Skip to content

Commit 602d463

Browse files
authored
docs: align public surfaces with OCI release (#42)
Co-authored-by: Joseph Yaksich <gitcommit90@users.noreply.github.com>
1 parent b8fffaf commit 602d463

9 files changed

Lines changed: 113 additions & 56 deletions

File tree

CHANGELOG.md

Lines changed: 22 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -7,6 +7,28 @@ and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0
77

88
## [Unreleased]
99

10+
### Documentation
11+
12+
- Updated the README, standalone website, manual, story, and user guide for the
13+
OCI computer generation shipped in 0.0.29/0.0.30: Linux uses native Podman,
14+
Windows uses one managed WSL 2 runtime with a container per channel, and
15+
OCI storage is authoritative.
16+
- Scoped release-security claims by platform. Mac artifacts are signed and
17+
notarized, Linux assets are digest-verified, and Windows Authenticode status
18+
is disclosed honestly (`NotSigned` for v0.0.30).
19+
- Documented the current desktop choice between hosting a new workspace and
20+
connecting to an existing HTTPS host, plus host-neutral domains and mobile
21+
gateway behavior.
22+
- Brought the manual up to date with the Captain-to-Skipper Texts model and the
23+
Cowork HTML preview, generated-deck layout, direct folder navigation, live
24+
work status, automatic file refresh, and per-file session history already
25+
present in v0.0.30.
26+
- Removed false current-mobile distribution claims: v0.0.30 has no Android APK,
27+
and 1Helm is not currently listed in the public iOS App Store. The current
28+
phone/tablet path is the HTTPS browser interface.
29+
- Retired the stale pre-OCI demo claim. `demo.1helm.com` now redirects to the
30+
product site until a new isolated sandbox is deliberately provisioned.
31+
1032
## [0.0.30] - 2026-07-31
1133

1234
### Fixed

README.md

Lines changed: 29 additions & 26 deletions
Original file line numberDiff line numberDiff line change
@@ -18,8 +18,6 @@
1818
&nbsp;·&nbsp;
1919
<a href="https://1helm.com/manual/install-linux"><strong>for Linux</strong></a>
2020
&nbsp;·&nbsp;
21-
<a href="https://github.com/gitcommit90/1Helm/releases/latest"><strong>for Android</strong></a>
22-
&nbsp;·&nbsp;
2321
<a href="https://1helm.com">The story</a>
2422
&nbsp;·&nbsp;
2523
<a href="https://1helm.com/manual">Ship's manual</a>
@@ -33,8 +31,8 @@
3331
<code>AGPL-3.0-only</code>&nbsp;&nbsp;
3432
<code>Self-hosted</code>&nbsp;&nbsp;
3533
<code>Model-agnostic</code>&nbsp;&nbsp;
36-
<code>Signed + notarized</code>&nbsp;&nbsp;
37-
<code>macOS · Windows · Linux · iOS · Android</code>
34+
<code>Apple signed + notarized</code>&nbsp;&nbsp;
35+
<code>macOS · Windows · Linux</code>
3836
</p>
3937

4038
---
@@ -138,11 +136,12 @@ it works best on a dedicated machine: your crew works around the clock, and
138136
your everyday computer takes naps.
139137

140138
Mac, Linux, and Windows use one synchronized desktop release version. A release
141-
is held in full until the DMG/updater ZIP, Linux host archive, and signed
142-
Windows Setup/Squirrel feed have all passed native install and update
143-
acceptance from the same source commit.
139+
is held in full until the signed/notarized Mac DMG and updater ZIP, verified
140+
Linux host archive, and Windows Setup/Squirrel feed have all passed native
141+
install and update acceptance from the same source commit. Windows
142+
Authenticode status is disclosed in every release; v0.0.30 is `NotSigned`.
144143

145-
### Connect from iPhone, iPad, or Android
144+
### Connect from a phone or tablet
146145

147146
The mobile apps are thin, native gateways to a 1Helm you already run. Install
148147
and finish setup on a supported Mac, Windows, or Linux host first, give that
@@ -152,12 +151,11 @@ Android always use the same current interface. Sign-in happens on that live
152151
frontend; the password is never retained and the resulting session is stored
153152
in the iOS Keychain or encrypted with a key held by Android Keystore.
154153

