The notes become searchable, and Kubernetes gets its advisories
added3
- Search inside the notes themselves. Text matching covered the product, the version and a 150 character summary, so "oauth" found 10 records while the notes hold 105. The whole archive is 12.9 MB of prose, 52,625 words and 407,818 postings; as one file the index is 634 kB even packed, so it is split by first letter into 27 files averaging 24 kB and a search fetches only the one or two its words begin with. A kept word is answered by prefix when the exact word is not there, and several kept words narrow each other. Measured: oauth 10 to 105, browser 42 to 218, memory 39 to 287, deprecat 34 to 309.
- Kubernetes advisories, 91 of them, from the CVE feed the project publishes itself. Advisories had come only from a repository’s own GitHub filings and Kubernetes files nowhere near them, so the product most likely to be audited showed none. Severity is taken only where the publisher wrote it beside the score, which is 24 times out of 91 and in six different notations; the rest stay unrated rather than computed from a CVSS vector, and fixed versions stay empty because this feed states them as ranges and the field they would fill names an exact release.
- A line naming the newest products above the index. Whatever later decides what that block shows will be built from what readers already reach, and a rule like that feeds itself: what is shown gets read, what is read stays shown, and a product added this week never gets in. The line is the place kept for the newest, and the date it uses is derived from the day the archive first held the product rather than maintained by hand.
fixed4
- The privacy page, which said no client side code on this site makes a network request at all. The filter and the palette had been fetching a file of rows for some time, and searching the notes now fetches one index file chosen by the first letter of the word. That is the one place where what a reader types affects what is requested, and the page now says so, along with what it would have cost to hide even the letter.
- The advisory identifier, which was the React key on three pages and is empty for anything filed outside GitHub. Ninety one Kubernetes rows would have shared one blank key.
- Thirty four addresses on this site that were 404s. A release its publisher shipped with no notes is held, counted and listed, but gets no page of its own, and nine places built a link out of its id anyway. Found by walking all 73,359 internal links across 3,358 pages, which had never been done. Every one of them now goes through one function that sends the reader to the product when there is no release page, and the version is still named either way.
- A link a publisher wrote as "/docs/sandbox", which on this domain pointed at us rather than at them. Relative addresses inside collected notes are now resolved against the address the note came from, which is not editing what they wrote but spelling out the address they meant.