Commit Graph
1373 Commits
Author SHA1 Message Date
l0ng-ai 0b53ff16ef Merge pull request #940 from l0ng-ai/feat/767-prompt-input-new-line
feat(prompt-editor): start input on its own row when the prompt leaves too little room
2026-09-23 16:58:08 +08:00
l0ng-ai 386ccc3d81 Merge pull request #939 from l0ng-ai/feat/720-font-smoothing
feat(fonts): make macOS stroke thickening configurable
2026-09-23 16:58:03 +08:00
l0ng-ai 296a8a3c3f Merge pull request #938 from l0ng-ai/feat/760-stable-workspace-numbers
feat(workspaces): number workspaces in a stable order (#760)
2026-09-23 16:57:59 +08:00
l0ng-ai da6c8624de Merge pull request #937 from l0ng-ai/feat/723-remote-tree-download
feat(file-tree): download a remote file from the tree's context menu
2026-09-23 16:57:54 +08:00
l0ng-ai a012321542 Merge pull request #936 from l0ng-ai/feat/892-741-codebuddy-cursor-hooks
feat(agents): CodeBuddy CLI support and Cursor CLI hooks
2026-09-23 16:57:50 +08:00
l0ng-ai 2eb1a79d76 Merge pull request #935 from l0ng-ai/feat/754-dock-preview-wrap-actions
feat(editor): add ToggleDocumentPreview / ToggleDocumentWrap actions
2026-09-23 16:57:45 +08:00
l0ng-ai 2aa28d3982 Merge pull request #934 from l0ng-ai/feat/867-direct-tab-cycling
feat(tabs): step to the next/previous tab without the switcher (#867)
2026-09-23 16:57:41 +08:00
l0ng-ai 5d861f991f Merge pull request #932 from l0ng-ai/feat/826-sftp-open-at-cwd
feat(sftp): open the Files panel at the shell's current directory
2026-09-23 16:57:36 +08:00
l0ng-ai 3d4c158278 fix(agents): open Cursor turns on beforeSubmitPrompt, count tool calls as activity
The interactive cursor-agent TUI fires beforeSubmitPrompt and stop; only
print mode (-p) lacks them. Mapping postToolUse to prompt-submit froze the
activity counter (opportunistic git refresh, agents --changed), shortened
turn timing and hid tool-less turns. Map it to tool-complete instead.
2026-09-23 16:54:06 +08:00
l0ng-ai 9a01a12852 docs(prompt): describe the input moving below a long prompt (#767) 2026-09-23 15:43:05 +08:00
l0ng-ai 57ca21dd68 feat(workspaces): number workspaces in a stable order (#760)
SelectWorkspace1-9 and the Window menu numbered workspaces by most
recent use, so switching to one moved it to slot 1 and reshuffled the
rest. Number them by the order this client first had them instead
(the append-only views list), skipping synced remote references until
they are opened; opening one moves it to the end so it takes the next
free number. The switcher keeps its MRU list and shows each row's
number.
2026-09-23 15:38:28 +08:00
l0ng-ai 5c3d2a9e8a feat(prompt-editor): start input on its own row when the prompt leaves too little room (#767)
With a long prompt the inline editor started at the prompt's end column,
leaving e.g. 24 of 143 columns for the first row of input. When fewer than
max(20, cols/3) columns remain (and the prompt is at least as wide as what
it left, so a new row actually gains room), the input overlay now starts at
column 0 of the row below the prompt.

The start position is decided by one pure fn, input_start(), and fed to
everything that lays out the input: the overlay rows and overflow shift,
click-to-index mapping, vertical caret movement, the rendered bar, the
completion menu anchor and the IME candidate anchor.
2026-09-23 15:32:26 +08:00
l0ng-ai 592058acc7 feat(fonts): make macOS stroke thickening configurable (#720)
Add a macOS-only `font_thicken` key (default true) and a Settings row
under Appearance > Terminal text. When off, AppleFontSmoothing is pinned
to 0 in this process's NSArgumentDomain before gpui's text system first
reads it, so glyphs render at the face's own weight. The volatile domain
is in-memory only: nothing is persisted and no other app is affected.
gpui caches the preference in a OnceLock, so a change applies after a
restart; no gpui fork change is needed.
2026-09-23 15:23:10 +08:00
l0ng-ai 43d2b902bb feat(file-tree): download a remote file from the tree's context menu
A remote workspace's Files tree took uploads by drag-and-drop but had no
way to bring a file back. Right-click a file -> Download now reads it
through Host::read_file and saves it into this machine's Downloads
folder, named and numbered the way the SFTP panel's Download does.

