Gitfed

Changelog

1.2.4

1.2.3

1.2.2

1.2.1

1.2.0

1.1.1

1.1.0

1.0.4

1.0.3

1.0.2

1.0.1

1.0.0

First stable release. Federated SSH-certificate identity, per-repo/per-role ACLs, a self-service web UI (repo browser, commit history and detail, merge requests with review and a real server-side merge, pinned repos, federated notifications), anonymous read-only HTTPS clone for public repos, and a documented backup/restore procedure — see README.md for the full picture and ROADMAP.md for what was deliberately left out and why.

Also adds gitfed-tui -set-public <repo> / -set-private <repo>: a non-interactive way to flip a repo's visibility over kubectl exec, without driving the interactive TUI's keystrokes against a live instance.

0.10.3

0.10.2

0.10.1

0.10.0

0.9.8

0.9.7

0.9.6

0.9.5

0.9.4

0.9.3

0.9.2

Follow-up security audit on everything added since the pre-prod one (docs/security/AUDIT-2026-07-29.md) — the anonymous HTTPS clone, federated notifications, pinned repos. No critical findings; three real gaps fixed:

Also: git's stderr was being silently discarded on the HTTP clone endpoints instead of logged, and the "this is informational only" disclaimer on /notifications now explicitly says the content isn't verified, only the sender's signature.

0.9.1

0.9.0

0.8.0

0.7.1

0.7.0

Pre-production security hardening, from a full defensive audit (docs/security/AUDIT.md, fix plan in docs/security/FIX_PLAN.md). Nothing critical was found — this closes the gaps expected before putting real accounts on the instance:

0.6.0

0.5.3

0.5.2

0.5.1

0.5.0

0.4.0

0.3.0

0.2.0

0.1.0