Skip to content

SkySend

v2.4.3 Feature

This release adds 3 notable features for engineering teams evaluating rollout.

Published 3mo File Storage & Sync
โœ“ No known CVEs patched
Read the diff โ†’ Tool health โ†’ What is this tool? โ†’

✓ No known CVEs patched in this version

Topics

aes-256-gcm docker encryption end-to-end-encryption file-sharing privacy
+5 more
react s3-storage self-hosted typescript zero-knowledge

Summary

AI summary

Updates ๐Ÿงช Tests, ๐Ÿ”ง CI/CD, and ๐Ÿณ Docker across a mixed release.

Full changelog

Codecov, Unit Test Improvements & Web Improvements

โœจ Features

  • client: TUI "Manage servers" now supports adding, deleting, and setting a server as default via a server action sub-menu

๐Ÿ› Bug Fixes

  • web: Fixed note view incorrectly showing "permanently deleted" warning for unlimited-view notes (maxViews === 0)

๐Ÿงช Tests

  • infra: Added @vitest/coverage-v8 and test:coverage scripts to server, web, crypto, and client packages for coverage report generation in LCOV format
  • web: Added 57 unit tests across lib/utils, lib/password-generator, and lib/upload-store - covering formatting functions, isSafari detection, generatePassword/calculateEntropy, and full CRUD/sorting for IndexedDB upload and note storage (using an in-memory idb-keyval mock)
  • client: Added 93 unit tests across lib/progress, lib/url, lib/password-generator, lib/config, and lib/history - covering all formatting/parsing utilities, full parseShareUrl/buildShareUrl logic including edge cases, password generation, config file lifecycle with filesystem isolation via tmpdir, and history CRUD with expiry cleanup

๐Ÿ”ง CI/CD

  • infra: Updated validate.yml test job to run with coverage and upload reports to Codecov via codecov/codecov-action@v5
  • infra: Added codecov.yml with project and patch coverage status checks
  • crypto: Added 14 new unit tests covering previously untested security-critical paths: validateMetadata error branches (invalid JSON, null payload, unknown type, malformed archive entries, negative sizes, empty names, missing MIME type), deriveKeyFromPasswordArgon2 input validation, ECE decrypt stream "record too short" path, and exact error message matching for the nonce-missing guard. Coverage: 94% โ†’ 99.29% statements, 88% โ†’ 97.82% branches. Added vitest.config.ts to exclude the re-export barrel src/index.ts from coverage.

๐Ÿณ Docker

  • Image: skyfay/skysend:v2.4.3
  • Also tagged as: latest, v2
  • Platforms: linux/amd64, linux/arm64

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track SkySend

Get notified when new releases ship.

Sign up free

About SkySend

Encrypted file and note sharing

All releases โ†’

Related context

Beta — feedback welcome: [email protected]