Security
- Custom ffmpeg flags can no longer add inputs, outputs or file names (they could overwrite files on the server), and encodes run in an empty scratch folder.
- Custom ffmpeg flags and the post-conversion script can only be changed when signed in with the password — not with the API key alone, which is in your download-client scripts.
- Settings import runs the same checks as saving in Settings and never imports credentials or auth settings.
- A backup restored without signing in with the password no longer brings back its post-conversion script or custom flags.
- Renaming only touches files and folders inside your media directories and never renames a media directory itself.
- A target resolution or filename suffix can no longer place a converted file in another folder.
Fixed
- The System settings page shows why a save was rejected instead of failing silently.
Docker images
Pinned to this release:
docker pull ghcr.io/i-ial9000/shrinkerr:v0.9.157 # portable (amd64 + arm64, CPU)
docker pull ghcr.io/i-ial9000/shrinkerr:v0.9.157-nvenc # x86_64 + NVIDIA GPU (NVENC)
docker pull ghcr.io/i-ial9000/shrinkerr:v0.9.157-edge # as above but ffmpeg master
docker pull ghcr.io/i-ial9000/shrinkerr:v0.9.157-edge-nvencFloating tags (:latest, :edge, :nvenc, :edge-nvenc) track the most recent release of each lineage.