Skip to content

dietrichmax/colota

v1.7.1 Security

This release includes 1 security fix for security teams reviewing exposed deployments.

✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →
This release patches 1 known CVE

Topics

android google-timeline gps-tracker gps-tracking location location-tracker
+1 more
react-native

Affected surfaces

auth

Summary

AI summary

Fixed tracking getting stuck when leaving a geofence and hardened auto‑export notification intent against hijacking.

Full changelog

Bug Fixes

  • Stuck inside geofence after leaving - Tracking no longer gets stuck after the device physically leaves a geofence with motionless or wifi pause active. (#329)
  • Auto-export notification PendingIntent - Hardened against implicit-intent hijacking

Full Changelog: https://github.com/dietrichmax/colota/compare/v1.7.0...v1.7.1

Security Fixes

  • Auto-export notification PendingIntent hardened against implicit‑intent hijacking

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track dietrichmax/colota

Get notified when new releases ship.

Sign up free

About dietrichmax/colota

All releases →

Related context

Earlier breaking changes

  • v1.9.0 Stricter TLS trust: user-installed Android CAs no longer trusted by Colota.

Beta — feedback welcome: [email protected]