chore(release): 0.7.11 - #51
Merged
Merged
Conversation
🤖 Generated with [Claude Code](https://claude.com/claude-code)
Code reviewPure release-metadata PR: cuts the 0.7.11 CHANGELOG section with links back to #45/#47/#48/#49/#50, and bumps the version in Cargo.toml + Cargo.lock. No source files are touched. Findings: None. The version bump is consistent across Cargo.toml, Cargo.lock, and CHANGELOG.md, and nothing else in the repo hardcodes the version string. Since no code changed, none of the contract areas (help text, stdout purity, exit codes, wire shapes, Cargo.toml table ordering, MSRV, daemonizing, cross-platform, release.yml) are implicated. Safe to merge as is. |
Merged
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Release 0.7.11 — one release for the whole batch of source-map work (#45, #47, #49, #50) rather than four in a row.
Added
sourcemaps injectrefuses a build that pins its own script hashes (Subresource Integrity), exit 20,--allow-srito override. Measured on a real webpack +webpack-subresource-integritybuild in Chromium 151: after stamping, the entry script was blocked and the page executed nothing. The guard refuses only over files the run would actually rewrite, so re-running stays a no-op. [feat(sourcemaps): refuse to inject into an SRI build (re-targeted to main) #49]sourcemaps inject --exclude <glob>(repeatable) — leave part of a build output alone (vendored code inside a server bundle, a polyfill file). An unparseable or empty pattern is exit 20, never a silent "matches nothing". [feat(sourcemaps): inject --exclude (and why unmapped bundles stay stamped) #45]debug-files upload --strip-sources-content— upload maps without their embedded source, including the copies an indexed map keeps insections[].map. The map on disk is never modified and the declaredhashdescribes the stripped bytes. 253 → 181 bytes on a real esbuild bundle. [feat(debug-files): --strip-sources-content #48 → feat(debug-files): --strip-sources-content (re-targeted to main) #50]Fixed
--dry-runno longer fails on a map with no debug-id. A dry run sends nothing, so an un-keyed map cannot register an unfindable symbol — but it exited 11 on the first one, which made the documented safe diagnostic unusable on a freshly built directory. A real run still exits 11. [fix(debug-files): a dry run must not fail on a map with no debug-id #47]Changed
cargo testdid not compile at all;env_clear()stripsSystemRoot, without which WinSock cannot initialise, so every request from a child process failed; and the updater's e2e harness only ever built the Unix release artifact. [feat(debug-files): --strip-sources-content (re-targeted to main) #50]Version bumped in
Cargo.toml+Cargo.lock, CHANGELOG section cut with PR links.--versionverified asbugsee-cli 0.7.11from the release build.What this batch closed
Items §1, §2, §3, §4, §7 and §8's option from the CLI-in-JS-flows audit. What remains there needs a backend or product decision: §5 (the commit SHA has no field in the upload wire), §6 (whether a web build should register at all).
🤖 Generated with Claude Code