First slice of in-chat file/photo sharing (dedicated file plane, images inline + file chips, session-only). This stage adds the wire types and the pure, unit-tested logic; no transport or UI yet. - protocol: new FILES_ALPN / FILES_PROTO (peerspeak/files/1) for the dedicated file-transfer plane. Bump GOSSIP_PROTO 1->2 + sig domain v2 (Chat gained an attachment field, so cross-version peers fail fast rather than half-work) and Cargo 0.2.0 -> 0.3.0 per VERSIONING.md. BREAKING wire change: all peers must run >= 0.3.0. - new src/files.rs: ChatAttachment descriptor (name/size/kind/id; bytes travel off-gossip), AttachmentKind, plus pure seams — sanitize_filename (path-traversal/control-char/length-safe), size_within_cap, image magic-byte sniffing + defensive limited decode (decode-bomb guard), 32-byte request parsing, human_size. 13 unit tests. - GossipMessage::Chat and RoomEvent::ChatMessage carry an optional ChatAttachment; send_chat takes Option<ChatAttachment>. Untrusted inbound descriptors are filename-sanitized + size-validated on ingest. serde(default) keeps the field forward-compatible at the JSON layer; +round-trip and pre-v2 back-compat tests. The attachment id is a random 32-byte handle (rand, already a dep), not a content hash — the fetch is authenticated + encrypted + member-gated, so no crypto-hash dep is needed. 349 lib tests pass, clippy clean. Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
67 lines
2.4 KiB
TOML
67 lines
2.4 KiB
TOML
[package]
|
|
name = "peerspeak"
|
|
version = "0.3.0"
|
|
edition = "2024"
|
|
# Application crate, not a crates.io library — refuse `cargo publish` and let
|
|
# cargo-deny's [licenses.private] skip the missing-license check.
|
|
publish = false
|
|
|
|
[lib]
|
|
name = "peerspeak"
|
|
path = "src/lib.rs"
|
|
|
|
[[bin]]
|
|
name = "peerspeak"
|
|
path = "src/main.rs"
|
|
|
|
[[bin]]
|
|
name = "test_net"
|
|
path = "src/bin/test_net.rs"
|
|
|
|
[[bin]]
|
|
name = "specview"
|
|
path = "src/bin/specview.rs"
|
|
|
|
[dependencies]
|
|
anyhow = "1.0.102"
|
|
async-trait = "0.1.89"
|
|
base64 = "0.22.1"
|
|
bytes = "1.11.1"
|
|
dirs = "6.0.0"
|
|
iced = { version = "0.14.0", features = ["canvas", "image"] }
|
|
# W4 custom avatars: decode/resize an arbitrary user image (png/jpeg only to keep
|
|
# the codec surface small). The matching native file picker (`rfd`) is platform-
|
|
# gated below — its backend differs per OS (xdg-portal on Linux, Win32 on Windows).
|
|
image = { version = "0.25", default-features = false, features = ["png", "jpeg"] }
|
|
iroh = "1.0.0-rc.0"
|
|
iroh-gossip = "0.99.0"
|
|
opus = "0.3.1"
|
|
rand = "0.10.1"
|
|
ringbuf = "0.5.0"
|
|
serde = { version = "1.0.228", features = ["derive"] }
|
|
serde_json = "1.0.150"
|
|
thiserror = "2.0.18"
|
|
tokio = { version = "1.52.3", features = ["full"] }
|
|
tokio-stream = "0.1.18"
|
|
|
|
# --- Platform-specific dependencies -----------------------------------------
|
|
# Audio and the native file-picker backends differ per OS. Everything else in the
|
|
# app talks to the `AudioBackend` trait and the `PlatformAudioBackend` alias (see
|
|
# `src/audio/mod.rs`), so platform selection is confined to these few lines.
|
|
|
|
[target.'cfg(target_os = "linux")'.dependencies]
|
|
# Linux audio backend. v0_3_49 exposes `Buffer::requested()` (the graph's per-cycle
|
|
# quantum), used by the playback RT callback to fill exactly what the device asks
|
|
# for instead of a hard-coded 1024-frame quantum (crackle on non-1024 hardware).
|
|
# The field has existed in libpipewire since 0.3.49 (2022).
|
|
pipewire = { version = "0.9", features = ["v0_3_49"] }
|
|
# Native file picker via the XDG desktop portal (no GTK) on Linux.
|
|
rfd = { version = "0.17", default-features = false, features = ["xdg-portal"] }
|
|
|
|
[target.'cfg(windows)'.dependencies]
|
|
# Native file picker using the built-in Win32 dialog backend on Windows.
|
|
rfd = { version = "0.17", default-features = false }
|
|
# Windows audio backend: cpal drives WASAPI for capture/playback behind the
|
|
# AudioBackend trait (src/audio/cpal_impl.rs). The Linux counterpart is pipewire.
|
|
cpal = "0.15"
|