Compare commits
72 Commits
v2.0.2
...
3590efbfc1
Author | SHA1 | Date | |
---|---|---|---|
3590efbfc1 | |||
e133cd5456 | |||
eabff03751 | |||
283cc9a051 | |||
a3d7731f4f | |||
13dfd933af | |||
|
74840416f1 | ||
569b15d6a0 | |||
53d7e43740 | |||
7cbbf43f03 | |||
ec4c95b20e | |||
663ffc057c | |||
a2cf751012 | |||
3af5d0ef1a | |||
88e502562a | |||
63d72ca17e | |||
bc156f504f | |||
1abb78190a | |||
2ab4bbf150 | |||
0ac151f42c | |||
86cdb6d5da | |||
55b6e9ea51 | |||
be0d523d90 | |||
5817fd19b1 | |||
5fb6f65a13 | |||
420370acaf | |||
4c25ca005e | |||
|
9aaad5b910 | ||
|
c246207420 | ||
7ee1b8370a | |||
e7750699cc | |||
e14042ea28 | |||
6fb7518b6a | |||
436ae2a7e5 | |||
fe5ce580ab | |||
0f882da5d1 | |||
ad6f136dd0 | |||
da527a0857 | |||
a95931ae77 | |||
d6c2236673 | |||
42a8ab5d0f | |||
0934808a59 | |||
88ea828b66 | |||
41ed5c0e23 | |||
0a98481991 | |||
5d62c48a35 | |||
0ab39023b0 | |||
7b202962e8 | |||
7a045b3f34 | |||
cb80c8bfe4 | |||
74c3197e47 | |||
6ae927ce71 | |||
9d13e607f5 | |||
0db3ef4a1f | |||
03e9fb431f | |||
b84df2866b | |||
3d4fef7c23 | |||
9d787008a4 | |||
687f26bb40 | |||
371a869800 | |||
321c303a8a | |||
2f176d84e9 | |||
67d4f09bd7 | |||
c40f009523 | |||
026f8c69d7 | |||
cacb808117 | |||
2d573edcac | |||
4287cd429d | |||
024dfeeeb7 | |||
f24bcba20b | |||
1d95edc455 | |||
|
ec24ab3edd |
@@ -1,15 +1,15 @@
|
|||||||
*
|
*
|
||||||
|
|
||||||
!/backend/src
|
!/packages
|
||||||
!/backend/Cargo.lock
|
!/package.json
|
||||||
!/backend/Cargo.toml
|
!/pnpm-lock.yaml
|
||||||
|
!/pnpm-workspace.yaml
|
||||||
|
|
||||||
!/frontend/locales
|
**/target
|
||||||
!/frontend/src
|
**/node_modules
|
||||||
!/frontend/static
|
**/dist
|
||||||
!/frontend/.npmrc
|
**/bin
|
||||||
!/frontend/package.json
|
**/*.tsbuildinfo
|
||||||
!/frontend/pnpm-lock.yaml
|
**/build
|
||||||
!/frontend/svelte.config.js
|
**/.svelte
|
||||||
!/frontend/tsconfig.json
|
**/.svelte-kit
|
||||||
!/frontend/vite.config.js
|
|
||||||
|
@@ -1,24 +1,37 @@
|
|||||||
name: ci
|
name: Publish
|
||||||
|
|
||||||
on:
|
on:
|
||||||
workflow_dispatch:
|
workflow_dispatch:
|
||||||
push:
|
push:
|
||||||
tags:
|
tags:
|
||||||
- "v*.*.*"
|
- 'v*.*.*'
|
||||||
|
|
||||||
jobs:
|
jobs:
|
||||||
|
cli:
|
||||||
|
runs-on: ubuntu-latest
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v3
|
||||||
|
|
||||||
|
- uses: actions/setup-node@v3
|
||||||
|
with:
|
||||||
|
node-version-file: '.nvmrc'
|
||||||
|
- uses: pnpm/action-setup@v2
|
||||||
|
|
||||||
|
- run: |
|
||||||
|
pnpm install --frozen-lockfile
|
||||||
|
pnpm run build
|
||||||
|
|
||||||
docker:
|
docker:
|
||||||
runs-on: ubuntu-latest
|
runs-on: ubuntu-latest
|
||||||
steps:
|
steps:
|
||||||
- name: Set up QEMU
|
- uses: actions/checkout@v3
|
||||||
uses: docker/setup-qemu-action@v1
|
- uses: docker/setup-qemu-action@v2
|
||||||
- name: Set up Docker Buildx
|
- uses: docker/setup-buildx-action@v2
|
||||||
uses: docker/setup-buildx-action@v1
|
|
||||||
with:
|
with:
|
||||||
install: true
|
install: true
|
||||||
- name: Docker Labels
|
- name: Docker Labels
|
||||||
id: meta
|
id: meta
|
||||||
uses: crazy-max/ghaction-docker-meta@v2
|
uses: docker/metadata-action@v4
|
||||||
with:
|
with:
|
||||||
images: cupcakearmy/cryptgeon
|
images: cupcakearmy/cryptgeon
|
||||||
tags: |
|
tags: |
|
||||||
@@ -26,16 +39,13 @@ jobs:
|
|||||||
type=semver,pattern={{major}}.{{minor}}
|
type=semver,pattern={{major}}.{{minor}}
|
||||||
type=semver,pattern={{major}}
|
type=semver,pattern={{major}}
|
||||||
- name: Login to DockerHub
|
- name: Login to DockerHub
|
||||||
uses: docker/login-action@v1
|
uses: docker/login-action@v2
|
||||||
with:
|
with:
|
||||||
username: ${{ secrets.DOCKERHUB_USERNAME }}
|
username: ${{ secrets.DOCKERHUB_USERNAME }}
|
||||||
password: ${{ secrets.DOCKERHUB_TOKEN }}
|
password: ${{ secrets.DOCKERHUB_TOKEN }}
|
||||||
- name: Build and push
|
- name: Build and push
|
||||||
id: docker_build
|
uses: docker/build-push-action@v4
|
||||||
uses: docker/build-push-action@v2
|
|
||||||
with:
|
with:
|
||||||
platforms: linux/amd64,linux/arm64
|
platforms: linux/amd64,linux/arm64
|
||||||
push: true
|
push: true
|
||||||
tags: ${{ steps.meta.outputs.tags }}
|
tags: ${{ steps.meta.outputs.tags }}
|
||||||
- name: Image digest
|
|
||||||
run: echo ${{ steps.docker_build.outputs.digest }}
|
|
46
.github/workflows/test.yaml
vendored
@@ -1,36 +1,38 @@
|
|||||||
|
name: Test
|
||||||
|
|
||||||
on:
|
on:
|
||||||
|
push:
|
||||||
|
branches:
|
||||||
|
- main
|
||||||
pull_request:
|
pull_request:
|
||||||
|
|
||||||
jobs:
|
jobs:
|
||||||
test:
|
test:
|
||||||
runs-on: ubuntu-latest
|
runs-on: ubuntu-latest
|
||||||
services:
|
|
||||||
redis:
|
|
||||||
image: redis:7-alpine
|
|
||||||
ports:
|
|
||||||
- 6379:6379
|
|
||||||
steps:
|
steps:
|
||||||
- uses: actions/checkout@v2
|
- uses: actions/checkout@v3
|
||||||
- uses: actions/setup-node@v2
|
|
||||||
|
# Node
|
||||||
|
- uses: actions/setup-node@v3
|
||||||
with:
|
with:
|
||||||
node-version: "16"
|
node-version-file: '.nvmrc'
|
||||||
- uses: pnpm/action-setup@v2
|
- uses: pnpm/action-setup@v2
|
||||||
|
|
||||||
|
# Docker
|
||||||
|
- uses: docker/setup-qemu-action@v2
|
||||||
|
- uses: docker/setup-buildx-action@v2
|
||||||
with:
|
with:
|
||||||
version: 7
|
install: true
|
||||||
- uses: actions-rs/toolchain@v1
|
|
||||||
with:
|
|
||||||
toolchain: 1.61
|
|
||||||
- name: Prepare
|
- name: Prepare
|
||||||
run: |
|
run: |
|
||||||
pnpm install
|
pnpm install --frozen-lockfile
|
||||||
pnpm run ci:prepare
|
pnpm exec playwright install --with-deps
|
||||||
- name: Install Playwright
|
pnpm run test:prepare
|
||||||
run: npx playwright install --with-deps
|
|
||||||
- name: Run your tests
|
- name: Run your tests
|
||||||
run: pnpm run test
|
run: pnpm test
|
||||||
- name: Upload test results
|
- uses: actions/upload-artifact@v3
|
||||||
if: always()
|
|
||||||
uses: actions/upload-artifact@v2
|
|
||||||
with:
|
with:
|
||||||
name: playwright-report
|
name: test-results
|
||||||
path: playwright-report
|
path: test-results
|
||||||
|
16
.gitignore
vendored
@@ -1,14 +1,10 @@
|
|||||||
|
.env
|
||||||
|
*.tsbuildinfo
|
||||||
|
node_modules
|
||||||
|
dist
|
||||||
|
bin
|
||||||
|
|
||||||
# Backend
|
|
||||||
target
|
target
|
||||||
|
|
||||||
# Client
|
# Testing
|
||||||
.DS_Store
|
|
||||||
node_modules
|
|
||||||
/.svelte
|
|
||||||
/build
|
|
||||||
/functions
|
|
||||||
.env
|
|
||||||
|
|
||||||
General
|
|
||||||
test-results
|
test-results
|
||||||
|
6
.vscode/settings.json
vendored
@@ -1,6 +0,0 @@
|
|||||||
{
|
|
||||||
"cSpell.words": ["ciphertext", "cryptgeon"],
|
|
||||||
"i18n-ally.localesPaths": ["frontend/locales"],
|
|
||||||
"i18n-ally.enabledFrameworks": ["svelte"],
|
|
||||||
"i18n-ally.keystyle": "nested"
|
|
||||||
}
|
|
73
CHANGELOG.md
@@ -5,13 +5,84 @@ All notable changes to this project will be documented in this file.
|
|||||||
The format is based on [Keep a Changelog](https://keepachangelog.com/en/1.0.0/),
|
The format is based on [Keep a Changelog](https://keepachangelog.com/en/1.0.0/),
|
||||||
and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0.html).
|
and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0.html).
|
||||||
|
|
||||||
|
## [2.3.0] - 2023-05-XX
|
||||||
|
|
||||||
|
### Added
|
||||||
|
|
||||||
|
- New CLI 🎉
|
||||||
|
- Russian language
|
||||||
|
|
||||||
|
### Changed
|
||||||
|
|
||||||
|
- Moved to monorepo
|
||||||
|
|
||||||
|
## [2.2.0] - 2023-01-14
|
||||||
|
|
||||||
|
### Changed
|
||||||
|
|
||||||
|
- Default port is now 8000, not 5000.
|
||||||
|
- Moved to generic encryption library `occulto`.
|
||||||
|
|
||||||
|
### Fixed
|
||||||
|
|
||||||
|
- Bad chinese language code.
|
||||||
|
|
||||||
|
### Security
|
||||||
|
|
||||||
|
- Updated dependencies.
|
||||||
|
|
||||||
|
## [2.1.0] - 2023-01-04
|
||||||
|
|
||||||
|
### Added
|
||||||
|
|
||||||
|
- QR Code to more easily copy and share links.
|
||||||
|
|
||||||
|
## [2.0.7] - 2022-12-26
|
||||||
|
|
||||||
|
### Changed
|
||||||
|
|
||||||
|
- Svelte Kit now stable 🎉
|
||||||
|
|
||||||
|
## [2.0.6] - 2022-11-12
|
||||||
|
|
||||||
|
### Fixed
|
||||||
|
|
||||||
|
- #66 Set minimum a view.
|
||||||
|
|
||||||
|
### Security
|
||||||
|
|
||||||
|
- Updated dependencies.
|
||||||
|
|
||||||
|
## [2.0.5] - 2022-11-04
|
||||||
|
|
||||||
|
### Fixed
|
||||||
|
|
||||||
|
- Docker build pipeline.
|
||||||
|
|
||||||
|
## [2.0.4] - 2022-10-29
|
||||||
|
|
||||||
|
### Added
|
||||||
|
|
||||||
|
- `THEME_PAGE_TITLE`.
|
||||||
|
- `THEME_FAVICON`.
|
||||||
|
|
||||||
|
## [2.0.3] - 2022-10-07
|
||||||
|
|
||||||
|
### Added
|
||||||
|
|
||||||
|
- Flag for verbosity.
|
||||||
|
|
||||||
|
### Fixed
|
||||||
|
|
||||||
|
- #58 Fixed bug in the max views frontend form.
|
||||||
|
|
||||||
## [2.0.2] - 2022-07-20
|
## [2.0.2] - 2022-07-20
|
||||||
|
|
||||||
### Added
|
### Added
|
||||||
|
|
||||||
- Toasts for events.
|
- Toasts for events.
|
||||||
- E2E Tests.
|
- E2E Tests.
|
||||||
- Make backend more configurable
|
- Make backend more configurable.
|
||||||
|
|
||||||
## [2.0.1] - 2022-07-18
|
## [2.0.1] - 2022-07-18
|
||||||
|
|
||||||
|
19
Dockerfile
@@ -1,20 +1,19 @@
|
|||||||
# FRONTEND
|
# FRONTEND
|
||||||
FROM node:16-alpine as client
|
FROM node:18-alpine as client
|
||||||
WORKDIR /tmp
|
WORKDIR /tmp
|
||||||
RUN npm install -g pnpm@7
|
RUN npm install -g pnpm@8
|
||||||
COPY ./frontend ./
|
COPY . .
|
||||||
RUN pnpm install
|
RUN pnpm install --frozen-lockfile
|
||||||
RUN pnpm exec svelte-kit sync
|
|
||||||
RUN pnpm run build
|
RUN pnpm run build
|
||||||
|
|
||||||
|
|
||||||
# BACKEND
|
# BACKEND
|
||||||
FROM rust:1.61-alpine as backend
|
FROM rust:1.69-alpine as backend
|
||||||
WORKDIR /tmp
|
WORKDIR /tmp
|
||||||
RUN apk add libc-dev openssl-dev alpine-sdk
|
RUN apk add libc-dev openssl-dev alpine-sdk
|
||||||
COPY ./backend/Cargo.* ./
|
COPY ./packages/backend/Cargo.* ./
|
||||||
RUN cargo fetch
|
RUN cargo fetch
|
||||||
COPY ./backend ./
|
COPY ./packages/backend ./
|
||||||
RUN cargo build --release
|
RUN cargo build --release
|
||||||
|
|
||||||
|
|
||||||
@@ -22,8 +21,8 @@ RUN cargo build --release
|
|||||||
FROM alpine
|
FROM alpine
|
||||||
WORKDIR /app
|
WORKDIR /app
|
||||||
COPY --from=backend /tmp/target/release/cryptgeon .
