| Commit message (Collapse) | Author | Age | Files | Lines |
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Placeholders were already stopped from sending a file out of the
directory a rule named. A symlink is a name too, and the directory
krino sorts is by the threat model's own premise a place the internet
writes into: a link named after a rule's destination sent moves and
copies anywhere, and under (on-conflict overwrite) trashed a file
OUTSIDE the sorted directory - while the plan showed the in-tree text
and the run reported success.
A step whose destination passes through a symlink at or below the
directory being sorted now fails. A destination the configuration names
outside it - ~/docs on another disk - is the user's own arrangement and
is followed as before; both cases have a test.
End to end, the review's scenario (Out -> ~/secret, overwrite):
before: 1 applied, the user's file replaced and trashed
after: 0 applied 1 failed, the file untouched, nothing trashed
Two bookkeeping bugs in MkdirAllTracked went with it: a dangling
symlink read as a missing directory and was then recorded as one krino
had created - undo would have unlinked a link krino never made - and a
directory created by someone else between the check and the mkdir was
recorded the same way.
|
| |
|
|
|
|
|
|
|
|
|
|
| |
The scopes that drive "no rule deletes a file krino found to be a
duplicate" were collected from rules only. A directory whose duplicate
tests lived in (exclude ...) forms had no scopes at all, so the
protection never engaged: krino explain said "yes duplicate" and the
next rule permanently deleted every copy. The README's promise was
false in that shape, and the spec's wording permitted it.
What matters is what krino knows, not which form taught it. The spec
and krino.conf(5) now say so too.
|
| |
|
|
|
|
|
|
|
|
|
| |
So that go install can find it. cgit serves no go-import meta tag, so
nginx answers a ?go-get=1 request for /NAME with one pointing at
https://git.labunix.xyz/NAME.git; the alternative was carrying a .git
suffix through every import line forever.
One sed over the imports, both go.mod files, and the dependency gate's
whitelist. Nothing else depends on the path. go install works from the
next tag, the first release whose go.mod carries it.
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
About 340 comments cited the development process: task and plan
numbers, fix waves, rulings, reviewers, and the author in the third
person with a date. None of that exists outside the work itself, so to
a reader it pointed at nothing. Each one now states the engineering
reason it was standing in front of; where a comment was provenance and
nothing else, it is gone.
References to docs/design.md and docs/gui-design.md by section stay:
both ship with the repository. The design documents lose their
amendment diaries - CHANGELOG.md is that record - and the GUI's says
plainly that the window has gone further than the document.
Only comments changed. Every .go file was parsed and its code printed
with comments stripped, before and after: the two hashes are identical
across all 175 files.
|
| | |
|
| | |
|
| | |
|
| | |
|
| | |
|
| | |
|
| |
|
|
| |
unreadable file alone
|
| | |
|
| |
|
|
| |
short-document limit documented
|
| | |
|
| |
|
|
| |
dependency gate covers tests and BSDs, tarball install, examples and extractor list tested
|
| |
|
|
| |
memory; hardlink election documented
|
| |
|
|
| |
unscanned destinations
|
| |
|
|
| |
directories documented
|
| | |
|
| | |
|
| | |
|
| |
|
|
| |
cleanup, text turning binary, explain flags, interrupt docs
|
| |
|
|
| |
limitations, changelog)
|
| | |
|
| | |
|
| | |
|
| | |
|
| |
|
|
| |
names, conflict enum, dependency gate, absolute tool paths
|
| |
|
|
| |
directories
|
| |
|
|
| |
removed keywords
|
| | |
|
| |
|
|
| |
non-UTF-8 paths in krino new
|
| |
|
|
| |
reachable stdlib vulnerabilities
|
| | |
|
| | |
|
| | |
|
| | |
|
| |
|
|
|
|
|
|
| |
Each file shows its steps, then the rule and the reason it matched, one
field per line; on a terminal every line wraps to its width with
continuation lines under their own column, and piped output is never
wrapped. Choosing per file shows the same block. -P / --no-pager prints
the plan without the pager. A duplicate's original is shown with ~.
|
| |
|
|
|
|
|
| |
Lukasz, 2026-09-14: colour the output for ease of reading, with an option of
no colour. Section 8.2 now lists what is styled, from the 16-colour ANSI palette
plus bold and faint only, so the terminal theme decides the look; section 11
adds --no-color; section 15 adds the colour tests.
|
| |
|
|
|
|
|
|
|
| |
A rule combining (duplicate) with a delete action is refused at load, and a
file that is a duplicate under any duplicate scope its directory uses gets no
delete step from any rule: the plan shows it skipped and the chain continues.
A failed duplicate check blocks the delete too. Tests cover (matched), another
rule's own condition, a test evaluation skipped, two scopes and a failed
check, each checking every copy is still on disk.
|
| |
|
|
|
|
|
|
|
| |
Lukasz, 2026-09-14: leave deleting duplicates to the user or jdupes. Section
5.5 now forbids a delete action in any rule using (duplicate), and skips any
delete step for a file that is a duplicate under a scope its directory uses,
which closes the (matched) and other-rule routes. Two scopes that elect
different originals can then only move copies aside, never delete them. The
consequences land in 4.5, 7.1, the 8.2 example, 15 and 17.
|
| |
|
|
|
|
|
|
|
| |
README, changelog
Also: undo removes the directories its run created; a hardlink is never a
duplicate of its own other name; a flag written before "undo" is honoured;
--version prints no leading v. Duplicate conditions with different scopes
not sharing an original is documented as a known limitation.
|
| |
|
|
|
|
|
|
|
|
| |
Lukasz: "no performance goal". Section 13s "under 2 s on a 4-core laptop" is
replaced with the decision and its evidence, so it is not reinstated later:
measured throughput is dominated by the external extractors, not by krino. A
real folder of 265 files with 164 needing pdftotext at roughly 80 ms each takes
12-17 s; a synthetic 4405-file tree needing no extraction takes 1.09 s. A single
threshold would describe popplers speed and the shape of one folder. The
measurement is still reported in the release notes; nothing is promised.
|
| | |
|
| | |
|
| |
|
|
| |
explain, dry run
|
| |
|