hoodik
File Storage & SyncA lightweight, self‑hosted cloud storage server with end‑to‑end encryption performed entirely in the browser.
Features
- End‑to‑end encryption (RSA + AEGIS‑128L) performed client‑side
- Secure, plaintext‑free file search via hashed metadata tokens
- Encrypted markdown notes with WYSIWYG editing and live autosave
- Public sharing links that never expose the decryption key to recipients
- Two‑factor authentication (TOTP) per user
Security Response History
1 CVE| CVE | Severity | Disclosed | Patched (this tool) | vs Ecosystem Median |
|---|---|---|---|---|
| CVE-2025-31125 KEV |
medium
CVSS 5.3
|
2025-03-31 | 2026-03-26 | 12mo / median 9mo |
Recent releases
View all 13 releases →Fixed hiding the registration UI when disabled and increased dark‑mode contrast.
Full changelog
What's Changed
- fix: hide register UI when disabled and bump dark-mode contrast by @htunlogic in https://github.com/hudikhq/hoodik/pull/162
Full Changelog: https://github.com/hudikhq/hoodik/compare/v1.15.1...v1.15.2
Minor fixes and improvements.
Full changelog
What's Changed
- fix: accept AEAD overhead on tar uploads by @htunlogic in https://github.com/hudikhq/hoodik/pull/159
Full Changelog: https://github.com/hudikhq/hoodik/compare/v1.15.0...v1.15.1
- Version history for editable notes (A2) with full S3 parity
Full changelog
What's Changed
- feat: version history for editable notes (A2) with full S3 parity by @htunlogic in https://github.com/hudikhq/hoodik/pull/156
- fix release by @htunlogic in https://github.com/hudikhq/hoodik/pull/157
Full Changelog: https://github.com/hudikhq/hoodik/compare/v1.14.1...v1.15.0
## What's Changed * fix: large file download via public share links and hash worker
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.