|
COPY --from=backend /tmp/target/release/cryptgeon .
|
||||||
COPY --from=client /tmp/build ./frontend
|
COPY --from=client /tmp/packages/frontend/build ./frontend
|
||||||
ENV FRONTEND_PATH="./frontend"
|
ENV FRONTEND_PATH="./frontend"
|
||||||
ENV REDIS="redis://redis/"
|
ENV REDIS="redis://redis/"
|
||||||
EXPOSE 5000
|
EXPOSE 8000
|
||||||
ENTRYPOINT [ "/app/cryptgeon" ]
|
ENTRYPOINT [ "/app/cryptgeon" ]
|
||||||
|
80
README.md
@@ -24,9 +24,9 @@ _cryptgeon_ is a secure, open source sharing note or file service inspired by [_
|
|||||||
>
|
>
|
||||||
> Thanks to [Lokalise](https://lokalise.com/) for providing free access to their platform.
|
> Thanks to [Lokalise](https://lokalise.com/) for providing free access to their platform.
|
||||||
|
|
||||||
## Demo
|
## Live Service / Demo
|
||||||
|
|
||||||
Check out the demo and see for yourself https://cryptgeon.nicco.io.
|
Check out the live service / demo and see for yourself [cryptgeon.org](https://cryptgeon.org)
|
||||||
|
|
||||||
## Features
|
## Features
|
||||||
|
|
||||||
@@ -50,15 +50,18 @@ of the notes even if it tried to.
|
|||||||
|
|
||||||
## Environment Variables
|
## Environment Variables
|
||||||
|
|
||||||
| Variable | Default | Description |
|
| Variable | Default | Description |
|
||||||
| ---------------- | ---------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
|
| ------------------ | ---------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
|
||||||
| `REDIS` | `redis://redis/` | Redis URL to connect to. |
|
| `REDIS` | `redis://redis/` | Redis URL to connect to. [According to format](https://docs.rs/redis/latest/redis/#connection-parameters) |
|
||||||
| `SIZE_LIMIT` | `1 KiB` | Max size for body. Accepted values according to [byte-unit](https://docs.rs/byte-unit/). <br> `512 MiB` is the maximum allowed. <br> The frontend will show that number including the ~35% encoding overhead. |
|
| `SIZE_LIMIT` | `1 KiB` | Max size for body. Accepted values according to [byte-unit](https://docs.rs/byte-unit/). <br> `512 MiB` is the maximum allowed. <br> The frontend will show that number including the ~35% encoding overhead. |
|
||||||
| `MAX_VIEWS` | `100` | Maximal number of views. |
|
| `MAX_VIEWS` | `100` | Maximal number of views. |
|
||||||
| `MAX_EXPIRATION` | `360` | Maximal expiration in minutes. |
|
| `MAX_EXPIRATION` | `360` | Maximal expiration in minutes. |
|
||||||
| `ALLOW_ADVANCED` | `true` | Allow custom configuration. If set to `false` all notes will be one view only. |
|
| `ALLOW_ADVANCED` | `true` | Allow custom configuration. If set to `false` all notes will be one view only. |
|
||||||
| `THEME_IMAGE` | `""` | Custom image for replacing the logo. Must be publicly reachable |
|
| `VERBOSITY` | `warn` | Verbosity level for the backend. [Possible values](https://docs.rs/env_logger/latest/env_logger/#enabling-logging) are: `error`, `warn`, `info`, `debug`, `trace` |
|
||||||
| `THEME_TEXT` | `""` | Custom text for replacing the description below the logo |
|
| `THEME_IMAGE` | `""` | Custom image for replacing the logo. Must be publicly reachable |
|
||||||
|
| `THEME_TEXT` | `""` | Custom text for replacing the description below the logo |
|
||||||
|
| `THEME_PAGE_TITLE` | `""` | Custom text the page title |
|
||||||
|
| `THEME_FAVICON` | `""` | Custom url for the favicon. Must be publicly reachable |
|
||||||
|
|
||||||
## Deployment
|
## Deployment
|
||||||
|
|
||||||
@@ -76,15 +79,19 @@ version: '3.8'
|
|||||||
services:
|
services:
|
||||||
redis:
|
redis:
|
||||||
image: redis:7-alpine
|
image: redis:7-alpine
|
||||||
|
# Set a size limit. See link below on how to customise.
|
||||||
|
# https://redis.io/docs/manual/eviction/
|
||||||
|
command: redis-server --maxmemory 1gb --maxmemory-policy allkeys-lru
|
||||||
|
|
||||||
app:
|
app:
|
||||||
image: cupcakearmy/cryptgeon:latest
|
image: cupcakearmy/cryptgeon:latest
|
||||||
depends_on:
|
depends_on:
|
||||||
- redis
|
- redis
|
||||||
environment:
|
environment:
|
||||||
|
# Size limit for a single note.
|
||||||
SIZE_LIMIT: 4 MiB
|
SIZE_LIMIT: 4 MiB
|
||||||
ports:
|
ports:
|
||||||
- 80:5000
|
- 80:8000
|
||||||
```
|
```
|
||||||
|
|
||||||
### NGINX Proxy
|
### NGINX Proxy
|
||||||
@@ -93,39 +100,21 @@ See the [examples/nginx](https://github.com/cupcakearmy/cryptgeon/tree/main/exam
|
|||||||
|
|
||||||
### Traefik 2
|
### Traefik 2
|
||||||
|
|
||||||
Assumptions:
|
See the [examples/traefik](https://github.com/cupcakearmy/cryptgeon/tree/main/examples/traefik) folder.
|
||||||
|
|
||||||
- External proxy docker network `proxy`
|
### Scratch
|
||||||
- A certificate resolver `le`
|
|
||||||
- A https entrypoint `secure`
|
|
||||||
- Domain name `example.org`
|
|
||||||
|
|
||||||
```yaml
|
See the [examples/scratch](https://github.com/cupcakearmy/cryptgeon/tree/main/examples/scratch) folder. There you'll find a guide how to setup a server and install cryptgeon from scratch.
|
||||||
version: '3.8'
|
|
||||||
|
|
||||||
networks:
|
### Synology
|
||||||
proxy:
|
|
||||||
external: true
|
|
||||||
|
|
||||||
services:
|
There is a [guide](https://mariushosting.com/how-to-install-cryptgeon-on-your-synology-nas/) you can follow.
|
||||||
redis:
|
|
||||||
image: redis:7-alpine
|
|
||||||
restart: unless-stopped
|
|
||||||
|
|
||||||
app:
|
### YouTube Guides
|
||||||
image: cupcakearmy/cryptgeon:latest
|
|
||||||
restart: unless-stopped
|
- English by [Webnestify](https://www.youtube.com/watch?v=XAyD42I7wyI)
|
||||||
depends_on:
|
- English by [DB Tech](https://www.youtube.com/watch?v=S0jx7wpOfNM) [Previous Video](https://www.youtube.com/watch?v=JhpIatD06vE)
|
||||||
- redis
|
- German by [ApfelCast](https://www.youtube.com/watch?v=84ZMbE9AkHg)
|
||||||
networks:
|
|
||||||
- default
|
|
||||||
- proxy
|
|
||||||
labels:
|
|
||||||
- traefik.enable=true
|
|
||||||
- traefik.http.routers.cryptgeon.rule=Host(`example.org`)
|
|
||||||
- traefik.http.routers.cryptgeon.entrypoints=secure
|
|
||||||
- traefik.http.routers.cryptgeon.tls.certresolver=le
|
|
||||||
```
|
|
||||||
|
|
||||||
## Development
|
## Development
|
||||||
|
|
||||||
@@ -150,9 +139,6 @@ cargo install cargo-watch
|
|||||||
|
|
||||||
Make sure you have docker running.
|
Make sure you have docker running.
|
||||||
|
|
||||||
> If you are on `macOS` you might need to disable AirPlay Receiver as it uses port 5000 (So stupid...)
|
|
||||||
> https://developer.apple.com/forums/thread/682332
|
|
||||||
|
|
||||||
```bash
|
```bash
|
||||||
pnpm run dev
|
pnpm run dev
|
||||||
```
|
```
|
||||||
@@ -170,15 +156,19 @@ You can see the app under [localhost:1234](http://localhost:1234).
|
|||||||
Tests are end to end tests written with Playwright.
|
Tests are end to end tests written with Playwright.
|
||||||
|
|
||||||
```sh
|
```sh
|
||||||
pnpm run ci:prepare
|
pnpm run test:prepare
|
||||||
docker compose up redis -d
|
docker compose up redis -d
|
||||||
pnpm run ci:server
|
pnpm run test:server
|
||||||
|
|
||||||
# In another terminal.
|
# In another terminal.
|
||||||
# Use the test or test:local script. The local version only runs in one browser for quicker development.
|
# Use the test or test:local script. The local version only runs in one browser for quicker development.
|
||||||
pnpm run test:local
|
pnpm run test:local
|
||||||
```
|
```
|
||||||
|
|
||||||
|
## Security
|
||||||
|
|
||||||
|
Please refer to the security section [here](./SECURITY.md).
|
||||||
|
|
||||||
###### Attributions
|
###### Attributions
|
||||||
|
|
||||||
- Test data:
|
- Test data:
|
||||||
|
@@ -26,7 +26,7 @@ _加密鸽_ 是一个受 [_PrivNote_](https://privnote.com)项目启发的安全
|
|||||||
|
|
||||||
## 演示示例
|
## 演示示例
|
||||||
|
|
||||||
查看加密鸽的在线演示 demo: https://cryptgeon.nicco.io.
|
查看加密鸽的在线演示 demo: [cryptgeon.org](https://cryptgeon.org)
|
||||||
|
|
||||||
## 功能
|
## 功能
|
||||||
|
|
||||||
@@ -49,11 +49,13 @@ _加密鸽_ 是一个受 [_PrivNote_](https://privnote.com)项目启发的安全
|
|||||||
|
|
||||||
| 变量名称 | 默认值 | 描述 |
|
| 变量名称 | 默认值 | 描述 |
|
||||||
| ----------------- | ---------------- | --------------------------------------------------------------------------------- |
|
| ----------------- | ---------------- | --------------------------------------------------------------------------------- |
|
||||||
| `REDIS` | `redis://redis/` | Redis URL to connect to. |
|
| `REDIS` | `redis://redis/` | Redis 连接 URL。 |
|
||||||
| `SIZE_LIMIT` | `1 KiB` | 最大请求体(body)限制。有关支持的数值请查看 [字节单位](https://docs.rs/byte-unit/) |
|
| `SIZE_LIMIT` | `1 KiB` | 最大请求体(body)限制。有关支持的数值请查看 [字节单位](https://docs.rs/byte-unit/) |
|
||||||
| `MAX_VIEWS` | `100` | 密信最多查看次数限制 |
|
| `MAX_VIEWS` | `100` | 密信最多查看次数限制 |
|
||||||
| ` MAX_EXPIRATION` | `360` | 密信最长过期时间限制(分钟) |
|
| ` MAX_EXPIRATION` | `360` | 密信最长过期时间限制(分钟) |
|
||||||
| `ALLOW_ADVANCED` | `true` | 是否允许自定义设置,该项如果设为`false`,则不会显示自定义设置模块 |
|
| `ALLOW_ADVANCED` | `true` | 是否允许自定义设置,该项如果设为`false`,则不会显示自定义设置模块 |
|
||||||
|
| `THEME_IMAGE` | `""` | 自定义 Logo 图片,你在这里填写的的图片链接必须是可以公开访问的。 |
|
||||||
|
| `THEME_TEXT` | `""` | 自定义在 Logo 下方的文本。 |
|
||||||
|
|
||||||
## 部署
|
## 部署
|
||||||
|
|
||||||
@@ -80,7 +82,7 @@ services:
|
|||||||
environment:
|
environment:
|
||||||
SIZE_LIMIT: 4 MiB
|
SIZE_LIMIT: 4 MiB
|
||||||
ports:
|
ports:
|
||||||
- 80:5000
|
- 80:8000
|
||||||
```
|
```
|
||||||
|
|
||||||
### NGINX 反向代理
|
### NGINX 反向代理
|
||||||
@@ -137,7 +139,7 @@ services:
|
|||||||
pnpm install
|
pnpm install
|
||||||
pnpm --prefix frontend install
|
pnpm --prefix frontend install
|
||||||
|
|
||||||
# Also you need cargo watch if you don't already have it installed.
|
# 你还需要安装CargoWatch.
|
||||||
# https://lib.rs/crates/cargo-watch
|
# https://lib.rs/crates/cargo-watch
|
||||||
cargo install cargo-watch
|
cargo install cargo-watch
|
||||||
```
|
```
|
||||||
@@ -146,9 +148,6 @@ cargo install cargo-watch
|
|||||||
|
|
||||||
确保你的 Docker 正在运行
|
确保你的 Docker 正在运行
|
||||||
|
|
||||||
> If you are on `macOS` you might need to disable AirPlay Receiver as it uses port 5000 (So stupid...)
|
|
||||||
> https://developer.apple.com/forums/thread/682332
|
|
||||||
|
|
||||||
```bash
|
```bash
|
||||||
pnpm run dev
|
pnpm run dev
|
||||||
```
|
```
|
||||||
@@ -161,6 +160,25 @@ pnpm run dev
|
|||||||
|
|
||||||
你可以通过 1234 端口进入该应用,即 [localhost:1234](http://localhost:1234).
|
你可以通过 1234 端口进入该应用,即 [localhost:1234](http://localhost:1234).
|
||||||
|
|
||||||
|
## 测试
|
||||||
|
|
||||||
|
这些测试是用 Playwright 实现的一些端到端测试用例。
|
||||||
|
|
||||||
|
```sh
|
||||||
|
pnpm run test:prepare
|
||||||
|
docker compose up redis -d
|
||||||
|
pnpm run test:server
|
||||||
|
|
||||||
|
# 在另一个终端中:
|
||||||
|
# 使用test或者test:local script。为了更快的开发,本地版本只会在一个浏览器中运行。
|
||||||
|
pnpm run test:local
|
||||||
|
```
|
||||||
|
|
||||||
###### Attributions
|
###### Attributions
|
||||||
|
|
||||||
本项目所使用的图标由<a href="https://www.flaticon.com/" title="Flaticon">www.flaticon.com 的<a href="https://www.freepik.com" title="Freepik">freepik</a>制作</a>
|
- 测试数据:
|
||||||
|
- 测试文本 [Nietzsche Ipsum](https://nietzsche-ipsum.com/)
|
||||||
|
- [AES Paper](https://www.cs.miami.edu/home/burt/learning/Csc688.012/rijndael/rijndael_doc_V2.pdf)
|
||||||
|
- [Unsplash Pictures](https://unsplash.com/)
|
||||||
|
- 加载动画由 [Nikhil Krishnan](https://codepen.io/nikhil8krishnan/pen/rVoXJa) 提供
|
||||||
|
- 图标由来自 <a href="https://www.flaticon.com/" title="Flaticon">www.flaticon.com</a> 的 <a href="https://www.freepik.com" title="Freepik">freepik</a> 提供
|
||||||
|
18
SECURITY.md
Normal file
@@ -0,0 +1,18 @@
|
|||||||
|
# Security Policy
|
||||||
|
|
||||||
|
## Supported Versions
|
||||||
|
|
||||||
|
Please ensure that you are using the latest major version available.
|
||||||
|
|
||||||
|
| Version | Supported |
|
||||||
|
| ------- | --------- |
|
||||||
|
| 2.x | ✅ |
|
||||||
|
| < 1.x | ❌ |
|
||||||
|
|
||||||
|
## Reporting a vulnerability
|
||||||
|
|
||||||
|
_cryptgeon_ has a full disclosure vulnerability policy.
|
||||||
|
Report any bug / vulnerability directly to the [issue tracker](https://github.com/cupcakearmy/cryptgeon/issues).
|
||||||
|
Please do NOT attempt to report any security vulnerability in this code privately to anybody.
|
||||||
|
|
||||||
|
> Shamefully copied of the [ring security section](https://github.com/briansmith/ring#bug-reporting).
|
23
cryptgeon.code-workspace
Normal file
@@ -0,0 +1,23 @@
|
|||||||
|
{
|
||||||
|
"folders": [
|
||||||
|
{
|
||||||
|
"path": "."
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"path": "packages/backend"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"path": "packages/frontend"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"path": "packages/cli"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"path": "packages/shared"
|
||||||
|
}
|
||||||
|
],
|
||||||
|
"settings": {
|
||||||
|
"i18n-ally.localesPaths": ["packages/frontend/locales"],
|
||||||
|
"cSpell.words": ["cryptgeon"]
|
||||||
|
}
|
||||||
|
}
|
@@ -11,9 +11,8 @@ services:
|
|||||||
|
|
||||||
app:
|
app:
|
||||||
build: .
|
build: .
|
||||||
|
env_file: .dev.env
|
||||||
depends_on:
|
depends_on:
|
||||||
- redis
|
- redis
|
||||||
environment:
|
|
||||||
SIZE_LIMIT: 128 MiB
|
|
||||||
ports:
|
ports:
|
||||||
- 1234:5000
|
- 1234:8000
|
18
docker-compose.yaml
Normal file
@@ -0,0 +1,18 @@
|
|||||||
|
version: '3.8'
|
||||||
|
|
||||||
|
services:
|
||||||
|
redis:
|
||||||
|
image: redis:7-alpine
|
||||||
|
# Set a size limit. See link below on how to customise.
|
||||||
|
# https://redis.io/docs/manual/eviction/
|
||||||
|
# command: redis-server --maxmemory 1gb --maxmemory-policy allkeys-lru
|
||||||
|
|
||||||
|
app:
|
||||||
|
image: cupcakearmy/cryptgeon:latest
|
||||||
|
depends_on:
|
||||||
|
- redis
|
||||||
|
environment:
|
||||||
|
# Size limit for a single note.
|
||||||
|
SIZE_LIMIT: 4 MiB
|
||||||
|
ports:
|
||||||
|
- 80:8000
|
@@ -4,7 +4,7 @@ server {
|
|||||||
server_name _;
|
server_name _;
|
||||||
|
|
||||||
location / {
|
location / {
|
||||||
proxy_pass http://app:5000/;
|
proxy_pass http://app:8000/;
|
||||||
proxy_set_header Host $host;
|
proxy_set_header Host $host;
|
||||||
proxy_set_header X-Real-IP $remote_addr;
|
proxy_set_header X-Real-IP $remote_addr;
|
||||||
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
|
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
|
||||||
|
@@ -20,7 +20,7 @@ server {
|
|||||||
ssl_trusted_certificate /path/to/fullchain.pem;
|
ssl_trusted_certificate /path/to/fullchain.pem;
|
||||||
|
|
||||||
location / {
|
location / {
|
||||||
proxy_pass http://app:5000/;
|
proxy_pass http://app:8000/;
|
||||||
proxy_set_header Host $host;
|
proxy_set_header Host $host;
|
||||||
proxy_set_header X-Real-IP $remote_addr;
|
proxy_set_header X-Real-IP $remote_addr;
|
||||||
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
|
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
|
||||||
|
36
examples/traefik/README.md
Normal file
@@ -0,0 +1,36 @@
|
|||||||
|
# Install Cryptgeon with Traefik
|
||||||
|
|
||||||
|
Assumptions:
|
||||||
|
|
||||||
|
- Traefik 2 installed.
|
||||||
|
- External proxy docker network `proxy`.
|
||||||
|
- A certificate resolver `le`.
|
||||||
|
- A https entrypoint `secure`.
|
||||||
|
- Domain name `example.org`.
|
||||||
|
|
||||||
|
```yaml
|
||||||
|
version: '3.8'
|
||||||
|
|
||||||
|
networks:
|
||||||
|
proxy:
|
||||||
|
external: true
|
||||||
|
|
||||||
|
services:
|
||||||
|
redis:
|
||||||
|
image: redis:7-alpine
|
||||||
|
restart: unless-stopped
|
||||||
|
|
||||||
|
app:
|
||||||
|
image: cupcakearmy/cryptgeon:latest
|
||||||
|
restart: unless-stopped
|
||||||
|
depends_on:
|
||||||
|
- redis
|
||||||
|
networks:
|
||||||
|
- default
|
||||||
|
- proxy
|
||||||
|
labels:
|
||||||
|
- traefik.enable=true
|
||||||
|
- traefik.http.routers.cryptgeon.rule=Host(`example.org`)
|
||||||
|
- traefik.http.routers.cryptgeon.entrypoints=secure
|
||||||
|
- traefik.http.routers.cryptgeon.tls.certresolver=le
|
||||||
|
```
|
@@ -1,5 +0,0 @@
|
|||||||
.DS_Store
|
|
||||||
node_modules
|
|
||||||
/.svelte
|
|
||||||
/build
|
|
||||||
/functions
|
|
@@ -1 +0,0 @@
|
|||||||
engine-strict=true
|
|
@@ -1,50 +0,0 @@
|
|||||||
{
|
|
||||||
"common": {
|
|
||||||
"note": "密信",
|
|
||||||
"file": "上传文件",
|
|
||||||
"advanced": "高级设置",
|
|
||||||
"create": "创建",
|
|
||||||
"loading": "加载中",
|
|
||||||
"mode": "模式",
|
|
||||||
"views": "{n, plural, =0 {可查看次数} =1 {1 次查看} other {# 次查看}}",
|
|
||||||
"minutes": "{n, plural, =0 {有效期(分钟)} =1 {1 分钟} other {# 分钟}}",
|
|
||||||
"max": "最大值",
|
|
||||||
"share_link": "分享链接",
|
|
||||||
"copy_clipboard": "复制到剪切版",
|
|
||||||
"copied_to_clipboard": "已复制到剪切板",
|
|
||||||
"encrypting": "加密",
|
|
||||||
"decrypting": "解密",
|
|
||||||
"uploading": "上传",
|
|
||||||
"downloading": "下载"
|
|
||||||
},
|
|
||||||
"home": {
|
|
||||||
"intro": "一键轻松发送 <i>完全加密的</i> 密信或者文件。只需创建一个密信然后分享链接。",
|
|
||||||
"explanation": "该密信会在{type}后失效。",
|
|
||||||
"new_note": "新建密信",
|
|
||||||
"new_note_notice": "<b>可用性警示:</b><br />由于加密鸽的所有数据是全部保存在内存中的,所以如果加密鸽的可用内存被用光了那么它将会删除最早的密信以释放内存,因此不保证该密信的可用性。<br />(一般情况下是您应该是不会遇到这个问题,只是警示一下。)",
|
|
||||||
"errors": {
|
|
||||||
"note_to_big": "无法创建密信,这个密信太大了!",
|
|
||||||
"note_error": "无法创建密信,请再试一遍。",
|
|
||||||
"max": "最大文件大小: {n}",
|
|
||||||
"empty_content": "密信为空!"
|
|
||||||
},
|
|
||||||
"messages": {
|
|
||||||
"note_created": "注释创建。"
|
|
||||||
}
|
|
||||||
},
|
|
||||||
"show": {
|
|
||||||
"errors": {
|
|
||||||
"not_found": "该密信无法被找到或者它已经被删除了!",
|
|
||||||
"decryption_failed": "密钥错误!您可能不小心粘贴了一个不完整的链接或者正在尝试破解该密信!但无论如何,该密信已被销毁!",
|
|
||||||
"unsupported_type": "不支持的票据类型。"
|
|
||||||
},
|
|
||||||
"explanation": "点击下方的按钮可以查看密信,如果它到达了限制将会被删除",
|
|
||||||
"show_note": "查看密信",
|
|
||||||
"warning_will_not_see_again": "您将<b>无法</b>再次查看该密信",
|
|
||||||
"download_all": "下载全部"
|
|
||||||
},
|
|
||||||
"file_upload": {
|
|
||||||
"selected_files": "已选中的文件",
|
|
||||||
"no_files_selected": "没有文件被选中"
|
|
||||||
}
|
|
||||||
}
|
|
@@ -1,36 +0,0 @@
|
|||||||
{
|
|
||||||
"private": true,
|
|
||||||
"scripts": {
|
|
||||||
"dev": "vite dev",
|
|
||||||
"build": "vite build",
|
|
||||||
"preview": "vite preview --port 3000",
|
|
||||||
"check": "svelte-check --tsconfig tsconfig.json",
|
|
||||||
"licenses": "license-checker --summary > licenses.csv",
|
|
||||||
"locale:download": "node scripts/locale.js"
|
|
||||||
},
|
|
||||||
"type": "module",
|
|
||||||
"devDependencies": {
|
|
||||||
"@lokalise/node-api": "^7.3.1",
|
|
||||||
"@sveltejs/adapter-static": "^1.0.0-next.38",
|
|
||||||
"@sveltejs/kit": "^1.0.0-next.384",
|
|
||||||
"@types/dompurify": "^2.3.3",
|
|
||||||
"@types/file-saver": "^2.0.5",
|
|
||||||
"@zerodevx/svelte-toast": "^0.7.2",
|
|
||||||
"adm-zip": "^0.5.9",
|
|
||||||
"dotenv": "^16.0.1",
|
|
||||||
"svelte": "^3.49.0",
|
|
||||||
"svelte-check": "^2.8.0",
|
|
||||||
"svelte-intl-precompile": "^0.10.1",
|
|
||||||
"svelte-preprocess": "^4.10.7",
|
|
||||||
"tslib": "^2.4.0",
|
|
||||||
"typescript": "^4.7.4",
|
|
||||||
"vite": "^3.0.2"
|
|
||||||
},
|
|
||||||
"dependencies": {
|
|
||||||
"@fontsource/fira-mono": "^4.5.8",
|
|
||||||
"copy-to-clipboard": "^3.3.1",
|
|
||||||
"dompurify": "^2.3.10",
|
|
||||||
"file-saver": "^2.0.5",
|
|
||||||
"pretty-bytes": "^5.6.0"
|
|
||||||
}
|
|
||||||
}
|
|
1615
frontend/pnpm-lock.yaml
generated
3
frontend/src/global.d.ts
vendored
@@ -1,3 +0,0 @@
|
|||||||
/// <reference types="@sveltejs/kit" />
|
|
||||||
/// <reference types="svelte" />
|
|
||||||
/// <reference types="vite/client" />
|
|
@@ -1,61 +0,0 @@
|
|||||||
import type { EncryptedFileDTO, FileDTO } from './api'
|
|
||||||
import { Crypto } from './crypto'
|
|
||||||
|
|
||||||
abstract class CryptAdapter<T> {
|
|
||||||
abstract encrypt(plaintext: T, key: CryptoKey): Promise<string>
|
|
||||||
abstract decrypt(ciphertext: string, key: CryptoKey): Promise<T>
|
|
||||||
}
|
|
||||||
|
|
||||||
class CryptTextAdapter implements CryptAdapter<string> {
|
|
||||||
async encrypt(plaintext: string, key: CryptoKey) {
|
|
||||||
return await Crypto.encrypt(new TextEncoder().encode(plaintext), key)
|
|
||||||
}
|
|
||||||
async decrypt(ciphertext: string, key: CryptoKey) {
|
|
||||||
const plaintext = await Crypto.decrypt(ciphertext, key)
|
|
||||||
return new TextDecoder().decode(plaintext)
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
class CryptBlobAdapter implements CryptAdapter<Blob> {
|
|
||||||
async encrypt(plaintext: Blob, key: CryptoKey) {
|
|
||||||
return await Crypto.encrypt(await plaintext.arrayBuffer(), key)
|
|
||||||
}
|
|
||||||
|
|
||||||
async decrypt(ciphertext: string, key: CryptoKey) {
|
|
||||||
const plaintext = await Crypto.decrypt(ciphertext, key)
|
|
||||||
return new Blob([plaintext], { type: 'application/octet-stream' })
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
class CryptFilesAdapter implements CryptAdapter<FileDTO[]> {
|
|
||||||
async encrypt(plaintext: FileDTO[], key: CryptoKey) {
|
|
||||||
const adapter = new CryptBlobAdapter()
|
|
||||||
const data: Promise<EncryptedFileDTO>[] = plaintext.map(async (file) => ({
|
|
||||||
name: file.name,
|
|
||||||
size: file.size,
|
|
||||||
type: file.type,
|
|
||||||
contents: await adapter.encrypt(file.contents, key),
|
|
||||||
}))
|
|
||||||
return JSON.stringify(await Promise.all(data))
|
|
||||||
}
|
|
||||||
|
|
||||||
async decrypt(ciphertext: string, key: CryptoKey) {
|
|
||||||
const adapter = new CryptBlobAdapter()
|
|
||||||
const data: EncryptedFileDTO[] = JSON.parse(ciphertext)
|
|
||||||
const files: FileDTO[] = await Promise.all(
|
|
||||||
data.map(async (file) => ({
|
|
||||||
name: file.name,
|
|
||||||
size: file.size,
|
|
||||||
type: file.type,
|
|
||||||
contents: await adapter.decrypt(file.contents, key),
|
|
||||||
}))
|
|
||||||
)
|
|
||||||
return files
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
export const Adapters = {
|
|
||||||
Text: new CryptTextAdapter(),
|
|
||||||
Blob: new CryptBlobAdapter(),
|
|
||||||
Files: new CryptFilesAdapter(),
|
|
||||||
}
|
|
@@ -1,78 +0,0 @@
|
|||||||
export type NoteMeta = { type: 'text' | 'file' }
|
|
||||||
|
|
||||||
export type Note = {
|
|
||||||
contents: string
|
|
||||||
meta: NoteMeta
|
|
||||||
views?: number
|
|
||||||
expiration?: number
|
|
||||||
}
|
|
||||||
export type NoteInfo = {}
|
|
||||||
export type NotePublic = Pick<Note, 'contents' | 'meta'>
|
|
||||||
export type NoteCreate = Omit<Note, 'meta'> & { meta: string }
|
|
||||||
|
|
||||||
export type FileDTO = Pick<File, 'name' | 'size' | 'type'> & {
|
|
||||||
contents: Blob
|
|
||||||
}
|
|
||||||
|
|
||||||
export type EncryptedFileDTO = Omit<FileDTO, 'contents'> & {
|
|
||||||
contents: string
|
|
||||||
}
|
|
||||||
|
|
||||||
type CallOptions = {
|
|
||||||
url: string
|
|
||||||
method: string
|
|
||||||
body?: any
|
|
||||||
}
|
|
||||||
|
|
||||||
export class PayloadToLargeError extends Error {}
|
|
||||||
|
|
||||||
export async function call(options: CallOptions) {
|
|
||||||
const response = await fetch('/api/' + options.url, {
|
|
||||||
method: options.method,
|
|
||||||