155-
- iPhone and iPad use the App Store build under the stable bundle identifier
156-
`com.gitcommit90.onehelm.mobile`.
157-
- Android is distributed directly as `1Helm-<version>-universal.apk` on the
158-
matching GitHub Release. Android may ask you to allow installs from the app
159-
you used to open the file. Verify the release SHA-256 and install it; future
160-
releases signed by the same permanent 1Helm certificate install in place.
154+
- The native iOS and Android gateway source is included in this repository,
155+
but neither mobile platform has a current v0.0.30 public build. The most
156+
recent signed Android APK is the older v0.0.23 gateway, and 1Helm is not
157+
currently listed in the public iOS App Store. Use the HTTPS browser interface
158+
for the current v0.0.30 experience.
161159
- The native clients require HTTPS, do not contain or initialize the 1Helm
162160
server or a frozen copy of its product frontend, and do not retain host data
163161
or provider credentials beyond the selected server address and secure
@@ -244,7 +242,7 @@ and an audit trail. A prompt saying “use this service” is not a connector.
244242

245243
## What ships now
246244

247-
- Captain → Providers → Workspace onboarding in the signed Mac app.
245+
- Captain → Providers → Workspace onboarding on every supported host.
248246
- Exactly one resident for every ordinary channel and one Skipper in `#main`.
249247
- A persistent, fully isolated Linux computer per ordinary channel on every
250248
supported platform (exact contracts in the table below).
@@ -257,10 +255,14 @@ and an audit trail. A prompt saying “use this service” is not a connector.
257255
`/workspace/whiteboards`, `/workspace/code`, `/workspace/docs`, and
258256
`/workspace/presentations`, with one consistent file rail, live collaborative
259257
text editors, embedded whiteboard and slide canvases, and an optional
260-
channel-agent panel that starts an ordinary thread with the open file path.
258+
channel-agent panel with live work status and per-file session history.
259+
- Cowork Code can preview an HTML file with its same-project CSS and JavaScript
260+
in a sandbox; agent-created files appear without a reload, and folders open
261+
directly from the shared rail.
261262
- Presentations define a visible, locked printable area (1500 × 1000 by
262263
default), allow custom page dimensions, and export the complete bounded slide
263-
deck as one multi-page PDF while excluding work outside each page.
264+
deck as one multi-page PDF while excluding work outside each page. Simple
265+
agent-generated decks receive a themed, wrapping, content-aware layout.
264266
- Quick Note in the top bar for capturing a Markdown note into
265267
`/workspace/notes` without leaving or repositioning the current channel view.
266268
- Durable files, threads, curated memory, Mnemosyne long-term recall,
@@ -269,12 +271,13 @@ and an audit trail. A prompt saying “use this service” is not a connector.
269271
- Outcome-first Activity with expandable work evidence and a tamper-evident
270272
SHA-256 chain for new operational events.
271273
- Local-first collaboration through an optional workspace domain routed to the
272-
Captain's Mac; workspace state and provider credentials remain on that Mac.
273-
- Host-owned updates: a signed native Mac updater plus an atomic,
274-
digest-verified Linux system service with health-check rollback.
274+
Captain's helm host; workspace state and provider credentials remain there.
275+
- Host-owned updates: a signed native Mac updater, a Windows Squirrel feed with
276+
disclosed Authenticode status, and an atomic digest-verified Linux system
277+
service with health-check rollback.
275278
- Signed, Apple-notarized, stapled Apple Silicon DMG releases.
276-
- Native iPhone/iPad and directly distributed Android gateway clients for an
277-
already configured HTTPS 1Helm host.
279+
- Browser access from phones and tablets to an already configured HTTPS 1Helm
280+
host; native mobile gateway source is present but has no v0.0.30 public build.
278281

279282
### Platform truth
280283

@@ -283,11 +286,11 @@ and an audit trail. A prompt saying “use this service” is not a connector.
283286
| **Apple Silicon macOS 26** | Native desktop product and real isolated Linux computer per resident (Apple `container machine`, `home-mount=none`). |
284287
| **Linux / CI** | Supported headless systemd host with one durable Podman OCI container per resident, runtime-owned storage, and exact ownership checks; CI may select an explicit test backend. |
285288
| **Windows 11 x64** | Native desktop product with one installation-scoped WSL 2 OCI runtime and one durable container per resident; Windows-drive mounts and interop are disabled. |
286-
| **iPhone and iPad** | App Store gateway to an already configured HTTPS 1Helm host; sessions live in the device-only iOS Keychain. |
287-
| **Android 7+** | Directly distributed signed universal APK gateway; sessions are encrypted by a key held in Android Keystore. |
289+
| **iPhone, iPad, and Android** | Use the current HTTPS browser interface. Native gateway source exists, but v0.0.30 has no public mobile artifact and the iOS app is not publicly listed. |
288290

289-
Not yet shipped: a native Linux desktop shell, a hosted control plane, rich
290-
Photon attachment fidelity, or blind execution of community skills.
291+
Not yet shipped: current public mobile builds, a native Linux desktop shell, a
292+
hosted control plane, rich Photon attachment fidelity, or blind execution of
293+
community skills.
291294

