Lock screen (main-window overlay, no second window): - scrypt password verifier in <userData>/lock.json (per-write salt, timingSafeEqual); salt/hash/password never leave the main process - lock now / idle auto-lock / lock at startup, growing failure cooldown, lock flags persisted so a quit-and-relaunch cannot bypass the lock - locked shell and body portals go inert while sessions keep running; menu accelerators (reload, DevTools, zoom) are swallowed while locked - settings gains a Lock tab; all copy in zh-CN/zh-TW/en/ja Security and stability: - packaged builds ignore ELECTRON_RENDERER_URL / OT_UPDATE_URL (devEnv) - renderer preload runs with sandbox: true - unreadable known_hosts store fails closed instead of being overwritten - connect-time secrets gated by the bookmark's auth method (connectPromptFor) - ssh stream teardown is idempotent: PTY_EXIT broadcasts exactly once - sysinfo polling is refcounted for split panes (forceStopPolling on close) - session-log index entries are path-contained; settings store writes atomically with EPERM/EBUSY retry - sync-changelog tolerates CRLF checkouts (was a silent no-op) - retry ssh2 host-key generation (flaky malformed key, ~1/500) Tests: lock-store + lock-controller suites; transport-death PTY_EXIT e2e; GitHub Actions CI (typecheck + 10 offline tests + build)
69 lines
1.6 KiB
JavaScript
69 lines
1.6 KiB
JavaScript
// Minimal electron stub for bundling src/main/*.ts under plain Node
|
|
// (tests/ssh-session-e2e.mjs, tests/commands-store.mjs). Only what the bundled
|
|
// modules touch.
|
|
//
|
|
// `app.getPath('userData')` is configurable via `__setUserData` so a test can
|
|
// point the settings store at a temp dir and exercise settings-driven behavior.
|
|
let userDataPath = process.env.OT_STUB_USERDATA || ''
|
|
module.exports = {
|
|
BrowserWindow: {
|
|
getAllWindows: () => []
|
|
},
|
|
app: {
|
|
getPath: (name) => {
|
|
if (name === 'userData' && userDataPath) return userDataPath
|
|
throw new Error(`electron stub: app.getPath(${name}) is not configured`)
|
|
},
|
|
setLoginItemSettings: () => {},
|
|
isPackaged: false
|
|
},
|
|
ipcMain: {
|
|
handle: () => {},
|
|
on: () => {}
|
|
},
|
|
globalShortcut: {
|
|
register: () => true,
|
|
unregister: () => {},
|
|
unregisterAll: () => {},
|
|
isRegistered: () => false
|
|
},
|
|
webContents: {},
|
|
powerMonitor: {
|
|
getSystemIdleTime: () => 0
|
|
},
|
|
powerSaveBlocker: {
|
|
start: () => 1,
|
|
stop: () => {},
|
|
isStarted: () => false
|
|
},
|
|
shell: {
|
|
openPath: async () => ''
|
|
},
|
|
safeStorage: {
|
|
isEncryptionAvailable: () => false
|
|
},
|
|
nativeTheme: {
|
|
shouldUseDarkColors: true,
|
|
on: () => {}
|
|
},
|
|
Menu: {
|
|
buildFromTemplate: () => ({ popup: () => {} }),
|
|
setApplicationMenu: () => {}
|
|
},
|
|
Tray: class {
|
|
setToolTip() {}
|
|
setContextMenu() {}
|
|
on() {}
|
|
destroy() {}
|
|
static getBounds() {
|
|
return { x: 0, y: 0, width: 0, height: 0 }
|
|
}
|
|
},
|
|
nativeImage: {
|
|
createFromPath: () => ({ isEmpty: () => true, resize: () => ({}) })
|
|
},
|
|
__setUserData: (p) => {
|
|
userDataPath = p
|
|
}
|
|
}
|