body: options.body === undefined ? undefined : JSON.stringify(options.body),
|
|
||||||
mode: 'cors',
|
|
||||||
headers: {
|
|
||||||
'Content-Type': 'application/json',
|
|
||||||
},
|
|
||||||
})
|
|
||||||
|
|
||||||
if (!response.ok) {
|
|
||||||
if (response.status === 413) throw new PayloadToLargeError()
|
|
||||||
else throw new Error('API call failed')
|
|
||||||
}
|
|
||||||
return response.json()
|
|
||||||
}
|
|
||||||
|
|
||||||
export async function create(note: Note) {
|
|
||||||
const { meta, ...rest } = note
|
|
||||||
const body: NoteCreate = {
|
|
||||||
...rest,
|
|
||||||
meta: JSON.stringify(meta),
|
|
||||||
}
|
|
||||||
const data = await call({
|
|
||||||
url: 'notes/',
|
|
||||||
method: 'post',
|
|
||||||
body,
|
|
||||||
})
|
|
||||||
return data as { id: string }
|
|
||||||
}
|
|
||||||
|
|
||||||
export async function get(id: string): Promise<NotePublic> {
|
|
||||||
const data = await call({
|
|
||||||
url: `notes/${id}`,
|
|
||||||
method: 'delete',
|
|
||||||
})
|
|
||||||
const { contents, meta } = data
|
|
||||||
return {
|
|
||||||
contents,
|
|
||||||
meta: JSON.parse(meta) as NoteMeta,
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
export async function info(id: string): Promise<NoteInfo> {
|
|
||||||
const data = await call({
|
|
||||||
url: `notes/${id}`,
|
|
||||||
method: 'get',
|
|
||||||
})
|
|
||||||
return data
|
|
||||||
}
|
|
@@ -1,97 +0,0 @@
|
|||||||
export class Hex {
|
|
||||||
static encode(buffer: ArrayBuffer): string {
|
|
||||||
let s = ''
|
|
||||||
for (const i of new Uint8Array(buffer)) {
|
|
||||||
s += i.toString(16).padStart(2, '0')
|
|
||||||
}
|
|
||||||
return s
|
|
||||||
}
|
|
||||||
|
|
||||||
static decode(s: string): ArrayBuffer {
|
|
||||||
const size = s.length / 2
|
|
||||||
const buffer = new Uint8Array(size)
|
|
||||||
for (let i = 0; i < size; i++) {
|
|
||||||
const idx = i * 2
|
|
||||||
const segment = s.slice(idx, idx + 2)
|
|
||||||
buffer[i] = parseInt(segment, 16)
|
|
||||||
}
|
|
||||||
return buffer
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
export class ArrayBufferUtils {
|
|
||||||
static async toString(buffer: ArrayBuffer): Promise<string> {
|
|
||||||
const reader = new window.FileReader()
|
|
||||||
reader.readAsDataURL(new Blob([buffer]))
|
|
||||||
return new Promise((resolve) => {
|
|
||||||
reader.onloadend = () => resolve(reader.result as string)
|
|
||||||
})
|
|
||||||
}
|
|
||||||
|
|
||||||
static async fromString(s: string): Promise<ArrayBuffer> {
|
|
||||||
return fetch(s)
|
|
||||||
.then((r) => r.blob())
|
|
||||||
.then((b) => b.arrayBuffer())
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
export class Crypto {
|
|
||||||
private static ALG = 'AES-GCM'
|
|
||||||
private static DELIMITER = ':::'
|
|
||||||
|
|
||||||
public static getRandomBytes(size: number): Uint8Array {
|
|
||||||
return window.crypto.getRandomValues(new Uint8Array(size))
|
|
||||||
}
|
|
||||||
|
|
||||||
public static getKeyFromString(password: string) {
|
|
||||||
return window.crypto.subtle.importKey(
|
|
||||||
'raw',
|
|
||||||
new TextEncoder().encode(password),
|
|
||||||
'PBKDF2',
|
|
||||||
false,
|
|
||||||
['deriveBits', 'deriveKey']
|
|
||||||
)
|
|
||||||
}
|
|
||||||
public static async getDerivedForKey(key: CryptoKey, salt: ArrayBuffer) {
|
|
||||||
const iterations = 100_000
|
|
||||||
return window.crypto.subtle.deriveKey(
|
|
||||||
{
|
|
||||||
name: 'PBKDF2',
|
|
||||||
salt,
|
|
||||||
iterations,
|
|
||||||
hash: 'SHA-512',
|
|
||||||
},
|
|
||||||
key,
|
|
||||||
{ name: this.ALG, length: 256 },
|
|
||||||
true,
|
|
||||||
['encrypt', 'decrypt']
|
|
||||||
)
|
|
||||||
}
|
|
||||||
|
|
||||||
public static async encrypt(plaintext: ArrayBuffer, key: CryptoKey): Promise<string> {
|
|
||||||
const salt = this.getRandomBytes(16)
|
|
||||||
const derived = await this.getDerivedForKey(key, salt)
|
|
||||||
const iv = this.getRandomBytes(16)
|
|
||||||
const encrypted: ArrayBuffer = await window.crypto.subtle.encrypt(
|
|
||||||
{ name: this.ALG, iv },
|
|
||||||
derived,
|
|
||||||
plaintext
|
|
||||||
)
|
|
||||||
const data = [
|
|
||||||
Hex.encode(salt),
|
|
||||||
Hex.encode(iv),
|
|
||||||
await ArrayBufferUtils.toString(encrypted),
|
|
||||||
].join(this.DELIMITER)
|
|
||||||
return data
|
|
||||||
}
|
|
||||||
|
|
||||||
public static async decrypt(ciphertext: string, key: CryptoKey): Promise<ArrayBuffer> {
|
|
||||||
const splitted = ciphertext.split(this.DELIMITER)
|
|
||||||
const salt = Hex.decode(splitted[0])
|
|
||||||
const iv = Hex.decode(splitted[1])
|
|
||||||
const encrypted = await ArrayBufferUtils.fromString(splitted[2])
|
|
||||||
const derived = await this.getDerivedForKey(key, salt)
|
|
||||||
const plaintext = await window.crypto.subtle.decrypt({ name: this.ALG, iv }, derived, encrypted)
|
|
||||||
return plaintext
|
|
||||||
}
|
|
||||||
}
|
|
@@ -1,22 +0,0 @@
|
|||||||
import { call } from '$lib/api'
|
|
||||||
import { writable } from 'svelte/store'
|
|
||||||
|
|
||||||
export type Status = {
|
|
||||||
version: string
|
|
||||||
max_size: number
|
|
||||||
max_views: number
|
|
||||||
max_expiration: number
|
|
||||||
allow_advanced: boolean
|
|
||||||
theme_image: string
|
|
||||||
theme_text: string
|
|
||||||
}
|
|
||||||
|
|
||||||
export const status = writable<null | Status>(null)
|
|
||||||
|
|
||||||
export async function init() {
|
|
||||||
const data = await call({
|
|
||||||
url: 'status/',
|
|
||||||
method: 'get',
|
|
||||||
})
|
|
||||||
status.set(data)
|
|
||||||
}
|
|
@@ -1,12 +0,0 @@
|
|||||||
import adapter from '@sveltejs/adapter-static'
|
|
||||||
import preprocess from 'svelte-preprocess'
|
|
||||||
|
|
||||||
export default {
|
|
||||||
preprocess: preprocess(),
|
|
||||||
|
|
||||||
kit: {
|
|
||||||
adapter: adapter({
|
|
||||||
fallback: 'index.html',
|
|
||||||
}),
|
|
||||||
},
|
|
||||||
}
|
|
27
package.json
@@ -1,24 +1,21 @@
|
|||||||
{
|
{
|
||||||
|
"packageManager": "pnpm@8.4.0",
|
||||||
"scripts": {
|
"scripts": {
|
||||||
"dev:docker": "docker-compose up redis",
|
"dev:docker": "docker-compose -f docker-compose.dev.yaml up redis",
|
||||||
"dev:backend": "cd backend && cargo watch -x 'run --bin cryptgeon'",
|
"dev:packages": "pnpm --parallel run dev",
|
||||||
"dev:front": "pnpm --prefix frontend run dev",
|
|
||||||
"dev:proxy": "node proxy.mjs",
|
|
||||||
"dev": "run-p dev:*",
|
"dev": "run-p dev:*",
|
||||||
|
"docker:up": "docker compose -f docker-compose.dev.yaml up",
|
||||||
|
"docker:build": "docker compose -f docker-compose.dev.yaml build",
|
||||||
"test": "playwright test --project chrome firefox safari",
|
"test": "playwright test --project chrome firefox safari",
|
||||||
"test:local": "playwright test --project local",
|
"test:local": "playwright test --project local",
|
||||||
"ci:server": "cd backend && SIZE_LIMIT=10MiB LISTEN_ADDR=0.0.0.0:1234 cargo run",
|
"test:server": "run-s docker:up",
|
||||||
"ci:server:backend": "cd backend && cargo run",
|
"test:prepare": "run-p build docker:build",
|
||||||
"ci:server:front": "pnpm --prefix frontend run preview",
|
"build": "pnpm run --recursive --filter=!@cryptgeon/backend build"
|
||||||
"ci:server:proxy": "node proxy.mjs",
|
|
||||||
"ci:prepare": "run-p ci:prepare:*",
|
|
||||||
"ci:prepare:backend": "cd backend && cargo build",
|
|
||||||
"ci:prepare:front": "pnpm --prefix frontend install && pnpm --prefix frontend run build"
|
|
||||||
},
|
},
|
||||||
"devDependencies": {
|
"devDependencies": {
|
||||||
"@playwright/test": "^1.23.4",
|
"@playwright/test": "^1.33.0",
|
||||||
"@types/node": "16",
|
"@types/node": "^20.1.3",
|
||||||
"http-proxy": "^1.18.1",
|
"npm-run-all": "^4.1.5",
|
||||||
"npm-run-all": "^4.1.5"
|
"shelljs": "^0.8.5"
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
670
backend/Cargo.lock → packages/backend/Cargo.lock
generated
@@ -1,6 +1,6 @@
|
|||||||
[package]
|
[package]
|
||||||
name = "cryptgeon"
|
name = "cryptgeon"
|
||||||
version = "2.0.2"
|
version = "2.3.0-beta.4"
|
||||||
authors = ["cupcakearmy <hi@nicco.io>"]
|
authors = ["cupcakearmy <hi@nicco.io>"]
|
||||||
edition = "2021"
|
edition = "2021"
|
||||||
|
|
||||||
@@ -8,6 +8,9 @@ edition = "2021"
|
|||||||
name = "cryptgeon"
|
name = "cryptgeon"
|
||||||
path = "src/main.rs"
|
path = "src/main.rs"
|
||||||
|
|
||||||
|
[registries.crates-io]
|
||||||
|
protocol = "sparse"
|
||||||
|
|
||||||
# See more keys and their definitions at https://doc.rust-lang.org/cargo/reference/manifest.html
|
# See more keys and their definitions at https://doc.rust-lang.org/cargo/reference/manifest.html
|
||||||
|
|
||||||
[dependencies]
|
[dependencies]
|
10
packages/backend/package.json
Normal file
@@ -0,0 +1,10 @@
|
|||||||
|
{
|
||||||
|
"private": true,
|
||||||
|
"name": "@cryptgeon/backend",
|
||||||
|
"scripts": {
|
||||||
|
"dev": "cargo watch -x 'run --bin cryptgeon'",
|
||||||
|
"build": "cargo build --release",
|
||||||
|
"test:server": "SIZE_LIMIT=10MiB LISTEN_ADDR=0.0.0.0:1234 cargo run",
|
||||||
|
"test:prepare": "cargo build"
|
||||||
|
}
|
||||||
|
}
|
@@ -8,7 +8,8 @@ lazy_static! {
|
|||||||
pub static ref FRONTEND_PATH: String =
|
pub static ref FRONTEND_PATH: String =
|
||||||
std::env::var("FRONTEND_PATH").unwrap_or("../frontend/build".to_string());
|
std::env::var("FRONTEND_PATH").unwrap_or("../frontend/build".to_string());
|
||||||
pub static ref LISTEN_ADDR: String =
|
pub static ref LISTEN_ADDR: String =
|
||||||
std::env::var("LISTEN_ADDR").unwrap_or("0.0.0.0:5000".to_string());
|
std::env::var("LISTEN_ADDR").unwrap_or("0.0.0.0:8000".to_string());
|
||||||
|
pub static ref VERBOSITY: String = std::env::var("VERBOSITY").unwrap_or("warn".to_string());
|
||||||
}
|
}
|
||||||
|
|
||||||
// CONFIG
|
// CONFIG
|
||||||
@@ -41,4 +42,12 @@ lazy_static! {
|
|||||||
.unwrap_or("".to_string())
|
.unwrap_or("".to_string())
|
||||||
.parse()
|
.parse()
|
||||||
.unwrap();
|
.unwrap();
|
||||||
|
pub static ref THEME_PAGE_TITLE: String = std::env::var("THEME_PAGE_TITLE")
|
||||||
|
.unwrap_or("".to_string())
|
||||||
|
.parse()
|
||||||
|
.unwrap();
|
||||||
|
pub static ref THEME_FAVICON: String = std::env::var("THEME_FAVICON")
|
||||||
|
.unwrap_or("".to_string())
|
||||||
|
.parse()
|
||||||
|
.unwrap();
|
||||||
}
|
}
|
@@ -18,10 +18,11 @@ mod store;
|
|||||||
#[actix_web::main]
|
#[actix_web::main]
|
||||||
async fn main() -> std::io::Result<()> {
|
async fn main() -> std::io::Result<()> {
|
||||||
dotenv().ok();
|
dotenv().ok();
|
||||||
env_logger::init_from_env(env_logger::Env::new().default_filter_or("warning"));
|
env_logger::init_from_env(env_logger::Env::new().default_filter_or(config::VERBOSITY.as_str()));