Capped at the same ~63 MB as uploads (one control frame); an oversized
file is refused up front with the limit and nothing is transferred.
Local trees keep Reveal in that slot; folders are not offered.

Closes #723
2026-09-23 15:22:57 +08:00
l0ng-ai fe7b6e0b76 feat(agents): wire Cursor CLI (cursor-agent) into agent hooks (#741)
Cursor's ~/.cursor/hooks.json is a flat hook map — `command` directly on
each entry under `hooks.<event>` — so it reuses the flat writer Crush
introduced. Two things are Cursor-specific:

- The file needs `"version": 1` at its root or Cursor ignores it. tty7
  now writes it when it creates the file or finds it missing, never
  overwrites a version the user set, and reports a versionless file that
  holds our hooks as Outdated so refresh repairs it.
- Payloads name the session `conversation_id` (only sessionStart repeats
  it as `session_id`), and most events carry `workspace_roots` instead of
  `cwd`. Both are now read as aliases, which is what Copy Session ID and
  resume were missing.

Events: sessionStart, beforeSubmitPrompt, postToolUse, stop, sessionEnd.
cursor-agent does not fire beforeSubmitPrompt today (a known gap on
Cursor's side), so postToolUse also reports prompt-submit: the first tool
call opens the turn and Cursor's stop, which the CLI does fire, closes it.
A turn with no tool calls never shows as working. None of Cursor's
permission hooks are installed, since those would block on the empty
stdout tty7's hook prints.
2026-09-23 15:21:34 +08:00
l0ng-ai 962fd87ea5 feat(tabs): step to the next/previous tab without the switcher (#867)
Add SelectNextTab / SelectPrevTab, which move to the neighbouring tab in
the order the strip or sidebar shows them, wrapping, with no popup.
Defaults: Cmd+Shift+] / Cmd+Shift+[ on macOS, Ctrl+PgDn / Ctrl+PgUp
elsewhere. The tmux preset's prefix n / p now bind these (tmux
next-window semantics) instead of the MRU switcher, which never
auto-committed there.

NextTab / PrevTab keep their config names and Ctrl+Tab, but are labelled
Recent Tab Switcher on the Keybindings page; the palette's Next/Previous
Tab entries now show the SelectNextTab chord they actually run.
2026-09-23 15:20:34 +08:00
l0ng-ai 9f842975ce feat(editor): add ToggleDocumentPreview / ToggleDocumentWrap actions (#754)
The code panel's Preview/Edit and Wrap buttons only toggled state in their
click handlers, so there was no way to reach them from the keyboard. Register
both as actions, unbound by default like ToggleDocumentFill and the
DocumentWidth* actions, list them in the command palette and the Keybindings
page, and route the buttons through the same methods.

Instead of config keys for the initial state, the last-used state is
remembered (editor_soft_wrap / editor_markdown_preview), the way diff_view
and scm_graph_expanded already are. A file opened at a line target always
opens as source so the cursor is visible.
2026-09-23 15:18:58 +08:00
l0ng-ai 0d0dc597ee feat(agents): add CodeBuddy CLI integration (#892)
CodeBuddy Code takes Claude Code's hooks as-is: the same nested
`hooks.<Event>[].hooks[{type, command}]` shape in ~/.codebuddy/settings.json
(or $CODEBUDDY_CONFIG_DIR/settings.json), the same event names, and the same
session_id/cwd payload fields. So it rides the shared hook-map installer and
needs no payload aliases.

The event table follows Qoder rather than Claude: CodeBuddy has a
first-class PermissionRequest and Elicitation, so it gets no Notification
hook, and StopFailure ends a turn like Stop. CodeBuddy also emits
SessionStart with source "compact" mid-turn, which is filtered out the same
way Qoder's is so the pane does not drop back to idle.

Detection covers all three npm bins (codebuddy, codebuddy-code, cbc).
Resume is `codebuddy --resume <id>` and fork appends --fork-session; stale
session and worktree flags are dropped from the replayed launch argv, and
--no-session-persistence disables both commands.

