonlib 0.1.33 passes a clean `npm ci`, +matching npm and frozen Deno lock integrity, source checks, the production build, +1,042 unit tests, and eight Deno setup-tool tests. A consumer check of the public +hashing entry covers key changes, E2EE suspension, and cache retirement. The real +Obsidian two-Vault workflow also passes ordinary and encrypted note transfers. + The downstream change depends on PR #1222's host compatibility integration; relaxing only the version check would bypass its compatibility contract. These results do not establish a mobile performance bound. The first implementation diff --git a/package-lock.json b/package-lock.json index 54b86654..5939f6ed 100644 --- a/package-lock.json +++ b/package-lock.json @@ -23,7 +23,7 @@ "@smithy/types": "^4.14.3", "@smithy/util-retry": "^4.4.5", "@vrtmrz/browser-ui-kit": "0.1.0", - "@vrtmrz/livesync-commonlib": "0.1.32", + "@vrtmrz/livesync-commonlib": "0.1.33", "@vrtmrz/obsidian-plugin-kit": "0.1.4", "@vrtmrz/ui-interactions": "0.1.2", "diff-match-patch": "^1.0.5", @@ -4567,9 +4567,9 @@ } }, "node_modules/@vrtmrz/livesync-commonlib": { - "version": "0.1.32", - "resolved": "https://registry.npmjs.org/@vrtmrz/livesync-commonlib/-/livesync-commonlib-0.1.32.tgz", - "integrity": "sha512-gzjhd7bg+DKHhd/24WGxBM7557wsw3HJkc0YjKll1n8/8vuhqPnlLuZmM33fj+4bv9nGFUnDlnoVowpQrTns6w==", + "version": "0.1.33", + "resolved": "https://registry.npmjs.org/@vrtmrz/livesync-commonlib/-/livesync-commonlib-0.1.33.tgz", + "integrity": "sha512-jziEUYCrGty3btR8pj/nkQrfLIGsQBbMug9opN8vCwAZmAznS0Zuh/l1TJpoKl8nqijZT1AJ4w5jkgU9pEyz4Q==", "license": "MIT", "dependencies": { "@aws-sdk/client-s3": "^3.808.0", diff --git a/package.json b/package.json index a5152432..a8ecf386 100644 --- a/package.json +++ b/package.json @@ -187,7 +187,7 @@ "@smithy/types": "^4.14.3", "@smithy/util-retry": "^4.4.5", "@vrtmrz/browser-ui-kit": "0.1.0", - "@vrtmrz/livesync-commonlib": "0.1.32", + "@vrtmrz/livesync-commonlib": "0.1.33", "@vrtmrz/obsidian-plugin-kit": "0.1.4", "@vrtmrz/ui-interactions": "0.1.2", "diff-match-patch": "^1.0.5", diff --git a/utils/couchdb/livesync-commonlib.ts b/utils/couchdb/livesync-commonlib.ts index b17ec92a..e38a6444 100644 --- a/utils/couchdb/livesync-commonlib.ts +++ b/utils/couchdb/livesync-commonlib.ts @@ -1,5 +1,5 @@ // Keep CouchDB database-version negotiation isolated from Setup URI generation. // The exact release must match utils/livesync-commonlib-version.ts; the setup // tool suite checks every static specifier before release. -export { checkRemoteVersion } from "npm:@vrtmrz/livesync-commonlib@0.1.32/compat/pouchdb/negotiation"; -export { PouchDB } from "npm:@vrtmrz/livesync-commonlib@0.1.32/compat/pouchdb/pouchdb-browser"; +export { checkRemoteVersion } from "npm:@vrtmrz/livesync-commonlib@0.1.33/compat/pouchdb/negotiation"; +export { PouchDB } from "npm:@vrtmrz/livesync-commonlib@0.1.33/compat/pouchdb/pouchdb-browser"; diff --git a/utils/flyio/deno.lock b/utils/flyio/deno.lock index 6b9f40b0..e25ea806 100644 --- a/utils/flyio/deno.lock +++ b/utils/flyio/deno.lock @@ -1,7 +1,7 @@ { "version": "5", "specifiers": { - "npm:@vrtmrz/livesync-commonlib@0.1.32": "0.1.32" + "npm:@vrtmrz/livesync-commonlib@0.1.33": "0.1.33" }, "npm": { "@aws-sdk/checksums@3.1000.18": { @@ -284,8 +284,8 @@ "@trystero-p2p/core" ] }, - "@vrtmrz/livesync-commonlib@0.1.32": { - "integrity": "sha512-gzjhd7bg+DKHhd/24WGxBM7557wsw3HJkc0YjKll1n8/8vuhqPnlLuZmM33fj+4bv9nGFUnDlnoVowpQrTns6w==", + "@vrtmrz/livesync-commonlib@0.1.33": { + "integrity": "sha512-jziEUYCrGty3btR8pj/nkQrfLIGsQBbMug9opN8vCwAZmAznS0Zuh/l1TJpoKl8nqijZT1AJ4w5jkgU9pEyz4Q==", "dependencies": [ "@aws-sdk/client-s3", "@smithy/fetch-http-handler", diff --git a/utils/livesync-commonlib-version.ts b/utils/livesync-commonlib-version.ts index 47913bdd..2676f6f2 100644 --- a/utils/livesync-commonlib-version.ts +++ b/utils/livesync-commonlib-version.ts @@ -2,4 +2,4 @@ // Commonlib registry release. Static npm specifiers cannot interpolate this // value, so livesync-commonlib-version.test.ts verifies the domain-specific // facades against it. -export const LIVESYNC_COMMONLIB_VERSION = "0.1.32"; +export const LIVESYNC_COMMONLIB_VERSION = "0.1.33"; diff --git a/utils/setup/livesync-commonlib.ts b/utils/setup/livesync-commonlib.ts index 741923ff..b475c26d 100644 --- a/utils/setup/livesync-commonlib.ts +++ b/utils/setup/livesync-commonlib.ts @@ -5,10 +5,10 @@ export { decodeSettingsFromSetupURI, encodeTimeBoundSetupURI, isTimeBoundSetupURIUsableNow, -} from "npm:@vrtmrz/livesync-commonlib@0.1.32/setup-uri"; -export type { TimeBoundSetupURIMode } from "npm:@vrtmrz/livesync-commonlib@0.1.32/setup-uri"; -export { generateP2PRoomId } from "npm:@vrtmrz/livesync-commonlib@0.1.32/compat/common/utils"; -export { upsertRemoteConfigurationInPlace } from "npm:@vrtmrz/livesync-commonlib@0.1.32/remote-configurations"; +} from "npm:@vrtmrz/livesync-commonlib@0.1.33/setup-uri"; +export type { TimeBoundSetupURIMode } from "npm:@vrtmrz/livesync-commonlib@0.1.33/setup-uri"; +export { generateP2PRoomId } from "npm:@vrtmrz/livesync-commonlib@0.1.33/compat/common/utils"; +export { upsertRemoteConfigurationInPlace } from "npm:@vrtmrz/livesync-commonlib@0.1.33/remote-configurations"; export { createNewVaultSettings, DEFAULT_SETTINGS, @@ -16,5 +16,5 @@ export { PREFERRED_BASE, PREFERRED_JOURNAL_SYNC, PREFERRED_SETTING_SELF_HOSTED, -} from "npm:@vrtmrz/livesync-commonlib@0.1.32/settings"; -export type { ObsidianLiveSyncSettings } from "npm:@vrtmrz/livesync-commonlib@0.1.32/settings"; +} from "npm:@vrtmrz/livesync-commonlib@0.1.33/settings"; +export type { ObsidianLiveSyncSettings } from "npm:@vrtmrz/livesync-commonlib@0.1.33/settings";