|
||||||
|
|
||||||
return HttpServer::new(|| {
|
return HttpServer::new(|| {
|
||||||
App::new()
|
App::new()
|
||||||
.wrap(Logger::new("%a \"%r\" %s %b %T"))
|
.wrap(Logger::new("\"%r\" %s %b %T"))
|
||||||
.wrap(middleware::Compress::default())
|
.wrap(middleware::Compress::default())
|
||||||
.wrap(middleware::DefaultHeaders::default())
|
.wrap(middleware::DefaultHeaders::default())
|
||||||
.configure(size::init)
|
.configure(size::init)
|
@@ -49,7 +49,7 @@ async fn create(note: web::Json<Note>) -> impl Responder {
|
|||||||
}
|
}
|
||||||
match n.views {
|
match n.views {
|
||||||
Some(v) => {
|
Some(v) => {
|
||||||
if v > *config::MAX_VIEWS {
|
if v > *config::MAX_VIEWS || v < 1 {
|
||||||
return bad_req;
|
return bad_req;
|
||||||
}
|
}
|
||||||
n.expiration = None; // views overrides expiration
|
n.expiration = None; // views overrides expiration
|
@@ -7,5 +7,6 @@ pub fn init(cfg: &mut web::ServiceConfig) {
|
|||||||
let plain = web::PayloadConfig::default()
|
let plain = web::PayloadConfig::default()
|
||||||
.limit(*config::LIMIT)
|
.limit(*config::LIMIT)
|
||||||
.mimetype(mime::STAR_STAR);
|
.mimetype(mime::STAR_STAR);
|
||||||
|
// cfg.app_data(plain);
|
||||||
cfg.app_data(json).app_data(plain);
|
cfg.app_data(json).app_data(plain);
|
||||||
}
|
}
|
@@ -12,4 +12,6 @@ pub struct Status {
|
|||||||
// Theme
|
// Theme
|
||||||
pub theme_image: String,
|
pub theme_image: String,
|
||||||
pub theme_text: String,
|
pub theme_text: String,
|
||||||
|
pub theme_page_title: String,
|
||||||
|
pub theme_favicon: String,
|
||||||
}
|
}
|
@@ -13,6 +13,8 @@ async fn get_status() -> impl Responder {
|
|||||||
allow_advanced: *config::ALLOW_ADVANCED,
|
allow_advanced: *config::ALLOW_ADVANCED,
|
||||||
theme_image: config::THEME_IMAGE.to_string(),
|
theme_image: config::THEME_IMAGE.to_string(),
|
||||||
theme_text: config::THEME_TEXT.to_string(),
|
theme_text: config::THEME_TEXT.to_string(),
|
||||||
|
theme_page_title: config::THEME_PAGE_TITLE.to_string(),
|
||||||
|
theme_favicon: config::THEME_FAVICON.to_string()
|
||||||
});
|
});
|
||||||
}
|
}
|
||||||
|
|
37
packages/cli/package.json
Normal file
@@ -0,0 +1,37 @@
|
|||||||
|
{
|
||||||
|
"version": "2.3.0-beta.4",
|
||||||
|
"name": "cryptgeon",
|
||||||
|
"type": "module",
|
||||||
|
"engines": {
|
||||||
|
"node": ">=18"
|
||||||
|
},
|
||||||
|
"scripts": {
|
||||||
|
"dev": "./scripts/build.js --watch",
|
||||||
|
"build": "./scripts/build.js",
|
||||||
|
"package": "./scripts/package.js",
|
||||||
|
"bin": "run-s build package",
|
||||||
|
"prepublishOnly": "run-s build"
|
||||||
|
},
|
||||||
|
"main": "./dist/index.cjs",
|
||||||
|
"bin": {
|
||||||
|
"cryptgeon": "./dist/index.cjs"
|
||||||
|
},
|
||||||
|
"files": [
|
||||||
|
"dist"
|
||||||
|
],
|
||||||
|
"devDependencies": {
|
||||||
|
"@commander-js/extra-typings": "^10.0.3",
|
||||||
|
"@cryptgeon/shared": "workspace:*",
|
||||||
|
"@types/inquirer": "^9.0.3",
|
||||||
|
"@types/mime": "^3.0.1",
|
||||||
|
"@types/node": "^20.1.3",
|
||||||
|
"commander": "^10.0.1",
|
||||||
|
"esbuild": "^0.17.19",
|
||||||
|
"inquirer": "^9.2.2",
|
||||||
|
"mime": "^3.0.0",
|
||||||
|
"occulto": "^2.0.1",
|
||||||
|
"pkg": "^5.8.1",
|
||||||
|
"pretty-bytes": "^6.1.0",
|
||||||
|
"typescript": "^5.0.4"
|
||||||
|
}
|
||||||
|
}
|
17
packages/cli/scripts/build.js
Executable file
@@ -0,0 +1,17 @@
|
|||||||
|
#!/usr/bin/env node
|
||||||
|
|
||||||
|
import { build, context } from 'esbuild'
|
||||||
|
import pkg from '../package.json' assert { type: 'json' }
|
||||||
|
|
||||||
|
const options = {
|
||||||
|
entryPoints: ['./src/index.ts'],
|
||||||
|
bundle: true,
|
||||||
|
minify: true,
|
||||||
|
platform: 'node',
|
||||||
|
outfile: './dist/index.cjs',
|
||||||
|
define: { VERSION: `"${pkg.version}"` },
|
||||||
|
}
|
||||||
|
|
||||||
|
const watch = process.argv.slice(2)[0] === '--watch'
|
||||||
|
if (watch) (await context(options)).watch()
|
||||||
|
else await build(options)
|
17
packages/cli/scripts/package.js
Executable file
@@ -0,0 +1,17 @@
|
|||||||
|
#!/usr/bin/env node
|
||||||
|
|
||||||
|
import { exec } from 'pkg'
|
||||||
|
|
||||||
|
const targets = [
|
||||||
|
'node18-macos-arm64',
|
||||||
|
'node18-macos-x64',
|
||||||
|
'node18-linux-arm64',
|
||||||
|
'node18-linux-x64',
|
||||||
|
'node18-win-arm64',
|
||||||
|
'node18-win-x64',
|
||||||
|
]
|
||||||
|
|
||||||
|
for (const target of targets) {
|
||||||
|
console.log(`🚀 Building ${target}`)
|
||||||
|
await exec(['./dist/index.cjs', '--target', target, '--output', `./bin/${target.replace('node18', 'cryptgeon')}`])
|
||||||
|
}
|
62
packages/cli/src/download.ts
Normal file
@@ -0,0 +1,62 @@
|
|||||||
|
import { Adapters, get, info, setBase } from '@cryptgeon/shared'
|
||||||
|
import inquirer from 'inquirer'
|
||||||
|
import { access, constants, writeFile } from 'node:fs/promises'
|
||||||
|
import { basename, resolve } from 'node:path'
|
||||||
|
import { Hex } from 'occulto'
|
||||||
|
import pretty from 'pretty-bytes'
|
||||||
|
|
||||||
|
import { exit } from './utils'
|
||||||
|
|
||||||
|
export async function download(url: URL) {
|
||||||
|
setBase(url.origin)
|
||||||
|
const id = url.pathname.split('/')[2]
|
||||||
|
await info(id).catch(() => exit('Note does not exist or is expired'))
|
||||||
|
const note = await get(id)
|
||||||
|
|
||||||
|
const password = url.hash.slice(1)
|
||||||
|
const key = Hex.decode(password)
|
||||||
|
|
||||||
|
const couldNotDecrypt = () => exit('Could not decrypt note. Probably an invalid password')
|
||||||
|
switch (note.meta.type) {
|
||||||
|
case 'file':
|
||||||
|
const files = await Adapters.Files.decrypt(note.contents, key).catch(couldNotDecrypt)
|
||||||
|
if (!files) {
|
||||||
|
exit('No files found in note')
|
||||||
|
return
|
||||||
|
}
|
||||||
|
const { names } = await inquirer.prompt([
|
||||||
|
{
|
||||||
|
type: 'checkbox',
|
||||||
|
message: 'What files should be saved?',
|
||||||
|
name: 'names',
|
||||||
|
choices: files.map((file) => ({
|
||||||
|
value: file.name,
|
||||||
|
name: `${file.name} - ${file.type} - ${pretty(file.size, { binary: true })}`,
|
||||||
|
checked: true,
|
||||||
|
})),
|
||||||
|
},
|
||||||
|
])
|
||||||
|
|
||||||
|
const selected = files.filter((file) => names.includes(file.name))
|
||||||
|
|
||||||
|
if (!selected.length) exit('No files selected')
|
||||||
|
|
||||||
|
await Promise.all(
|
||||||
|
files.map(async (file) => {
|
||||||
|
let filename = resolve(file.name)
|
||||||
|
try {
|
||||||
|
// If exists -> prepend timestamp to not overwrite the current file
|
||||||
|
await access(filename, constants.R_OK)
|
||||||
|
filename = resolve(`${Date.now()}-${file.name}`)
|
||||||
|
} catch {}
|
||||||
|
await writeFile(filename, file.contents)
|
||||||
|
console.log(`Saved: ${basename(filename)}`)
|
||||||
|
})
|
||||||
|
)
|
||||||
|
break
|
||||||
|
case 'text':
|
||||||
|
const plaintext = await Adapters.Text.decrypt(note.contents, key).catch(couldNotDecrypt)
|
||||||
|
console.log(plaintext)
|
||||||
|
break
|
||||||
|
}
|
||||||
|
}
|
93
packages/cli/src/index.ts
Normal file
@@ -0,0 +1,93 @@
|
|||||||
|
#!/usr/bin/env node
|
||||||
|
|
||||||
|
import { Argument, Option, program } from '@commander-js/extra-typings'
|
||||||
|
import { setBase, status } from '@cryptgeon/shared'
|
||||||
|
import prettyBytes from 'pretty-bytes'
|
||||||
|
|
||||||
|
import { download } from './download.js'
|
||||||
|
import { parseFile, parseNumber } from './parsers.js'
|
||||||
|
import { uploadFiles, uploadText } from './upload.js'
|
||||||
|
import { exit } from './utils.js'
|
||||||
|
|
||||||
|
const defaultServer = process.env['CRYPTGEON_SERVER'] || 'https://cryptgeon.org'
|
||||||
|
const server = new Option('-s --server <url>', 'the cryptgeon server to use').default(defaultServer)
|
||||||
|
const files = new Argument('<file...>', 'Files to be sent').argParser(parseFile)
|
||||||
|
const text = new Argument('<text>', 'Text content of the note')
|
||||||
|
const password = new Option('-p --password <string>', 'manually set a password')
|
||||||
|
const url = new Argument('<url>', 'The url to open')
|
||||||
|
const views = new Option('-v --views <number>', 'Amount of views before getting destroyed').argParser(parseNumber)
|
||||||
|
const minutes = new Option('-m --minutes <number>', 'Minutes before the note expires').argParser(parseNumber)
|
||||||
|
|
||||||
|
// Node 18 guard
|
||||||
|
parseInt(process.version.slice(1).split(',')[0]) < 18 && exit('Node 18 or higher is required')
|
||||||
|
|
||||||
|
// @ts-ignore
|
||||||
|
const version: string = VERSION
|
||||||
|
|
||||||
|
async function checkConstrains(constrains: { views?: number; minutes?: number }) {
|
||||||
|
const { views, minutes } = constrains
|
||||||
|
if (views && minutes) exit('cannot set view and minutes constrains simultaneously')
|
||||||
|
if (!views && !minutes) constrains.views = 1
|
||||||
|
|
||||||
|
const response = await status()
|
||||||
|
if (views && views > response.max_views)
|
||||||
|
exit(`Only a maximum of ${response.max_views} views allowed. ${views} given.`)
|
||||||
|
if (minutes && minutes > response.max_expiration)
|
||||||
|
exit(`Only a maximum of ${response.max_expiration} minutes allowed. ${minutes} given.`)
|
||||||
|
}
|
||||||
|
|
||||||
|
program.name('cryptgeon').version(version).configureHelp({ showGlobalOptions: true })
|
||||||
|
|
||||||
|
program
|
||||||
|
.command('info')
|
||||||
|
.addOption(server)
|
||||||
|
.action(async (options) => {
|
||||||
|
setBase(options.server)
|
||||||
|
const response = await status()
|
||||||
|
const formatted = {
|
||||||
|
...response,
|
||||||
|
max_size: prettyBytes(response.max_size),
|
||||||
|
}
|
||||||
|
for (const key of Object.keys(formatted)) {
|
||||||
|
if (key.startsWith('theme_')) delete formatted[key as keyof typeof formatted]
|
||||||
|
}
|
||||||
|
console.table(formatted)
|
||||||
|
})
|
||||||
|
|
||||||
|
const send = program.command('send')
|
||||||
|
send
|
||||||
|
.command('file')
|
||||||
|
.addArgument(files)
|
||||||
|
.addOption(server)
|
||||||
|
.addOption(views)
|
||||||
|
.addOption(minutes)
|
||||||
|
.action(async (files, options) => {
|
||||||
|
setBase(options.server!)
|
||||||
|
await checkConstrains(options)
|
||||||
|
await uploadFiles(files, { views: options.views, expiration: options.minutes })
|
||||||
|
})
|
||||||
|
send
|
||||||
|
.command('text')
|
||||||
|
.addArgument(text)
|
||||||
|
.addOption(server)
|
||||||
|
.addOption(views)
|
||||||
|
.addOption(minutes)
|
||||||
|
.action(async (text, options) => {
|
||||||
|
setBase(options.server!)