Icon, en/ja/zh names and search keywords, and docs are updated.
2026-09-23 15:04:06 +08:00
l0ng-ai d474e4ade3 feat(sftp): open the Files panel at the shell's current directory
Reopening the SFTP panel went back to the last browsed folder; a fresh
open now prefers the pane shell's cwd, falling back to the last browsed
folder, then the login directory. Following a pane switch with the panel
still open keeps each pane's last browsed folder.

Also pin the test config dir in the sftp gpui harness so filtered runs
do not trip the real-config guard, and fix docs/remote/sftp.mdx, which
said the panel opens on the remote home directory.

Closes #826
2026-09-23 15:03:04 +08:00
l0ng-ai d534c085b9 Merge pull request #930 from l0ng-ai/chore/bump-control-dialect
chore(control): bump the dialect to v10 so remote hosts pick up daemon fixes
2026-09-23 12:34:32 +08:00
l0ng-ai 611c87af0c Merge pull request #931 from l0ng-ai/feat/palette-update-server
feat(palette): add "Update tty7 server" for this computer and the remote host
2026-09-23 12:34:29 +08:00
l0ng-ai 2450e8d320 Merge pull request #929 from l0ng-ai/fix/654-resize-drag-artifacts
fix(terminal): hand the prompt back to the shell before a reflow (#654)
2026-09-23 12:34:26 +08:00
l0ng-ai ecdbf16655 Merge pull request #928 from l0ng-ai/fix/919-settings-text-layout
fix(settings): keep keybinding action names on one line (#919)
2026-09-23 12:34:24 +08:00
l0ng-ai 2f787ce3d4 Merge pull request #927 from l0ng-ai/fix/857-stream-escape-split
fix(daemon): never cut the replay ring or the clipboard sniffer mid-sequence (#857)
2026-09-23 12:34:22 +08:00
l0ng-ai 4ee61bb09d Merge origin/main into fix/857-stream-escape-split
Claude-Session: https://claude.ai/code/session_01YX786Hyr4ivijWxv66zVkf
2026-09-23 12:34:17 +08:00
l0ng-ai 2571ee50db Merge pull request #926 from l0ng-ai/fix/891-remote-directory-group
fix(sidebar): group native SSH tabs by their remote folder (#891)
2026-09-23 12:32:22 +08:00
l0ng-ai b9f77a4b63 Merge pull request #925 from l0ng-ai/fix/896-wsl-files-panel
fix(files): list a WSL pane's cwd through its distro's \\wsl$ share (#896)
2026-09-23 12:32:19 +08:00
l0ng-ai 2506078d77 Merge pull request #924 from l0ng-ai/fix/820-ssh-password-prompt-loop
fix(ssh): retire a routed password prompt its attempt gave up on (#820)
2026-09-23 12:32:17 +08:00
l0ng-ai 2d3b4331e6 Merge pull request #923 from l0ng-ai/fix/893-missed-resize-sync
fix(terminal): re-send a resize whose echo never reached the grid (#893)
2026-09-23 12:32:14 +08:00
l0ng-ai 5fcace2350 Merge pull request #922 from l0ng-ai/fix/837-cursor-reset-default
fix(terminal): hand the prompt its cursor back when a command exits (#837)
2026-09-23 12:32:12 +08:00
l0ng-ai c42beec853 Merge pull request #921 from l0ng-ai/fix/869-unmaximize-focus
fix(ui): un-zooming a pane keeps focus in that pane (#869)
2026-09-23 12:32:09 +08:00
l0ng-ai 35891e1b64 feat(palette): add "Update tty7 server" for this computer and the remote host
Local: restarts the local daemon onto the app's build through the existing
restart flow and confirmation, or says it is already current when the probed
daemon reports this build and no mismatch is pending.

Remote: a new RouteAction::UpdateServer makes the local daemon force-install
this build's server over one already speaking our dialect
(Installer::replace_forced: upload to a temp name, probe, rename, then
cycle_daemon), for SSH and WSL. Offered only when the window's workspace is
on a host whose server we install; gated on the local daemon advertising
FEATURE_UPDATE_SERVER, since an older one cannot decode the action.

Claude-Session: https://claude.ai/code/session_01YX786Hyr4ivijWxv66zVkf
2026-09-23 12:31:17 +08:00
l0ng-ai a4205e6255 chore(control): bump the dialect to v10 so remote hosts pick up daemon fixes
No message changes. A same-dialect install trusts whatever binary already
sits at tty7-server-c9p6 and Update Server only restarts it, so daemon-side
fixes (#828 modes restored on re-attach, #857 replay ring / clipboard
sniffer) never reached remote hosts. A new filename makes clients upload
the matching server.

