All releases

Version 0.79.0

2026-08-20 13:02:39 UTC

HotfixBeta

Changed

1
  • A contact line is one line: the report and board contact fields refuse line breaks.

    The two fields that take a way to reach you — the one on a report and the one on a board post — are printed as a single line wherever an operator reads them. A value with line breaks in it was accepted and then displayed as though the lines after the first were something else. They are now refused when they are sent, with the field named in the answer. Existing values are untouched.

Security

1
  • Text a stranger writes can no longer drive the screen an operator reads it on.

    A report's reason, a contact line and a post's body are written by people NMTS does not know, and an operator reads them in a terminal to decide what to do. A terminal treats certain invisible characters as commands, so text containing them could erase the line above it, repaint the screen, or move the cursor — letting whoever wrote it choose what the person deciding actually sees. The server now refuses those characters at the door, keeping only line breaks and tabs, and the operator tool replaces anything already stored before printing it. Two layers, because rows written before today are still in the database; nothing about who can see your files changes, and ordinary writing goes through as before.

NMTS — cloud storage that encrypts in your browser