|
||||||
|
await checkConstrains(options)
|
||||||
|
await uploadText(text, { views: options.views, expiration: options.minutes })
|
||||||
|
})
|
||||||
|
|
||||||
|
program
|
||||||
|
.command('open')
|
||||||
|
.addArgument(url)
|
||||||
|
.action(async (note, options) => {
|
||||||
|
try {
|
||||||
|
const url = new URL(note)
|
||||||
|
await download(url)
|
||||||
|
} catch {
|
||||||
|
exit('Invalid URL')
|
||||||
|
}
|
||||||
|
})
|
||||||
|
|
||||||
|
program.parse()
|
27
packages/cli/src/parsers.ts
Normal file
@@ -0,0 +1,27 @@
|
|||||||
|
import { InvalidArgumentError, InvalidOptionArgumentError } from '@commander-js/extra-typings'
|
||||||
|
import { accessSync, constants } from 'node:fs'
|
||||||
|
import { resolve } from 'node:path'
|
||||||
|
|
||||||
|
export function parseFile(value: string, before: string[] = []) {
|
||||||
|
try {
|
||||||
|
const file = resolve(value)
|
||||||
|
accessSync(file, constants.R_OK)
|
||||||
|
return [...before, file]
|
||||||
|
} catch {
|
||||||
|
throw new InvalidArgumentError('cannot access file')
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
export function parseURL(value: string, _: URL): URL {
|
||||||
|
try {
|
||||||
|
return new URL(value)
|
||||||
|
} catch {
|
||||||
|
throw new InvalidArgumentError('is not a valid url')
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
export function parseNumber(value: string, _: number): number {
|
||||||
|
const n = parseInt(value, 10)
|
||||||
|
if (isNaN(n)) throw new InvalidOptionArgumentError('invalid number')
|
||||||
|
return n
|
||||||
|
}
|
48
packages/cli/src/upload.ts
Normal file
@@ -0,0 +1,48 @@
|
|||||||
|
import { readFile, stat } from 'node:fs/promises'
|
||||||
|
import { basename } from 'node:path'
|
||||||
|
|
||||||
|
import { Adapters, BASE, create, FileDTO, Note } from '@cryptgeon/shared'
|
||||||
|
import mime from 'mime'
|
||||||
|
import { AES, Hex, TypedArray } from 'occulto'
|
||||||
|
|
||||||
|
import { exit } from './utils.js'
|
||||||
|
|
||||||
|
type UploadOptions = Pick<Note, 'views' | 'expiration'>
|
||||||
|
|
||||||
|
export async function upload(key: TypedArray, note: Note) {
|
||||||
|
try {
|
||||||
|
const result = await create(note)
|
||||||
|
const password = Hex.encode(key)
|
||||||
|
const url = `${BASE}/note/${result.id}#${password}`
|
||||||
|
console.log(`Note created under:\n\n${url}`)
|
||||||
|
} catch {
|
||||||
|
exit('Could not create note')
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
export async function uploadFiles(paths: string[], options: UploadOptions) {
|
||||||
|
const key = await AES.generateKey()
|
||||||
|
const files: FileDTO[] = await Promise.all(
|
||||||
|
paths.map(async (path) => {
|
||||||
|
const data = new Uint8Array(await readFile(path))
|
||||||
|
const stats = await stat(path)
|
||||||
|
const extension = path.substring(path.indexOf('.') + 1)
|
||||||
|
const type = mime.getType(extension) ?? 'application/octet-stream'
|
||||||
|
return {
|
||||||
|
name: basename(path),
|
||||||
|
size: stats.size,
|
||||||
|
contents: data,
|
||||||
|
type,
|
||||||
|
} satisfies FileDTO
|
||||||
|
})
|
||||||
|
)
|
||||||
|
|
||||||
|
const contents = await Adapters.Files.encrypt(files, key)
|
||||||
|
await upload(key, { ...options, contents, meta: { type: 'file' } })
|
||||||
|
}
|
||||||
|
|
||||||
|
export async function uploadText(text: string, options: UploadOptions) {
|
||||||
|
const key = await AES.generateKey()
|
||||||
|
const contents = await Adapters.Text.encrypt(text, key)
|
||||||
|
await upload(key, { ...options, contents, meta: { type: 'text' } })
|
||||||
|
}
|
6
packages/cli/src/utils.ts
Normal file
@@ -0,0 +1,6 @@
|
|||||||
|
import { exit as exitNode } from 'node:process'
|
||||||
|
|
||||||
|
export function exit(message: string) {
|
||||||
|
console.error(message)
|
||||||
|
exitNode(1)
|
||||||
|
}
|
10
packages/cli/tsconfig.json
Normal file
@@ -0,0 +1,10 @@
|
|||||||
|
{
|
||||||
|
"compilerOptions": {
|
||||||
|
"target": "es2022",
|
||||||
|
"module": "es2022",
|
||||||
|
"moduleResolution": "node",
|
||||||
|
"noEmit": true,
|
||||||
|
"strict": true,
|
||||||
|
"allowSyntheticDefaultImports": true
|
||||||
|
}
|
||||||
|
}
|
@@ -1,8 +1,8 @@
|
|||||||
├─ MIT: 12
|
├─ MIT: 13
|
||||||
|
├─ ISC: 2
|
||||||
├─ BSD-3-Clause: 1
|
├─ BSD-3-Clause: 1
|
||||||
├─ (MPL-2.0 OR Apache-2.0): 1
|
├─ (MPL-2.0 OR Apache-2.0): 1
|
||||||
├─ BSD-2-Clause: 1
|
├─ BSD-2-Clause: 1
|
||||||
├─ ISC: 1
|
|
||||||
├─ 0BSD: 1
|
├─ 0BSD: 1
|
||||||
└─ Apache-2.0: 1
|
└─ Apache-2.0: 1
|
||||||
|
|
|
@@ -15,7 +15,8 @@
|
|||||||
"encrypting": "verschlüsseln",
|
"encrypting": "verschlüsseln",
|
||||||
"decrypting": "entschlüsselt",
|
"decrypting": "entschlüsselt",
|
||||||
"uploading": "hochladen",
|
"uploading": "hochladen",
|
||||||
"downloading": "wird heruntergeladen"
|
"downloading": "wird heruntergeladen",
|
||||||
|
"qr_code": "qr-code"
|
||||||
},
|
},
|
||||||
"home": {
|
"home": {
|
||||||
"intro": "Senden Sie ganz einfach <i>vollständig verschlüsselte</i>, sichere Notizen oder Dateien mit einem Klick. Erstellen Sie einfach eine Notiz und teilen Sie den Link.",
|
"intro": "Senden Sie ganz einfach <i>vollständig verschlüsselte</i>, sichere Notizen oder Dateien mit einem Klick. Erstellen Sie einfach eine Notiz und teilen Sie den Link.",
|
@@ -15,7 +15,8 @@
|
|||||||
"encrypting": "encrypting",
|
"encrypting": "encrypting",
|
||||||
"decrypting": "decrypting",
|
"decrypting": "decrypting",
|
||||||
"uploading": "uploading",
|
"uploading": "uploading",
|
||||||
"downloading": "downloading"
|
"downloading": "downloading",
|
||||||
|
"qr_code": "qr code"
|
||||||
},
|
},
|
||||||
"home": {
|
"home": {
|
||||||
"intro": "Easily send <i>fully encrypted</i>, secure notes or files with one click. Just create a note and share the link.",
|
"intro": "Easily send <i>fully encrypted</i>, secure notes or files with one click. Just create a note and share the link.",
|
@@ -15,7 +15,8 @@
|
|||||||
"encrypting": "encriptando",
|
"encrypting": "encriptando",
|
||||||
"decrypting": "descifrando",
|
"decrypting": "descifrando",
|
||||||
"uploading": "cargando",
|
"uploading": "cargando",
|
||||||
"downloading": "descargando"
|
"downloading": "descargando",
|
||||||
|
"qr_code": "código qr"
|
||||||
},
|
},
|
||||||
"home": {
|
"home": {
|
||||||
"intro": "Envía fácilmente notas o archivos <i>totalmente encriptados</i> y seguros con un solo clic. Solo tienes que crear una nota y compartir el enlace.",
|
"intro": "Envía fácilmente notas o archivos <i>totalmente encriptados</i> y seguros con un solo clic. Solo tienes que crear una nota y compartir el enlace.",
|
||||||
@@ -40,7 +41,7 @@
|
|||||||
},
|
},
|
||||||
"explanation": "pulse abajo para mostrar y borrar la nota si el contador ha llegado a su límite",
|
"explanation": "pulse abajo para mostrar y borrar la nota si el contador ha llegado a su límite",
|
||||||
"show_note": "mostrar nota",
|
"show_note": "mostrar nota",
|
||||||
"warning_will_not_see_again": " <b>no</b> tendrás la oportunidad de volver a ver la nota.",
|
"warning_will_not_see_again": "<b>no</b> tendrás la oportunidad de volver a ver la nota.",
|
||||||
"download_all": "descargar todo"
|
"download_all": "descargar todo"
|
||||||
},
|
},
|
||||||
"file_upload": {
|
"file_upload": {
|
@@ -15,7 +15,8 @@
|
|||||||
"encrypting": "cryptage",
|
"encrypting": "cryptage",
|
||||||
"decrypting": "déchiffrer",
|
"decrypting": "déchiffrer",
|
||||||
"uploading": "téléchargement",
|
"uploading": "téléchargement",
|
||||||
"downloading": "téléchargement"
|
"downloading": "téléchargement",
|
||||||
|
"qr_code": "code qr"
|
||||||
},
|
},
|
||||||
"home": {
|
"home": {
|
||||||
"intro": "Envoyez facilement des notes ou des fichiers <i>entièrement cryptés</i> et sécurisés en un seul clic. Il suffit de créer une note et de partager le lien.",
|
"intro": "Envoyez facilement des notes ou des fichiers <i>entièrement cryptés</i> et sécurisés en un seul clic. Il suffit de créer une note et de partager le lien.",
|
@@ -15,7 +15,8 @@
|
|||||||
"encrypting": "criptando",
|
"encrypting": "criptando",
|
||||||
"decrypting": "decifrando",
|
"decrypting": "decifrando",
|
||||||
"uploading": "caricamento",
|
"uploading": "caricamento",
|
||||||
"downloading": "scaricando"
|
"downloading": "scaricando",
|
||||||
|
"qr_code": "codice qr"
|
||||||
},
|
},
|
||||||
"home": {
|
"home": {
|
||||||
"intro": "Invia facilmente note o file <i>completamente criptati</i> e sicuri con un solo clic. Basta creare una nota e condividere il link.",
|
"intro": "Invia facilmente note o file <i>completamente criptati</i> e sicuri con un solo clic. Basta creare una nota e condividere il link.",
|
||||||
@@ -40,7 +41,7 @@
|
|||||||
},
|
},
|
||||||
"explanation": "clicca sotto per mostrare e cancellare la nota se il contatore ha raggiunto il suo limite",
|
"explanation": "clicca sotto per mostrare e cancellare la nota se il contatore ha raggiunto il suo limite",
|
||||||
"show_note": "mostra la nota",
|
"show_note": "mostra la nota",
|
||||||
"warning_will_not_see_again": " <b>non</b> avrete la possibilità di rivedere la nota.",
|
"warning_will_not_see_again": "<b>non</b> avrete la possibilità di rivedere la nota.",
|
||||||
"download_all": "scarica tutti"
|
"download_all": "scarica tutti"
|
||||||
},
|
},
|
||||||
"file_upload": {
|
"file_upload": {
|
51
packages/frontend/locales/ja.json
Normal file
@@ -0,0 +1,51 @@
|
|||||||
|
{
|
||||||
|
"common": {
|
||||||
|
"note": "新しいメモ",
|
||||||
|
"file": "ファイル",
|
||||||
|
"advanced": "アドバンスド",
|
||||||
|
"create": "作成",
|
||||||
|
"loading": "読み込み中",
|
||||||
|
"mode": "モード",
|
||||||
|
"views": "{n, plural, =0 {表示可能な時間} =1 { 1 ビュー} other {#ビュー}}",
|
||||||
|
"minutes": "{n, plural, =0 {有効期間(分)} =1 {1 分} other {# 分}}",
|
||||||
|
"max": "マックス",
|
||||||
|
"share_link": "共有リンク",
|
||||||
|
"copy_clipboard": "クリップボードにコピーする",
|
||||||
|
"copied_to_clipboard": "クリップボードにコピーされました",
|
||||||
|
"encrypting": "暗号化",
|
||||||
|
"decrypting": "復号化",
|
||||||
|
"uploading": "アップロード中",
|
||||||
|
"downloading": "ダウンロード中",
|
||||||
|
"qr_code": "QRコード"
|
||||||
|
},
|
||||||
|
"home": {
|
||||||
|
"intro": "<i>完全に暗号化された</i> 、安全なメモやファイルをワンクリックで簡単に送信できます。メモを作成してリンクを共有するだけです。",
|
||||||
|
"explanation": "メモは{type}後に期限切れになり、破棄されます。",
|
||||||
|
"new_note": "新しいメモ",
|
||||||
|
"new_note_notice": "<b>可用性: </b> <br />すべてが RAM に保持されるため、メモが保存されるとは限りません。いっぱいになると、最も古いメモが削除されます。 <br /> (大丈夫だと思いますが、ご了承ください。)",
|
||||||
|
"errors": {
|
||||||
|
"note_to_big": "メモを作成できませんでした。メモが大きすぎる",
|
||||||
|
"note_error": "メモを作成できませんでした。もう一度お試しください。",
|
||||||
|
"max": "最大ファイルサイズ: {n}",
|
||||||
|
"empty_content": "メモは空です。"
|
||||||
|
},
|
||||||
|
"messages": {
|
||||||
|
"note_created": "メモが作成されました。"
|
||||||
|
}
|
||||||
|
},
|
||||||
|
"show": {
|
||||||
|
"errors": {
|
||||||
|
"not_found": "メモが見つからないか、既に削除されています。",
|
||||||
|
"decryption_failed": "パスワードエラー!不完全なリンクを貼り付けたり、暗号を解読しようとしたりしている可能性があります!しかし、いずれにしても、この暗号は破棄されました!",
|
||||||
|
"unsupported_type": "サポートされていないメモ タイプです。"
|
||||||
|
},
|
||||||
|
"explanation": "カウンターが上限に達した場合、ノートの表示と削除を行うには、以下をクリックします。",
|
||||||
|
"show_note": "メモを表示",
|
||||||
|
"warning_will_not_see_again": "あなた <b>できません</b> このノートをもう一度見る",
|
||||||
|
"download_all": "すべてダウンロード"
|
||||||
|
},
|
||||||
|
"file_upload": {
|
||||||
|
"selected_files": "選択したファイル",
|
||||||
|
"no_files_selected": "ファイルが選択されていません"
|
||||||
|
}
|
||||||
|
}
|
51
packages/frontend/locales/ru.json
Normal file
@@ -0,0 +1,51 @@
|
|||||||
|
{
|
||||||
|
"common": {
|
||||||
|
"note": "заметка",
|
||||||
|
"file": "файл",
|
||||||
|
"advanced": "расширенные",
|
||||||
|
"create": "создать",
|
||||||
|
"loading": "загрузка",
|
||||||
|
"mode": "режим",
|
||||||
|
"views": "{n, plural, =0 {просмотры} =1 {1 просмотр} other {# просмотры}}",
|
||||||
|
"minutes": "{n, plural, =0 {минут} =1 {1 минута} other {# минуты}}",
|
||||||
|
"max": "макс",
|
||||||
|
"share_link": "поделиться ссылкой",
|
||||||
|
"copy_clipboard": "скопировать в буфер обмена",
|
||||||
|
"copied_to_clipboard": "скопировано в буфер обмена",
|
||||||
|
"encrypting": "шифрование",
|
||||||
|
"decrypting": "расшифровка",
|
||||||
|
"uploading": "загрузка",
|
||||||
|
"downloading": "скачивание",
|
||||||
|
"qr_code": "qr код"
|
||||||
|
},
|
||||||
|
"home": {
|
||||||
|
"intro": "Легко отправляйте <i>полностью зашифрованные</i> защищенные заметки или файлы одним щелчком мыши. Просто создайте заметку и поделитесь ссылкой.",
|
||||||
|
"explanation": "заметка истечет и будет уничтожена после {type}.",
|
||||||
|
"new_note": "новая заметка",
|
||||||
|
"new_note_notice": "<b>availability:</b><br />the note is not guaranteed to be stored as everything is kept in ram, if it fills up the oldest notes will be removed.<br />(you probably will be fine, just be warned.)",
|
||||||
|
"errors": {
|
||||||
|
"note_to_big": "нельзя создать новую заметку. заметка слишком большая",
|
||||||
|
"note_error": "нельзя создать новую заметку. пожалйста попробуйте позднее.",
|
||||||
|
"max": "макс: {n}",
|
||||||
|
"empty_content": "пустая заметка."
|
||||||
|
},
|
||||||
|
"messages": {
|
||||||
|
"note_created": "заметка создана."
|
||||||
|
}
|
||||||
|
},
|
||||||
|
"show": {
|
||||||
|
"errors": {
|
||||||
|
"not_found": "заметка не найдена или была удалена.",
|
||||||
|
"decryption_failed": "неправильный пароль. не смог расшифровать. возможно ссылка битая. записка уничтожена.",
|
||||||
|
"unsupported_type": "неподдерживаемый тип заметки."
|
||||||
|
},
|
||||||
|
"explanation": "щелкните ниже, чтобы показать и удалить примечание, если счетчик достиг предела",
|
||||||
|
"show_note": "показать заметку",
|
||||||
|
"warning_will_not_see_again": "вы <b>не сможете</b> больше просмотреть заметку.",
|
||||||
|
"download_all": "скачать всё"
|
||||||
|
},
|
||||||
|
"file_upload": {
|
||||||
|
"selected_files": "Выбранные файлы",
|
||||||
|
"no_files_selected": "Файлы не выбраны"
|
||||||
|
}
|
||||||
|
}
|
51
packages/frontend/locales/zh.json
Normal file
@@ -0,0 +1,51 @@
|
|||||||
|
{
|
||||||
|
"common": {
|
||||||
|
"note": "密信",
|
||||||
|
"file": "上传文件",
|
||||||
|
"advanced": "高级设置",
|
||||||
|
"create": "创建",
|
||||||
|
"loading": "加载中",
|
||||||
|
"mode": "模式",
|
||||||
|
"views": "{n, plural, =0 {可读次数} =1 {1 次查看} other {# 次查看}}",
|
||||||
|
"minutes": "{n, plural, =0 {有效期(分钟)} =1 {1 分钟} other {# 分钟}}",
|
||||||
|
"max": "最大值",
|
||||||
|
"share_link": "分享链接",
|
||||||
|
"copy_clipboard": "复制到粘贴板",
|
||||||
|
"copied_to_clipboard": "已成功复制到粘贴板",
|
||||||
|
"encrypting": "加密",
|
||||||
|
"decrypting": "解密",
|
||||||
|
"uploading": "上传",
|
||||||
|
"downloading": "下载",
|
||||||
|
"qr_code": "二维码"
|
||||||
|
},
|
||||||
|
"home": {
|
||||||
|
"intro": "飞鸽传书,一键传输完全加密的密信或文件,阅后即焚。",
|
||||||
|
"explanation": "该密信会在{type}后失效。",
|
||||||
|
"new_note": "新建密信",
|
||||||
|
"new_note_notice": "<b>提醒:</b><br>密信保存在内存中,如果内存满了,则最早的密信将被删除以释放内存,因此不保证该密信的可用性。一般不会出现这种情况,无需担心。",
|
||||||
|
"errors": {
|
||||||
|
"note_to_big": "创建失败,密信过大。",
|
||||||
|
"note_error": "创建失败,请稍后重试。",
|
||||||
|
"max": "次数上限:{n}",
|
||||||
|
"empty_content": "密信不能为空。"
|
||||||
|
},
|
||||||
|
"messages": {
|
||||||
|
"note_created": "密信创建成功。"
|
||||||
|
}
|
||||||
|
},
|
||||||
|
"show": {
|
||||||
|
"errors": {
|
||||||
|
"not_found": "密信不存在,可能已被查看或删除。",
|
||||||
|
"decryption_failed": "密钥错误,无法查看。",
|
||||||
|
"unsupported_type": "不支持的类型。"
|
||||||
|
},
|
||||||
|
"explanation": "点击下方按钮即可查看密信,阅后即焚。",
|
||||||
|
"show_note": "查看密信",
|
||||||
|
"warning_will_not_see_again": "你将<b>无法</b>再次查看该密信,请尽快复制到粘贴板。",
|
||||||
|
"download_all": "下载全部"
|
||||||
|
},
|
||||||
|
"file_upload": {
|
||||||
|
"selected_files": "已选中的文件",
|
||||||
|
"no_files_selected": "没有文件被选中"
|
||||||
|
}
|
||||||
|
}
|
41
packages/frontend/package.json
Normal file
@@ -0,0 +1,41 @@
|
|||||||
|
{
|
||||||
|
"private": true,
|
||||||
|
"name": "@cryptgeon/web",
|
||||||
|
"scripts": {
|
||||||
|
"postinstall": "svelte-kit sync",
|
||||||
|
"dev": "vite dev",
|
||||||
|
"build": "vite build",
|
||||||
|
"preview": "vite preview",
|
||||||
|
"check": "svelte-check --tsconfig tsconfig.json",
|
||||||
|
"licenses": "license-checker --summary > licenses.csv",
|
||||||
|
"locale:download": "node scripts/locale.js",
|
||||||
|
"test:prepare": "pnpm run build"
|
||||||
|
},
|
||||||
|
"type": "module",
|
||||||
|
"devDependencies": {
|
||||||
|
"@lokalise/node-api": "^9.8.0",
|
||||||
|
"@sveltejs/adapter-static": "^2.0.2",
|
||||||
|
"@sveltejs/kit": "^1.16.3",
|
||||||
|
"@types/dompurify": "^3.0.2",
|
||||||
|
"@types/file-saver": "^2.0.5",
|
||||||
|
"@zerodevx/svelte-toast": "^0.9.3",
|
||||||
|
"adm-zip": "^0.5.10",
|
||||||
|
"dotenv": "^16.0.3",
|
||||||
|
"svelte": "^3.59.1",
|
||||||
|
"svelte-check": "^3.3.2",
|
||||||
|
"svelte-intl-precompile": "^0.12.1",
|
||||||
|
"tslib": "^2.5.0",
|
||||||
|
"typescript": "^5.0.4",
|
||||||
|
"vite": "^4.3.5"
|
||||||
|
},
|
||||||
|
"dependencies": {
|
||||||
|
"@cryptgeon/shared": "workspace:*",
|
||||||
|
"@fontsource/fira-mono": "^4.5.10",
|
||||||
|
"copy-to-clipboard": "^3.3.3",
|
||||||
|
"dompurify": "^3.0.3",
|
||||||
|
"file-saver": "^2.0.5",
|
||||||
|
"occulto": "^2.0.1",
|
||||||
|
"pretty-bytes": "^6.1.0",
|
||||||
|
"qrious": "^4.0.2"
|
||||||
|
}
|
||||||
|
}
|
@@ -1,14 +1,19 @@
|
|||||||
import dotenv from 'dotenv'
|
|
||||||
import { LokaliseApi } from '@lokalise/node-api'
|
import { LokaliseApi } from '@lokalise/node-api'
|
||||||
import https from 'https'
|
|
||||||
import AdmZip from 'adm-zip'
|
import AdmZip from 'adm-zip'
|
||||||
|
import dotenv from 'dotenv'
|
||||||
|
import https from 'https'
|
||||||
|
|
||||||
dotenv.config()
|
dotenv.config()
|
||||||
|
|
||||||
|
function exit(msg) {
|
||||||
|
console.error(msg)
|
||||||
|
process.exit(1)
|
||||||
|
}
|
||||||
|
|
||||||
const apiKey = process.env.LOKALISE_API_KEY
|
const apiKey = process.env.LOKALISE_API_KEY
|
||||||
const project_id = process.env.LOKALISE_PROJECT
|
const project_id = process.env.LOKALISE_PROJECT
|
||||||
if (!apiKey) throw new Error('No API Key set for Lokalize! Set with "LOKALISE_API_KEY"')
|
if (!apiKey) exit('No API Key set for Lokalize! Set with "LOKALISE_API_KEY"')
|
||||||
if (!project_id) throw new Error('No project id set for Lokalize! Set with "LOKALISE_PROJECT"')
|
if (!project_id) exit('No project id set for Lokalize! Set with "LOKALISE_PROJECT"')
|
||||||
const client = new LokaliseApi({ apiKey })
|
const client = new LokaliseApi({ apiKey })
|
||||||
|
|
||||||
const WGet = (url) =>
|
const WGet = (url) =>
|
@@ -87,6 +87,8 @@ button {
|
|||||||
font-size: inherit;
|
font-size: inherit;
|
||||||
background: inherit;
|
background: inherit;
|
||||||
color: inherit;
|
color: inherit;
|
||||||
|
border: none;
|
||||||
|
padding-inline: initial;
|
||||||
}
|
}
|
||||||
|
|
||||||
*:disabled,
|
*:disabled,
|
9
packages/frontend/src/app.d.ts
vendored
Normal file
@@ -0,0 +1,9 @@
|
|||||||
|
// See https://kit.svelte.dev/docs/types#app
|
||||||
|
// for information about these interfaces
|
||||||
|
// and what to do when importing types
|
||||||
|
declare namespace App {
|
||||||
|
// interface Error {}
|
||||||
|
// interface Locals {}
|
||||||
|
// interface PageData {}
|
||||||
|
// interface Platform {}
|
||||||
|
}
|
@@ -2,7 +2,6 @@
|
|||||||
<html lang="en">
|
<html lang="en">
|
||||||
<head>
|
<head>
|
||||||
<meta charset="utf-8" />
|
<meta charset="utf-8" />
|
||||||
<link rel="icon" href="/favicon.png" />
|
|
||||||
<meta name="viewport" content="width=device-width, initial-scale=1" />
|
<meta name="viewport" content="width=device-width, initial-scale=1" />
|
||||||
|
|
||||||
%sveltekit.head%
|
%sveltekit.head%
|
Before Width: | Height: | Size: 287 B After Width: | Height: | Size: 287 B |
Before Width: | Height: | Size: 325 B After Width: | Height: | Size: 325 B |
Before Width: | Height: | Size: 736 B After Width: | Height: | Size: 736 B |
Before Width: | Height: | Size: 483 B After Width: | Height: | Size: 483 B |
Before Width: | Height: | Size: 732 B After Width: | Height: | Size: 732 B |
8
packages/frontend/src/lib/stores/status.ts
Normal file
@@ -0,0 +1,8 @@
|
|||||||
|
import { status as getStatus, type Status } from '@cryptgeon/shared'
|
||||||
|
import { writable } from 'svelte/store'
|
||||||
|
|
||||||
|
export const status = writable<null | Status>(null)
|
||||||
|
|
||||||
|
export async function init() {
|
||||||
|
status.set(await getStatus())
|
||||||
|
}
|
@@ -1,10 +1,10 @@
|
|||||||
<script lang="ts">
|
<script lang="ts">
|
||||||
import { t } from 'svelte-intl-precompile'
|
import { t } from 'svelte-intl-precompile'
|
||||||
|
|
||||||
import type { Note } from '$lib/api'
|
|
||||||
import { status } from '$lib/stores/status'
|
import { status } from '$lib/stores/status'
|
||||||
import Switch from '$lib/ui/Switch.svelte'
|
import Switch from '$lib/ui/Switch.svelte'
|
||||||
import TextInput from '$lib/ui/TextInput.svelte'
|
import TextInput from '$lib/ui/TextInput.svelte'
|
||||||
|
import type { Note } from '@cryptgeon/shared'
|
||||||
|
|
||||||
export let note: Note
|
export let note: Note
|
||||||
export let timeExpiration = false
|
export let timeExpiration = false
|
||||||
@@ -18,8 +18,9 @@
|
|||||||
bind:value={note.views}
|
bind:value={note.views}
|
||||||
disabled={timeExpiration}
|
disabled={timeExpiration}
|
||||||
max={$status?.max_views}
|
max={$status?.max_views}
|
||||||
|
min={1}
|
||||||
validate={(v) =>
|
validate={(v) =>
|
||||||
($status && v < $status?.max_views) ||
|
($status && v <= $status?.max_views && v > 0) ||
|
||||||
$t('home.errors.max', { values: { n: $status?.max_views ?? 0 } })}
|
$t('home.errors.max', { values: { n: $status?.max_views ?? 0 } })}
|
||||||
/>
|
/>
|
||||||
<div class="middle-switch">
|
<div class="middle-switch">
|
42
packages/frontend/src/lib/ui/Canvas.svelte
Normal file
@@ -0,0 +1,42 @@
|
|||||||
|
<script lang="ts">
|
||||||
|
// @ts-ignore
|
||||||
|
import QR from 'qrious'
|
||||||
|
import { t } from 'svelte-intl-precompile'
|
||||||
|
|
||||||
|
import { getCSSVariable } from '$lib/utils'
|
||||||
|
|
||||||
|
export let value: string
|
||||||
|
|
||||||
|
let canvas: HTMLCanvasElement
|
||||||
|
|
||||||
|
$: {
|
||||||
|
new QR({
|
||||||
|
value,
|
||||||
|
level: 'Q',
|
||||||
|
size: 800,
|
||||||
|
background: getCSSVariable('--ui-bg-0'),
|
||||||
|
foreground: getCSSVariable('--ui-text-0'),
|
||||||
|
element: canvas,
|
||||||
|
})
|
||||||
|
}
|
||||||
|
</script>
|
||||||
|
|
||||||
|
<small>{$t('common.qr_code')}</small>
|
||||||
|
<div>
|
||||||
|
<canvas bind:this={canvas} />
|
||||||
|
</div>
|
||||||
|
|
||||||
|
<style>
|
||||||
|
div {
|
||||||
|
padding: 0.5rem;
|
||||||
|
width: fit-content;
|
||||||
|
border: 2px solid var(--ui-bg-1);
|
||||||
|
background-color: var(--ui-bg-0);
|
||||||
|
margin-top: 0.125rem;
|
||||||
|
}
|
||||||
|
|
||||||
|
canvas {
|
||||||
|
width: 100%;
|
||||||
|
height: auto;
|
||||||
|
}
|
||||||
|
</style>
|
@@ -1,26 +1,27 @@
|
|||||||
<script lang="ts">
|
<script lang="ts">
|
||||||
import { t } from 'svelte-intl-precompile'
|
import { t } from 'svelte-intl-precompile'
|
||||||
|
|
||||||
import type { FileDTO } from '$lib/api'
|
|
||||||
import Button from '$lib/ui/Button.svelte'
|
import Button from '$lib/ui/Button.svelte'
|
||||||
import MaxSize from '$lib/ui/MaxSize.svelte'
