mirror of
https://github.com/diegosouzapw/OmniRoute.git
synced 2026-07-26 09:52:11 +03:00
* fix(build): spawn npx.cmd through a shell in the electron better-sqlite3 rebuild Node's CVE-2024-27980 hardening makes spawnSync of .cmd/.bat shims fail with status null unless shell:true — the v3.8.47 tag build died on the Windows job with 'better-sqlite3 rebuild against electron 43.1.0 failed (exit null)'. Extracted the spawn plan into electronRebuildPlan.mjs (pure, import-safe) with a regression test; args are fixed literals, no untrusted input reaches the shell. * fix(build): ship head-response-guard.cjs in the npm tarball (#7065) The prepublish prune allowlist (pack-artifact-policy.ts) lacked head-response-guard.cjs, so assembleStandalone copied it and the prune deleted it — every boot of the published 3.8.47 crashed with ERR_MODULE_NOT_FOUND (3rd occurrence of this class; tls-options/3.8.41). Also added to PACK_ARTIFACT_REQUIRED_PATHS so check:pack-artifact fails loudly, plus a closure test that derives every server-ws.mjs sibling import and asserts both lists cover it. * fix(ci): zero the Sonar quality-gate findings on new code - ci.yml sonarqube job: download the coverage artifact into coverage/ so lcov.info lands where sonar.javascript.lcov.reportPaths points — the upload strips the common coverage/ prefix, so 'path: .' left new-code coverage at 0% on every scan - kiro auto-import: await the async isCloudEnabled() gate (S6544 — a bare truthiness check on the Promise made syncToCloud run even with cloud sync disabled) - stream.ts: real JSON fallback in the reasoning-split clone (S3923 — both ternary branches called structuredClone, the promised fallback was dead) - codex executor: handle the async reader.cancel() rejection (S4822) - deterministic localeCompare sorts (S2871 x2) - classify-pr-changes.mjs: confine the argv list file to the workspace (jssecurity:S8707 path-traversal guard) + behavioral tests - Dockerfile: rebuild better-sqlite3 with npm's bundled node-gyp instead of npx --yes (docker:S6505 — no on-demand registry install) * chore(ci): make the Sonar quality gate informational (wait=false) The org's SonarCloud FREE plan cannot associate a custom quality gate — only the built-in Sonar way (80% new coverage) applies, which no full-cycle release PR can realistically meet. The scan still uploads (dashboard, PR decoration); the CI job just no longer fails on the gate. A tuned 'OmniRoute way' gate (coverage >=60, duplication <=5) is already configured in the org for the day the plan is upgraded — re-enable wait=true then. * chore(release): v3.8.48 hotfix bump + changelog (npm 3.8.47 unbootable, #7065) * test: align pack-artifact + dockerfile guards to the corrected contracts pack-artifact-policy.test.ts encoded the pre-#7065 REQUIRED list (without head-response-guard.cjs) and dockerfile-better-sqlite3-node-gyp-6700.test.ts asserted the npx invocation the Sonar fix replaced with npm's bundled node-gyp — both now assert the corrected behavior.