Claude-Session: https://claude.ai/code/session_01YX786Hyr4ivijWxv66zVkf
2026-09-23 12:18:37 +08:00
l0ng-ai 7d6e92966c fix(terminal): hand the prompt back to the shell before a reflow (#654)
Narrowing a pane under a shell prompt whose right side sits near the edge
(an RPROMPT clock, a right-aligned segment) left fragments of the old prompt
behind, and a drag that narrowed and widened the window a few columns at a
time filled the pane with them. No size disagreement is needed: the reflow
wraps the prompt line onto a second row and keeps the cursor on the wrapped
tail, and the shell's SIGWINCH redraw - which moves up by the rows it last
drew, returns to column 0 and clears below - starts from there. The head of
the old prompt stays behind, still wrapping into the new one, and widening
joins every such head into one long line.

A column change at a prompt (shell integration active and at_prompt, primary
screen, not a ConPTY, not a replayed Size) now clears the cursor's line from
its first row down before the reflow and puts the cursor back as many rows
below that line's start as it was, which is the count the shell moves up by.
Applied where the grid reflows: the daemon's live Size echo and the
request-time path for routes without one.

Tests replay zsh 5.9's captured redraw sequence against the grid: a stepped
drag (checked to strand fragments without the guard), a wrapped command
line, back-to-back reflows before the redraw, a line at the bottom of the
screen, and the cases left alone (away from a prompt, rows only, alternate
screen); plus one end to end over the reader's Size echo.

Claude-Session: https://claude.ai/code/session_01YX786Hyr4ivijWxv66zVkf
2026-09-23 12:18:22 +08:00
l0ng-ai 67d6f3a839 fix(settings): keep keybinding action names on one line (#919)
On Linux the Keybindings page wrapped action names one to three CJK
glyphs per line and spilled them over the rows below, even though the
keycaps beside them left plenty of room. The label was a shrinkable
block sized to its own measured text, so any layout pass that measured
it narrower than it finally ended up left its painted lines wrapped at
that narrower width.

An action name is a single line: make it nowrap, and beside the keycaps
let it take the space they leave (flex_1) instead of sizing to its text,
so neither its box nor its lines depend on that measurement. Stacked
rows keep the whole row for the name as before.

The Agents half of the report (a long Codex install-failure note
squeezing the agent name to a glyph per line) is #897, already fixed on
main by #898 and not yet in a stable release.
2026-09-23 12:02:13 +08:00
l0ng-ai f1244015c5 fix(daemon): never cut the replay ring or the clipboard sniffer mid-sequence (#857)
Two places could turn the tail of an escape sequence into visible text.

The replay ring evicts from the front at an arbitrary byte once it reaches
its cap, and a replay starts the client's emulator in its ground state. A
cut through Pi's `ESC ] 133;C BEL` line mark was painted as `33;C` on every
re-attach; a cut through a CJK character as a replacement glyph. The ring
now folds evicted bytes through a minimal VT state machine and keeps
evicting until the front is outside every sequence and not on a UTF-8
continuation byte.

The OSC 5522 tokenizer dropped a held `ESC ]` (plus any undecided
identifier bytes) and the `ESC` that interrupted it, so `ESC ]` split from
`ESC [31m` by a read boundary reached the client as literal `[31m`. It now
forwards those bytes and lets the new sequence be judged normally; only an
interrupted clipboard write's own payload is still dropped.

The daemon's out-of-band stripping moves into `lift_out_of_band` so tests
can drive it: a Pi-style streamed frame passes through byte for byte at
every split point, and the client's emulator parses it to the same grid at
every split point.
2026-09-23 11:49:09 +08:00
l0ng-ai 45fdd53d1a fix(sidebar): group native SSH tabs by their remote folder (#891)
A native SSH pane is owned by this machine's daemon, so its paths are
kept away from every Host call and it never gets a git_status_cwd. The
sidebar only grouped from git_status_cwd, which left every native SSH
tab in Scratch under repo-or-directory grouping, even though the remote
shell reports its cwd over OSC 7.

Fall back to that reported cwd for native SSH panes (absolute POSIX
paths only) and resolve it as a settled 'no repo': repo-or-directory
files the tab under the folder, repo grouping keeps it in Scratch.
Typed 'ssh' and WSL panes are unchanged.