|
import MaxSize from '$lib/ui/MaxSize.svelte'
|
||||||
|
import type { FileDTO } from '@cryptgeon/shared'
|
||||||
|
|
||||||
export let label: string = ''
|
export let label: string = ''
|
||||||
export let files: FileDTO[] = []
|
export let files: FileDTO[] = []
|
||||||
|
|
||||||
function fileToDTO(file: File): FileDTO {
|
async function fileToDTO(file: File): Promise<FileDTO> {
|
||||||
return {
|
return {
|
||||||
name: file.name,
|
name: file.name,
|
||||||
size: file.size,
|
size: file.size,
|
||||||
type: file.type,
|
type: file.type,
|
||||||
contents: file,
|
contents: new Uint8Array(await file.arrayBuffer()),
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
async function onInput(e: Event) {
|
async function onInput(e: Event) {
|
||||||
const input = e.target as HTMLInputElement
|
const input = e.target as HTMLInputElement
|
||||||
if (input?.files?.length) {
|
if (input?.files?.length) {
|
||||||
files = [...files, ...Array.from(input.files).map(fileToDTO)]
|
const toAdd = await Promise.all(Array.from(input.files).map(fileToDTO))
|
||||||
|
files = [...files, ...toAdd]
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
Before Width: | Height: | Size: 784 B After Width: | Height: | Size: 784 B |
@@ -10,9 +10,12 @@
|
|||||||
|
|
||||||
import Button from '$lib/ui/Button.svelte'
|
import Button from '$lib/ui/Button.svelte'
|
||||||
import TextInput from '$lib/ui/TextInput.svelte'
|
import TextInput from '$lib/ui/TextInput.svelte'
|
||||||
|
import Canvas from './Canvas.svelte'
|
||||||
|
|
||||||
export let result: NoteResult
|
export let result: NoteResult
|
||||||
|
|
||||||
|
$: url = `${window.location.origin}/note/${result.id}#${result.password}`
|
||||||
|
|
||||||
function reset() {
|
function reset() {
|
||||||
window.location.reload()
|
window.location.reload()
|
||||||
}
|
}
|
||||||
@@ -22,11 +25,15 @@
|
|||||||
type="text"
|
type="text"
|
||||||
readonly
|
readonly
|
||||||
label={$t('common.share_link')}
|
label={$t('common.share_link')}
|
||||||
value="{window.location.origin}/note/{result.id}#{result.password}"
|
value={url}
|
||||||
copy
|
copy
|
||||||
data-testid="share-link"
|
data-testid="share-link"
|
||||||
/>
|
/>
|
||||||
<br />
|
|
||||||
|
<div>
|
||||||
|
<Canvas value={url} />
|
||||||
|
</div>
|
||||||
|
|
||||||
<p>
|
<p>
|
||||||
{@html $t('home.new_note_notice')}
|
{@html $t('home.new_note_notice')}
|
||||||
</p>
|
</p>
|
||||||
@@ -34,4 +41,9 @@
|
|||||||
<Button on:click={reset}>{$t('home.new_note')}</Button>
|
<Button on:click={reset}>{$t('home.new_note')}</Button>
|
||||||
|
|
||||||
<style>
|
<style>
|
||||||
|
div {
|
||||||
|
width: min(12rem, 100%);
|
||||||
|
margin-top: 1rem;
|
||||||
|
margin-bottom: 1rem;
|
||||||
|
}
|
||||||
</style>
|
</style>
|
@@ -8,9 +8,9 @@
|
|||||||
import prettyBytes from 'pretty-bytes'
|
import prettyBytes from 'pretty-bytes'
|
||||||
import { t } from 'svelte-intl-precompile'
|
import { t } from 'svelte-intl-precompile'
|
||||||
|
|
||||||
import type { FileDTO, NotePublic } from '$lib/api'
|
|
||||||
import Button from '$lib/ui/Button.svelte'
|
import Button from '$lib/ui/Button.svelte'
|
||||||
import { copy } from '$lib/utils'
|
import { copy } from '$lib/utils'
|
||||||
|
import type { FileDTO, NotePublic } from '@cryptgeon/shared'
|
||||||
|
|
||||||
export let note: DecryptedNote
|
export let note: DecryptedNote
|
||||||
|
|
||||||
@@ -53,7 +53,9 @@
|
|||||||
{:else}
|
{:else}
|
||||||
{#each files as file}
|
{#each files as file}
|
||||||
<div class="note file">
|
<div class="note file">
|
||||||
<b on:click={() => downloadFile(file)}>↓ {file.name}</b>
|
<button on:click={() => downloadFile(file)}>
|
||||||
|
<b>↓ {file.name}</b>
|
||||||
|
</button>
|
||||||
<small> {file.type} - {prettyBytes(file.size)}</small>
|
<small> {file.type} - {prettyBytes(file.size)}</small>
|
||||||
</div>
|
</div>
|
||||||
{/each}
|
{/each}
|
@@ -1,7 +1,7 @@
|
|||||||
<script lang="ts">
|
<script lang="ts">
|
||||||
import { Crypto, Hex } from '$lib/crypto'
|
|
||||||
import Icon from '$lib/ui/Icon.svelte'
|
import Icon from '$lib/ui/Icon.svelte'
|
||||||
import { copy as copyFN } from '$lib/utils'
|
import { copy as copyFN } from '$lib/utils'
|
||||||
|
import { getRandomBytes, Hex } from 'occulto'
|
||||||
|
|
||||||
export let label: string = ''
|
export let label: string = ''
|
||||||
export let value: any
|
export let value: any
|
||||||
@@ -23,8 +23,9 @@
|
|||||||
function toggle() {
|
function toggle() {
|
||||||
hidden = !hidden
|
hidden = !hidden
|
||||||
}
|
}
|
||||||
function randomFN() {
|
|
||||||
value = Hex.encode(Crypto.getRandomBytes(20))
|
async function randomFN() {
|
||||||
|
value = Hex.encode(await getRandomBytes(32))
|
||||||
}
|
}
|
||||||
</script>
|
</script>
|
||||||
|
|
@@ -40,19 +40,19 @@
|
|||||||
}
|
}
|
||||||
</script>
|
</script>
|
||||||
|
|
||||||
<div on:click={change}>
|
<button on:click={change}>
|
||||||
<Icon class="icon" icon="contrast" />
|
<Icon class="icon" icon="contrast" />
|
||||||
{$theme}
|
{$theme}
|
||||||
</div>
|
</button>
|
||||||
|
|
||||||
<style>
|
<style>
|
||||||
div :global(.icon) {
|
button :global(.icon) {
|
||||||
height: 1rem;
|
height: 1rem;
|
||||||
width: 1rem;
|
width: 1rem;
|
||||||
margin-right: 0.5rem;
|
margin-right: 0.5rem;
|
||||||
}
|
}
|
||||||
|
|
||||||
div {
|
button {
|
||||||
display: flex;
|
display: flex;
|
||||||
flex-direction: row;
|
flex-direction: row;
|
||||||
justify-content: flex-end;
|
justify-content: flex-end;
|
@@ -9,3 +9,8 @@ export function copy(value: string) {
|
|||||||
const msg = get(t)('common.copied_to_clipboard')
|
const msg = get(t)('common.copied_to_clipboard')
|
||||||
notify.success(msg)
|
notify.success(msg)
|
||||||
}
|
}
|
||||||
|
|
||||||
|
export function getCSSVariable(variable: string): string {
|
||||||
|
if (typeof window === 'undefined') return ''
|
||||||
|
return window.getComputedStyle(window.document.body).getPropertyValue(variable)
|
||||||
|
}
|
@@ -1,11 +1,8 @@
|
|||||||
<script lang="ts">
|
<script lang="ts">
|
||||||
|
import { AES, Hex } from 'occulto'
|
||||||
import { t } from 'svelte-intl-precompile'
|
import { t } from 'svelte-intl-precompile'
|
||||||
import { blur } from 'svelte/transition'
|
import { blur } from 'svelte/transition'
|
||||||
|
|
||||||
import { Adapters } from '$lib/adapters'
|
|
||||||
import type { FileDTO, Note } from '$lib/api'
|
|
||||||
import { create, PayloadToLargeError } from '$lib/api'
|
|
||||||
import { Crypto, Hex } from '$lib/crypto'
|
|
||||||
import { status } from '$lib/stores/status'
|
import { status } from '$lib/stores/status'
|
||||||
import { notify } from '$lib/toast'
|
import { notify } from '$lib/toast'
|
||||||
import AdvancedParameters from '$lib/ui/AdvancedParameters.svelte'
|
import AdvancedParameters from '$lib/ui/AdvancedParameters.svelte'
|
||||||
@@ -16,6 +13,8 @@
|
|||||||
import Result, { type NoteResult } from '$lib/ui/NoteResult.svelte'
|
import Result, { type NoteResult } from '$lib/ui/NoteResult.svelte'
|
||||||
import Switch from '$lib/ui/Switch.svelte'
|
import Switch from '$lib/ui/Switch.svelte'
|
||||||
import TextArea from '$lib/ui/TextArea.svelte'
|
import TextArea from '$lib/ui/TextArea.svelte'
|
||||||
|
import type { FileDTO, Note } from '@cryptgeon/shared'
|
||||||
|
import { Adapters, create, PayloadToLargeError } from '@cryptgeon/shared'
|
||||||
|
|
||||||
let note: Note = {
|
let note: Note = {
|
||||||
contents: '',
|
contents: '',
|
||||||
@@ -58,8 +57,8 @@
|
|||||||
try {
|
try {
|
||||||
loading = $t('common.encrypting')
|
loading = $t('common.encrypting')
|
||||||
|
|
||||||
const password = Hex.encode(Crypto.getRandomBytes(32))
|
const key = await AES.generateKey()
|
||||||
const key = await Crypto.getKeyFromString(password)
|
const password = Hex.encode(key)
|
||||||
|
|
||||||
const data: Note = {
|
const data: Note = {
|
||||||
contents: '',
|
contents: '',
|
@@ -7,7 +7,9 @@
|
|||||||
<nav>
|
<nav>
|
||||||
<a href="/">/home</a>
|
<a href="/">/home</a>
|
||||||
<a href="/about">/about</a>
|
<a href="/about">/about</a>
|
||||||
<a href="https://github.com/cupcakearmy/cryptgeon" target="_blank" rel="noopener">/code</a>
|
<a href="https://github.com/cupcakearmy/cryptgeon" target="_blank" rel="noopener noreferrer">
|
||||||
|
code
|
||||||
|
</a>
|
||||||
</nav>
|
</nav>
|
||||||
</footer>
|
</footer>
|
||||||
|
|
@@ -1,18 +1,11 @@
|
|||||||
<script lang="ts" context="module">
|
|
||||||
import { getLocaleFromNavigator, init, waitLocale } from 'svelte-intl-precompile'
|
|
||||||
// @ts-ignore
|
|
||||||
import { registerAll } from '$locales'
|
|
||||||
registerAll()
|
|
||||||
init({ initialLocale: getLocaleFromNavigator() ?? undefined, fallbackLocale: 'en' })
|
|
||||||
</script>
|
|
||||||
|
|
||||||
<script lang="ts">
|
<script lang="ts">
|
||||||
import { SvelteToast } from '@zerodevx/svelte-toast'
|
import { SvelteToast } from '@zerodevx/svelte-toast'
|
||||||
import { onMount } from 'svelte'
|
import { onMount } from 'svelte'
|
||||||
|
import { waitLocale } from 'svelte-intl-precompile'
|
||||||
|
|
||||||
import '../app.css'
|
import '../app.css'
|
||||||
|
|
||||||
import { init as initStores } from '$lib/stores/status'
|
import { init as initStores, status } from '$lib/stores/status'
|
||||||
import Footer from '$lib/views/Footer.svelte'
|
import Footer from '$lib/views/Footer.svelte'
|
||||||
import Header from '$lib/views/Header.svelte'
|
import Header from '$lib/views/Header.svelte'
|
||||||
|
|
||||||
@@ -22,7 +15,8 @@
|
|||||||
</script>
|
</script>
|
||||||
|
|
||||||
<svelte:head>
|
<svelte:head>
|
||||||
<title>cryptgeon</title>
|
<title>{$status?.theme_page_title || 'cryptgeon'}</title>
|
||||||
|
<link rel="icon" href={$status?.theme_favicon || '/favicon.png'} />
|
||||||
</svelte:head>
|
</svelte:head>
|
||||||
|
|
||||||
{#await waitLocale() then _}
|
{#await waitLocale() then _}
|
5
packages/frontend/src/routes/+layout.ts
Normal file
@@ -0,0 +1,5 @@
|
|||||||
|
import { getLocaleFromNavigator, init } from 'svelte-intl-precompile'
|
||||||
|
// @ts-ignore
|
||||||
|
import { registerAll } from '$locales'
|
||||||
|
registerAll()
|
||||||
|
init({ initialLocale: getLocaleFromNavigator() ?? undefined, fallbackLocale: 'en' })
|