Skip to content

blinko

Productivity & Wikis

AI-powered card note-taking application for capturing and organizing thoughts with self-hosted privacy

TypeScript Latest 1.8.7 · 1mo ago Security brief →

Features

  • AI-Enhanced note retrieval with natural language RAG search
  • Self-hosted data ownership and privacy
  • Fast note capture with Markdown support
  • Lightweight Tauri architecture with multi-platform support
  • Open-source collaboration

Security Response History

1 CVE
CVE Severity Disclosed Patched (this tool) vs Ecosystem Median
CVE-2025-31125 KEV medium
CVSS 5.3
2025-03-31 2026-01-01 9mo / median 9mo

Recent releases

View all 7 releases →
1.8.7 Breaking risk
Notable features
  • Add MiniMax as first-class LLM provider
  • Fix file upload 500 errors via filename sanitization
  • Clear tag filters when resetting search
1.8.4 Security relevant
Security fixes
  • GHSA-hrwx-rhrx-f9mm - Path traversal in file API
  • Command injection prevention in MCP servers
  • GHSA-r3mv-q7ww-86p6 - Privilege escalation in upsertUser

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

About

Stars
10,476
Forks
745
Languages
TypeScript Rust CSS

Install & Platforms

Install via
docker shell-script
Platforms
linux macos windows
Mobile
Android Web

Beta — feedback welcome: [email protected]