Fixes #891
2026-09-23 11:48:51 +08:00
l0ng-ai 14fc84ae98 fix(files): list a WSL pane's cwd through its distro's \\wsl$ share (#896)
A pane running wsl.exe reports its cwd as a POSIX path from OSC 7, but its
host is this machine. The Files panel rooted the tree at that path verbatim
and handed it to the local read_dir, so on Windows /home/me was read as
C:\home\me and the panel showed "Could not be read"; drops into the tree
failed the same way since they target the rooted directory.

Root the tree at TerminalView::files_cwd instead: a cwd the pane's host
resolves is used as-is, a WSL pane's POSIX cwd goes through the distro's
\\wsl$ share (the same mapping Tab completion already uses), and a cwd no
host here can read (a shell ssh'd onward) roots nothing instead of an
unreadable directory.
2026-09-23 11:39:11 +08:00
l0ng-ai b635fa57fb fix(ssh): retire a routed password prompt its attempt gave up on (#820)
#827 stopped a declined prompt from being asked again, but left the
prompts themselves with no notion of whether anyone was still waiting on
them. A routed auth prompt sat in the mailbox, in the parked queue behind
the sheet on screen, or on screen itself, until somebody answered it —
even after the connection attempt that raised it had timed out and moved
on. Answering it sent the secret into a dropped channel.

That is the report's sequence. A link drops while nobody is at the
keyboard; each reconnect attempt raises a password prompt and times out
unanswered, and before #827 the supervisor dialled again and again, so one
dead prompt per attempt piled up behind the first sheet. The user comes
back, types the password into a sheet nobody is listening to, the next one
comes up, one of them happens to be the live attempt and connects — and
the dead ones keep coming up however they are closed. #827 ends the
attempt loop on a timed-out password, but a key passphrase declined by
timeout still falls through to other methods and a transient failure, and
a single stale sheet is still left on screen either way.

A PendingAuth now carries a weak handle whose only strong count lives in
the responder for as long as it waits, so it can say when it has been
abandoned. The pump drops abandoned prompts instead of raising or parking
them, and takes down an on-screen routed sheet whose asker has gone,
moving on to whatever else is asking. The GUI also waits no longer than
the daemon's handshake does (the broker's 120s rather than 180s), so the
sheet comes down when the attempt behind it actually fails, not a minute
later.
2026-09-23 11:31:00 +08:00
l0ng-ai 6f76e53464 fix(terminal): re-send a resize whose echo never reached the grid (#893)
On a resize-echoing route (the local daemon and current remote servers)
the grid only reflows when the daemon's Size echo comes back. The
per-frame early-out trusted the request instead: once a size had been
asked for it was never sent again, so a Resize or echo that went missing
left the pane painting a grid shorter than its bounds, with the child
still drawing for the old size, until a divider drag asked for a
different size.

The early-out now checks that the grid actually holds the requested
geometry. While an echo can still be in flight (RESIZE_ECHO_GRACE) it
keeps waiting as before; past that, a grid that disagrees gets the size
sent again. The check try-locks the grid like the painter does, so the
UI thread never queues behind the reader. A size comparison that honours
alacritty's minimum grid also stops a one-column pane from resending on
the non-echo path.

Tests: a lost echo is retried after the grace and not before, a late
Size frame is corrected on echoing routes too, and a relink delivers a
resize made while the old link was down.
2026-09-23 11:29:56 +08:00
l0ng-ai d27dfa2ede fix(terminal): hand the prompt its cursor back when a command exits (#837)
`\e[0 q` / `\e[ q` already fall back to `Config::cursor_style`: alacritty
resolves an unset style to `default_cursor_style`, which we seed from the
config and re-apply on every live config change. What nvim actually sends
on exit is terminfo `Se`, and for `xterm-256color` that is `\e[2 q` -- an
explicit steady block, since that is xterm's default -- so the emulator
honours it and every prompt after nvim/vim is stuck on Block.

Track the shell-integration command marks in the pty reader, cut at their
exact byte offsets: note the cursor style at OSC 133;C and, if the command
left a different one behind by 133;D, restore it (back to "unset" when the
prompt was on the configured default, so it keeps following live config
changes). D is the first thing our precmd writes, so shell hooks that style
their own cursor (vi-mode plugins, precmd echoes) still have the last word.
Replayed snapshots go through the same cuts.

