Repository navigation
Conversation
Free is the GPL source; the paid product is the signed, notarized macOS app. No license keys and no in-app Pro entitlement remain. - /api/download/macos (POST) verifies the Stripe Checkout Session and returns a 300s SigV4-presigned URL to the private R2 bucket. The presigner uses node:crypto only and matches the AWS documented vector. - /buy/success downloads directly and is the bookmarkable re-download link; /download accepts the pasted link. No analytics on /buy/success because its URL carries the session id. - Refund checks fail closed when a paid session has no charge, and partial refunds end the download. - Removed /api/pro/*, the license HMAC, the app's Pro store, commands, activation UI and Pro-gated update checks. Updates are on for everyone from https://updates.dictx.splitlabs.io/latest.json. - Release CI builds macOS only, uploads DMGs to private R2 and updater bundles plus latest.json to the public bucket. PR and manual test builds are unsigned and read-only. - Docs describe the flow, secrets and one-time R2 setup.
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
This branch was successfully deployed
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Free is the GPL source; the paid product is the signed, notarized macOS app. License keys and the in-app Pro entitlement are removed.
POST /api/download/macosverifies the Stripe Checkout Session (paid, correct price, live mode, not refunded, disputed or partially refunded) and returns a 300-second presigned URL to a private R2 bucket. The SigV4 presigner usesnode:cryptoonly and matches the AWS documented test vector./buy/successis the bookmarkable download page;/downloadaccepts the pasted link./buy/successloads no analytics, because its URL carries the session id.https://updates.dictx.splitlabs.io/latest.json.bundle.licensecorrected toGPL-3.0-or-later.latest.jsonto the public bucket. PR and manual test builds are unsigned and read-only, so signed DMGs never land in public run artifacts and PR code never sees signing secrets.docs/commercial/checkout-migration.mdandlanding/README.mddescribe the flow, secrets and one-time setup.Verification
node --test landing/tests/*.test.js: 12/12bun run lint,bun run build, Prettier on changed files: passcargo fmt -- --check,cargo clippy -- -D warnings: passbindings.tsagainstcollect_commands!check:translationsfails only on thesettings.general.transcribeHover.*keys already missing onmainNot yet exercised: a real release run against R2, and a live Stripe test-mode purchase.
Before merging or releasing
updates.dictx.splitlabs.ioto the public one only.R2_ACCOUNT_ID,R2_ACCESS_KEY_ID,R2_SECRET_ACCESS_KEY,R2_PRIVATE_BUCKET,R2_PUBLIC_BUCKET.R2_ACCOUNT_ID,R2_ACCESS_KEY_ID,R2_SECRET_ACCESS_KEY,R2_PRIVATE_BUCKET. RemoveDICTX_LICENSE_SECRET. Redeploy./api/download/*.payment_intent.latest_chargeare refused, so confirm Managed Payments returns it.Accepted tradeoffs
/buy/success.latest.jsongoes live before the draft GitHub release is published.