158 lines
3.6 KiB
JSON
158 lines
3.6 KiB
JSON
{
|
|
"name": "omniroute-desktop",
|
|
"version": "3.8.48",
|
|
"description": "OmniRoute Desktop Application",
|
|
"main": "main.js",
|
|
"author": {
|
|
"name": "OmniRoute Team",
|
|
"email": "support@omniroute.online"
|
|
},
|
|
"license": "MIT",
|
|
"homepage": "https://omniroute.online",
|
|
"engines": {
|
|
"node": ">=22.22.2 <23 || >=24.0.0 <27"
|
|
},
|
|
"scripts": {
|
|
"start": "electron .",
|
|
"dev": "electron . --no-sandbox",
|
|
"prepare:bundle": "node ../scripts/build/prepare-electron-standalone.mjs",
|
|
"build": "npm run prepare:bundle && electron-builder",
|
|
"build:win": "npm run prepare:bundle && electron-builder --win",
|
|
"build:mac": "npm run prepare:bundle && electron-builder --mac",
|
|
"build:mac-x64": "npm run prepare:bundle && electron-builder --mac --x64",
|
|
"build:mac-arm64": "npm run prepare:bundle && electron-builder --mac --arm64",
|
|
"build:linux": "npm run prepare:bundle && electron-builder --linux",
|
|
"pack": "npm run prepare:bundle && electron-builder --dir"
|
|
},
|
|
"dependencies": {
|
|
"electron-updater": "^6.8.9"
|
|
},
|
|
"devDependencies": {
|
|
"electron": "^43.1.0",
|
|
"electron-builder": "^26.15.3"
|
|
},
|
|
"overrides": {
|
|
"@xmldom/xmldom": "^0.9.10",
|
|
"plist": "^4.0.0",
|
|
"form-data": "^4.0.6",
|
|
"js-yaml": "^4.2.0",
|
|
"undici": "^7.28.0"
|
|
},
|
|
"build": {
|
|
"appId": "online.omniroute.desktop",
|
|
"productName": "OmniRoute",
|
|
"copyright": "Copyright © 2025 OmniRoute",
|
|
"buildDependenciesFromSource": true,
|
|
"directories": {
|
|
"output": "dist-electron",
|
|
"buildResources": "assets"
|
|
},
|
|
"publish": {
|
|
"provider": "github",
|
|
"owner": "diegosouzapw",
|
|
"repo": "OmniRoute"
|
|
},
|
|
"files": [
|
|
"main.js",
|
|
"preload.js",
|
|
"loginManager.js",
|
|
"processTree.js",
|
|
"sqlite-inspection.js",
|
|
"lib/resolveServerEntry.js",
|
|
"package.json",
|
|
"node_modules/**/*"
|
|
],
|
|
"extraResources": [
|
|
{
|
|
"from": "../.build/electron-standalone",
|
|
"to": "app",
|
|
"filter": [
|
|
"**/*",
|
|
"node_modules/**/*"
|
|
]
|
|
},
|
|
{
|
|
"from": "../.build/electron-standalone/node_modules",
|
|
"to": "app/node_modules",
|
|
"filter": [
|
|
"**/*"
|
|
]
|
|
},
|
|
{
|
|
"from": "assets",
|
|
"to": "assets",
|
|
"filter": [
|
|
"icon.png",
|
|
"tray-icon.png"
|
|
]
|
|
}
|
|
],
|
|
"win": {
|
|
"target": [
|
|
{
|
|
"target": "nsis",
|
|
"arch": [
|
|
"x64"
|
|
]
|
|
},
|
|
{
|
|
"target": "portable",
|
|
"arch": [
|
|
"x64"
|
|
]
|
|
}
|
|
],
|
|
"icon": "assets/icon.ico"
|
|
},
|
|
"mac": {
|
|
"target": [
|
|
"dmg"
|
|
],
|
|
"icon": "assets/icon.icns",
|
|
"category": "public.app-category.productivity"
|
|
},
|
|
"linux": {
|
|
"target": [
|
|
{
|
|
"target": "AppImage",
|
|
"arch": [
|
|
"x64",
|
|
"arm64"
|
|
]
|
|
},
|
|
{
|
|
"target": "deb",
|
|
"arch": [
|
|
"x64",
|
|
"arm64"
|
|
]
|
|
}
|
|
],
|
|
"icon": "assets/icons",
|
|
"category": "Utility"
|
|
},
|
|
"nsis": {
|
|
"oneClick": false,
|
|
"allowToChangeInstallationDirectory": true,
|
|
"createDesktopShortcut": true,
|
|
"createStartMenuShortcut": true,
|
|
"installerIcon": "assets/icon.ico",
|
|
"uninstallerIcon": "assets/icon.ico"
|
|
},
|
|
"dmg": {
|
|
"contents": [
|
|
{
|
|
"x": 130,
|
|
"y": 220
|
|
},
|
|
{
|
|
"x": 410,
|
|
"y": 220,
|
|
"type": "link",
|
|
"path": "/Applications"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
}
|