This release adds 4 notable features for engineering teams evaluating rollout.
✓ No known CVEs patched in this version
Topics
Affected surfaces
Summary
AI summaryComment threads now paginate with a load‑more divider.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Feature | Medium |
Adds page‑wise comment pagination with inline load‑more divider. Adds page‑wise comment pagination with inline load‑more divider. Source: llm_adapter@2026-07-15 Confidence: high |
— |
| Feature | Medium |
Allows admins to restrict permitted image upload formats via admin settings (#215). Allows admins to restrict permitted image upload formats via admin settings (#215). Source: llm_adapter@2026-07-15 Confidence: high |
— |
| Feature | Medium |
Adds copy‑link options for images: direct URL, Markdown, BBCode, or HTML (#199). Adds copy‑link options for images: direct URL, Markdown, BBCode, or HTML (#199). Source: llm_adapter@2026-07-15 Confidence: high |
— |
| Feature | Medium |
Makes OAuth provider order reorderable via drag‑and‑drop. Makes OAuth provider order reorderable via drag‑and‑drop. Source: llm_adapter@2026-07-15 Confidence: high |
— |
| Feature | Medium |
Redesigns share attributes for finer control over image sharing (#216). Redesigns share attributes for finer control over image sharing (#216). Source: llm_adapter@2026-07-15 Confidence: high |
— |
| Feature | Medium |
Accepts TGA files reported under alternate MIME types and converts them to a supported format. Accepts TGA files reported under alternate MIME types and converts them to a supported format. Source: llm_adapter@2026-07-15 Confidence: high |
— |
| Dependency | Low |
Migrates base images to hardened non‑dev Alpine, bumps Node to 24.18.0, PHP to 8.5.8, and refreshes project dependencies. Migrates base images to hardened non‑dev Alpine, bumps Node to 24.18.0, PHP to 8.5.8, and refreshes project dependencies. Source: llm_adapter@2026-07-15 Confidence: high |
— |
| Bugfix | Medium |
Enforces proper authorization checks for viewing and creating comments, including on live comment stream. Enforces proper authorization checks for viewing and creating comments, including on live comment stream. Source: llm_adapter@2026-07-15 Confidence: low |
— |
| Bugfix | Low |
Refreshes empty states, sidebar storage usage card, uploader, history view; fixes action‑bar overflow, table‑view layout, and selection issues. Refreshes empty states, sidebar storage usage card, uploader, history view; fixes action‑bar overflow, table‑view layout, and selection issues. Source: llm_adapter@2026-07-15 Confidence: high |
— |
Full changelog
📦 Patch Notes
🛠️ Improvements & Fixes
- Comment Pagination: Long comment threads now load in pages with an inline load-more divider.
- Allowed Upload Formats: Admins can restrict which image formats users are permitted to upload. (#215)
- Copy Link Formats: The image action bar can copy a share link as a direct URL, Markdown, BBCode, or HTML. (#199)
- Reorderable OAuth Providers: Drag and drop to set the order of sign-in providers.
- Comment Access Control: Comment viewing and creation are now enforced by proper authorization checks, including on the live comment stream.
- Share Attributes: Redesigned share attributes for finer control over how images are shared. (#216)
- TGA Uploads: TGA files reported under alternate MIME types are now accepted and converted to a supported format.
- UI/UX: Refreshed empty states, the sidebar storage usage card, the uploader, and the history view, with fixes for action bar overflow, table-view layout, and selection.
- Maintenance: Migrated base images to hardened non-dev Alpine, bumped Node to 24.18.0 and PHP to 8.5.8, upgraded i18n tooling, and refreshed project dependencies.
Full Changelog: https://github.com/andrii-kryvoviaz/slink/compare/v1.12.2...v1.12.3
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
Related context
Related tools
Beta — feedback welcome: [email protected]