This PR contains the following updates: | Package | Update | Change | |---|---|---| | [ghcr.io/manyfold3d/manyfold](https://redirect.github.com/manyfold3d/manyfold) | patch | `c90e33e` -> `8f6d732` | --- > [!WARNING] > Some dependencies could not be looked up. Check the Dependency Dashboard for more information. Add the preset `:preserveSemverRanges` to your config if you don't want to pin your dependencies. --- ### Release Notes <details> <summary>manyfold3d/manyfold (ghcr.io/manyfold3d/manyfold)</summary> ### [`v0.129.3`](https://redirect.github.com/manyfold3d/manyfold/releases/tag/v0.129.3) [Compare Source](https://redirect.github.com/manyfold3d/manyfold/compare/v0.129.2...v0.129.3) Another patch release, this time focused on security improvements from our recent audit. There are also a few bugfixes, including an important one from the last release that potentially breaks model pages for new users! #### What's Changed ##### 🔒 Security 🔒 - Obfuscate password input fields in user admin area by [@​Floppy](https://redirect.github.com/Floppy) in [#​5094](https://redirect.github.com/manyfold3d/manyfold/pull/5094) - Sanitize upload filenames to prevent path traversal by [@​Floppy](https://redirect.github.com/Floppy) in [#​5098](https://redirect.github.com/manyfold3d/manyfold/pull/5098) - Only object owners can set sharing permissions by [@​Floppy](https://redirect.github.com/Floppy) in [#​5099](https://redirect.github.com/manyfold3d/manyfold/pull/5099) - Obfuscate OAuth client secret on screen (with reveal and copy options) by [@​Floppy](https://redirect.github.com/Floppy) in [#​5100](https://redirect.github.com/manyfold3d/manyfold/pull/5100) - OIDC: Don't match accounts by unverified emails by [@​Floppy](https://redirect.github.com/Floppy) in [#​5101](https://redirect.github.com/manyfold3d/manyfold/pull/5101) - Improve and test rate limiting, including OAuth and OIDC endpoints by [@​Floppy](https://redirect.github.com/Floppy) in [#​5104](https://redirect.github.com/manyfold3d/manyfold/pull/5104) - Add explicit sanitization to fields that come in from the Fediverse by [@​Floppy](https://redirect.github.com/Floppy) in [#​5111](https://redirect.github.com/manyfold3d/manyfold/pull/5111) ##### 🐛 Bug Fixes 🐛 - Include slicer app images locally to avoid CORS errors by [@​Floppy](https://redirect.github.com/Floppy) in [#​5077](https://redirect.github.com/manyfold3d/manyfold/pull/5077) - Fix server scheme in API documentation by [@​Floppy](https://redirect.github.com/Floppy) in [#​5102](https://redirect.github.com/manyfold3d/manyfold/pull/5102) - Fix tour error on model page blocking entire UI by [@​Floppy](https://redirect.github.com/Floppy) in [#​5106](https://redirect.github.com/manyfold3d/manyfold/pull/5106) - Fix error when rendering remote actors in federated search by [@​Floppy](https://redirect.github.com/Floppy) in [#​5110](https://redirect.github.com/manyfold3d/manyfold/pull/5110) **Full Changelog**: <https://github.com/manyfold3d/manyfold/compare/v0.129.2...v0.129.3> </details> --- ### Configuration 📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined). 🚦 **Automerge**: Enabled. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR has been generated by [Renovate Bot](https://redirect.github.com/renovatebot/renovate). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0Mi4xNy4wIiwidXBkYXRlZEluVmVyIjoiNDIuMTcuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
title
| title |
|---|
| TrueCharts |
Community Helm Chart Catalog
TrueCharts is a catalog of highly optimised Helm Charts. Made for the community, by the community!
All our charts are supposed to work together and be easy to setup using any helm-compatible deployment tool, above all, give the average user more than enough options to tune things to their liking.
Getting started using TrueCharts
Support
Please check our FAQ, manual and Issue tracker There is a significant chance your issue has been reported before!
Still something not working as expected? Contact us! and we'll figure it out together!
Development
Our development process is fully distributed and agile, so every chart-maintainer is free to set their own roadmap and development speed and does not have to comply to a centralised roadmap. This ensures freedom and flexibility for everyone involved and makes sure you, the end user, always has the latest and greatest of every Chart installed.
Getting into creating Charts
For more information check the website: https://truecharts.org
Contact and Support
To contact the TrueCharts project:
-
Create an issue on Github issues
-
Open a Support Ticket
-
Send us an email
Contributors ✨
Thanks goes to these wonderful people (emoji key):
This project follows the all-contributors specification. Contributions of any kind welcome!
Licence
Truecharts, is primarily based on the AGPL-v3 license, this ensures almost everyone can use and modify our charts. Licences can vary on a per-Chart basis. This can easily be seen by the presence of a "LICENSE" file in that folder.
An exception to this, has been made for every document inside folders labeled as docs or doc and their subfolders: those folders are not licensed under AGPL-v3 and are considered "all rights reserved". Said content can be modified and changes submitted per PR, in accordance to the github End User License Agreement.
SPDX-License-Identifier: AGPL-3.0