Tests: reset via `\e[0 q` and `\e[ q` lands on a configured bar/underline;
C, `\e[2 q`, D restores bar/underline, in one frame and split across frames;
unit tests for the mark parser and restore rules.
2026-09-23 11:25:16 +08:00
l0ng-ai 3c8b573a78 fix(ui): un-zooming a pane keeps focus in that pane (#869)
Un-zoom routed focus through the tab's `last_focused`, which only
focus-in writes, so any gap between that record and the pane actually
zoomed put the cursor in a different pane when the split came back.
Since #843 the record is kept current on focus-in, which is why the
reported sequence no longer reproduces on main, but the zoomed pane is
the answer outright: hand it to the tab before focusing, so un-zoom no
longer depends on the record having caught up.

Zooming with focus off the panes (a palette just closed, the tab strip)
also zoomed the tab's first leaf rather than the pane the tab
remembers; it now falls back to `focus_target`, the same pane a switch
back to the tab would focus.
2026-09-23 11:17:39 +08:00
l0ng-ai 5cf4ac5efa revert(sidebar): paint the agent disc solid again, mark in white
The last two passes at the avatar — a flat theme disc, then a bare mark
painted in the brand colour — each gave something up the solid disc had:
the flat disc lost the hue that tells one agent from another down a
column of rows, and the bare mark read lighter and less settled than the
disc beside the status dot. Neither was better than where it started.

Back to a solid fill of the agent's brand with the mark in its own ink,
and the hairline `needs_edge` adds for Codex and Grok's pure black on a
dark window. The shell avatar goes back to its muted disc. `mark_ink`
goes with the style it served; the toolbar changes from the same PR stay.
2026-09-23 11:02:43 +08:00
l0ng-ai 65b50491d3 Merge pull request #918 from l0ng-ai/fix/config-symlink-write
fix(config): write through symlinks instead of replacing them
2026-09-23 10:20:10 +08:00
l0ng-ai b21b7766d7 Merge pull request #917 from l0ng-ai/fix/daemon-disclaim-responsibility
fix(daemon): disclaim the launcher's responsibility on macOS
2026-09-23 10:20:02 +08:00
l0ng-ai c022ffda72 Update README.zh-CN.md 2026-09-23 10:02:38 +08:00
l0ng-ai 712b66f0f6 Update README.md 2026-09-23 10:02:16 +08:00
l0ng-ai 40183a5044 fix(daemon): always re-exec once instead of trusting the responsible pid
responsibility_get_pid_responsible_for_pid reports a process as its own
responsible process both when it truly is and when the one it inherited
has exited. A daemon that outlived its GUI - the state a handoff is
meant to repair - therefore looked already disclaimed and was skipped.

Verified headless: a daemon from origin/main launched by a process that
then exits gives new panes no attribution (the shell reports itself);
an in-place restart to this build keeps the pid and existing shells, and
new panes then report the daemon as responsible; a fresh start does too.
2026-09-23 09:55:52 +08:00
l0ng-ai 821dde716c fix(daemon): disclaim the launcher's responsibility on macOS (#909)
macOS attributes Local Network (and other TCC) decisions to a process's
responsible process, fixed at spawn and inherited from the parent. The
daemon is spawned by the GUI, so it and every shell it forks answered to
that GUI. Once the GUI exits while the daemon lives on - every in-place
update, a crash, a force-quit - new panes are no longer attributed to
tty7.app and non-platform binaries get EHOSTUNREACH on the LAN until a
full quit-and-relaunch.

At the top of run_daemon, re-exec in place via posix_spawn with
POSIX_SPAWN_SETEXEC and responsibility_spawnattrs_setdisclaim, so the
daemon (tty7.app's own executable) is responsible for itself. Running
there also covers the far side of a handoff, which repairs a daemon
started by an older build without losing its panes. The SPI is looked
up with dlsym; if it is missing or anything fails, startup continues as
before. A marker argument prevents a second attempt if the first did not
take.
2026-09-23 09:47:27 +08:00
l0ng-ai 2430acb4ba fix(config): write through symlinks instead of replacing them
write_atomic renamed its temp file over the given path. When that path is
a symlink (config.json linked into a dotfiles repo), rename(2) replaces
the link itself, so the first save — dragging the sidebar, running a
palette command — silently turned it into a plain file and broke sync.

Resolve the symlink chain first and write next to, and rename over, the
file it finally points at. Covers every write_atomic caller (config.json,
views.json, window.json, machines, presets, agent hooks).
2026-09-23 09:40:08 +08:00