Skip to content

VaultSync 1.8.7: Trust and Portability - #546

Draft
ATAC-Helicopter wants to merge 49 commits into
Devfrom
release/1.8.7
Draft

VaultSync 1.8.7: Trust and Portability#546
ATAC-Helicopter wants to merge 49 commits into
Devfrom
release/1.8.7

Conversation

@ATAC-Helicopter

@ATAC-Helicopter ATAC-Helicopter commented Aug 11, 2026

Copy link
Copy Markdown
Owner

Summary

This is the single release PR for VaultSync 1.8.7, Trust and Portability, targeting Dev.

The branch currently includes:

  • complete 1.8.6 closeout and permanent Dev branch protection;
  • explicit 1.8.7 implementation, acceptance, safety, and release-gate contracts;
  • the security-serviced .NET 10.0.11 runtime and coordinated package baseline;
  • a canonical, checksummed release manifest consumed by release automation and the updater;
  • durable installation identity, repository writer leases, explicit per-destination writer inspection, and fail-closed deferred metadata handling;
  • shared-code and duplication cleanup across metadata, network, theme, and backup-filter paths;
  • compact theme-aware Snapshot Explorer, metadata-import review, and updater windows;
  • corrected, modernized built-in backup presets with one shared cross-platform resolver;
  • deduplicated metadata-import previews when portable records and legacy folders represent the same content;
  • serviced Microsoft.NET.Test.Sdk, xUnit analyzers, and the Visual Studio test runner from the combined Dependabot updates.

Current safety position

Cross-machine metadata remains intentionally conservative. Repository leases now prevent existing 1.8.7-aware writers from racing, but versioned three-way merge, durable conflict decisions, and mixed-version qualification remain release work.

Full-repository backup also remains gated by #296 / VS-1801. Source presets protect shareable Git control files but continue excluding live .git internals until consistency, credential, restore, and verification safeguards are implemented.

Validation

  • Release build: 0 warnings, 0 errors
  • Core/UI tests: 703 passed
  • Preset safety tests: 40 passed
  • Localization audit: no missing, extra, duplicate, blank, or placeholder-mismatched keys
  • Release-script tests: 47 passed
  • NuGet vulnerability audit: zero vulnerable direct or transitive packages in every release-branch project
  • git diff --check: passed
  • Sonar quality gate: passed with no unresolved new-code issues and the coverage threshold satisfied
  • 1.8.6 release: published with 18 assets and no open milestone issues

Release work

Tracks #480, #481, #482, #483, #484, #485, #487, #541, #543, #545, #548.

Closes #549.
Closes #550.
Closes #554.
Closes #555.
Closes #556.
Closes #547.
Closes #557.
Closes #542.
Closes #558.
Closes #486.
Closes #545.

Completed repository-preparation defect: #544.

Target: 24 August 2026. Base branch: Dev.

Release cadence

Stable deadline: 24 August 2026. Minor releases target one week and must not exceed two weeks; non-blocking polish can roll forward, while P0 safety or security blockers cannot. Major releases follow the completed minor train and use explicit beta qualification.

Security servicing baseline

Recent UI and preset work

Relevant commits: e24b48a, e402742, 0ba5c30, 4ce0081, 13ed4d2, 0304ff6, 064f468, 9349e56, a2690be, 9f90a1c, 5b27351, b1ce7b6, 221a95e, f396ee6, bde641d, e86f86f, 911db42, 2acb090, 64c001e, and 173c4e9.

@sonarqubecloud

Copy link
Copy Markdown

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant