Driver rename and icons: `Driver.display_name` plus a `DriverIcon` table, both global/shared like the `Driver` row they hang off, so a rename or an icon is what every Owner sees. The rename/icon dialog keeps its forms as siblings (nested forms are invalid HTML) and the icon routes return an `hx-swap-oob` thumbnail refresh rather than re-rendering the table, which would tear the open `<dialog>` out of the DOM. Web image picker: `GET /web/images` renders a pickable grid for a printer or a driver icon, with the search term prefilled from the entity name and editable. Picking one downloads it server-side and normalizes it. Driver download search: `GET /web/drivers` searches for a vendor-wide driver (the term is rewritten into the vendor's real product name for 15 brands) or for the exact model as typed. Links only — nothing is downloaded, and the fragment says the results are unvetted. Icon uploads no longer reject off-size or non-PNG files: `normalize_icon()` letterboxes any decodable raster into a 256x256 PNG. An already-exact 256x256 PNG is returned byte-identical, because icon storage is content-addressed and re-encoding would move the file on every save. `fetch_image()` makes the request from the server, so `assert_fetchable()` refuses any URL resolving to a private, loopback, or link-local address, and re-runs on every redirect. ImpTune sits on the same LAN as the printers it configures; an unguarded fetcher would be a port scanner for anyone who can reach the UI. DuckDuckGo is scraped, not called through an API — no key needed, but fragile, so both search functions swallow parse failures and return [] instead of 500ing a page. `WEB_SEARCH=false` disables every outbound request and hides the controls, for air-gapped installs. Also: one shared `Jinja2Templates` in `templating.py` instead of five per-router instances, so a template global is declared once; `_add_missing_columns()` in `database.py` adds new nullable columns to a pre-existing table, which `create_tables(safe=True)` skips; `db_env` in test_db.py now closes its connection on teardown, or the next test's ORM writes land in the previous test's DB file. Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
29 lines
1.2 KiB
YAML
29 lines
1.2 KiB
YAML
services:
|
|
imptune:
|
|
# Pull the published image by default (docker compose pull / up).
|
|
# `build` is kept so `docker compose build` still produces a correctly
|
|
# tagged local image; scripts/publish.ps1 pushes it to the registry.
|
|
image: git.azuze.fr/kawa/imptune:latest
|
|
build: .
|
|
ports:
|
|
- "8000:8000"
|
|
volumes:
|
|
- imptune_data:/data
|
|
restart: unless-stopped
|
|
environment:
|
|
- DATA_DIR=/data
|
|
# Uncomment when this port is reached over plain HTTP (no TLS proxy in
|
|
# front): the owner-session cookie is Secure by default, so the browser
|
|
# drops it and every request mints a new empty Owner. With `false` the
|
|
# session works but lives only until the browser closes, and the UI warns.
|
|
# - COOKIE_SECURE=false
|
|
# Or drop sessions entirely — no cookie, one shared store for everyone who
|
|
# can reach the app. Test boxes / single-person local prod only.
|
|
# - COOKIE_SECURE=single_user
|
|
# Image search / driver-page search / image download are the only outbound
|
|
# requests ImpTune makes. Set false on an air-gapped host and the UI hides
|
|
# those controls instead of timing out on each one.
|
|
# - WEB_SEARCH=false
|
|
|
|
volumes:
|
|
imptune_data: |