292295
## Run the source workspace
293296

docs/USER_GUIDE.md

Lines changed: 16 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -128,11 +128,14 @@ Whiteboard, Code, Docs, and Presentations modes map directly to:
128128
Each mode keeps the same folder rail and nested-folder navigation while the
129129
center changes to the appropriate editor. Notes and Docs use collaborative
130130
Markdown editors with formatting and preview; Code adds line numbers, search,
131-
indentation, and language-aware highlighting while declining unsupported
131+
indentation, language-aware highlighting, and a sandboxed HTML preview that
132+
loads same-project relative CSS and JavaScript while declining unsupported
132133
binary types. Whiteboard embeds a collaborative Excalidraw canvas in one
133134
readable `.whiteboard.json` file. Presentations use one readable `.slides.json`
134135
file with an Excalidraw-backed slide canvas, thumbnails, reordering, and
135-
presentation mode. Drafts and each mode's last open asset remain available
136+
presentation mode. Simple generated decks receive a themed layout, wrapping,
137+
bullet spacing, and font step-down rather than raw text boxes. Drafts and each
138+
mode's last open asset remain available
136139
while switching modes. Opening one of these assets from Files routes to the
137140
matching Cowork mode because both surfaces edit the same bytes.
138141

@@ -147,8 +150,10 @@ asset on desktop. Its first message starts a normal channel thread and adds the
147150
current `/workspace/...` path. When other people are actively viewing that
148151
asset, their usernames are included with the first message so the normal
149152
thread can include the current collaborators. Later messages continue that
150-
thread, and **Open in Chat** moves the same session to the channel's regular
151-
conversation view. The agent harness otherwise remains unchanged.
153+
thread. The panel shows one current work status, refreshes newly created files,
154+
and lets you reopen past sessions for the current file or folder; **Open in
155+
Chat** moves the same session to the channel's regular conversation view. The
156+
agent harness otherwise remains unchanged.
152157

153158
The terminal prompt displays the live current path and changes after `cd`.
154159
1Helm sends a terminal heartbeat while the pane is open and automatically
@@ -332,9 +337,10 @@ Open-Terminal endpoints. Residents never receive these computers.
332337

333338
## Domains, collaboration, members, and privacy
334339

335-
The installed Mac can reserve a local-first `1helm.com` workspace address and
336-
optionally connect a Cloudflare domain. The Mac remains the only workspace
337-
server; sleeping or shutting it down makes the workspace unavailable.
340+
The installed helm host can reserve a local-first `1helm.com` workspace address
341+
and optionally connect a Cloudflare domain. That Mac, Windows PC, or Linux host
342+
remains the only workspace server; sleeping or shutting it down makes the
343+
workspace unavailable.
338344

339345
Public registration closes after the Captain account. Access requests appear in
340346
Settings → Members and create an LLM-independent notice in the Captain's
@@ -437,8 +443,9 @@ fallback.
437443
- Agent interviews have a narrow human-only policy.
438444
- External skills are revision-pinned, bounded, scanned, hashed, and wrapped.
439445
- Operational history is locally tamper-evident.
440-
- Signed releases are Developer ID signed, notarized, stapled, and Gatekeeper
441-
verified before publication.
446+
- Mac artifacts are Developer ID signed, notarized, stapled, and Gatekeeper
447+
verified. Linux assets are digest-verified, and Windows Authenticode status
448+
is disclosed for every release (`NotSigned` for v0.0.30).
442449

443450
For the detailed boundary, see [SECURITY.md](../SECURITY.md). For product intent,
444451
see [VISION.md](VISION.md).

docs/VISION.md

Lines changed: 8 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -83,14 +83,17 @@ verification.
8383
## Product truth
8484

8585
- `https://1helm.com` is the standalone product and documentation site.
86-
- `https://demo.1helm.com` is a separate public sandbox, not the product site
87-
and not a dependency of an installed workspace.
86+
- `https://demo.1helm.com` currently redirects to the product site. The retired
87+
pre-OCI sandbox was removed during the clean-start runtime transition; a
88+
future sandbox must be provisioned explicitly with isolated non-production
89+
state before it is advertised again.
8890
- Apple Silicon macOS, Linux systemd, and native Windows x64 + WSL are the
8991
synchronized public desktop-host product. Every named desktop release must
9092
publish all three from one version and exact source commit.
91-
- 1Helm is self-hosted and open source. A hosted control plane, mobile clients,
92-
blind community-skill execution, and a native Linux desktop shell are not
93-
shipped.
93+
- 1Helm is self-hosted and open source. Native mobile gateway source is present,
94+
but v0.0.30 has no public Android/iOS build and 1Helm is not listed in the
95+
public iOS App Store. A hosted control plane, blind community-skill execution,
96+
and a native Linux desktop shell are not shipped.
9497

9598
## What 1Helm borrows—and what it does not
9699

0 commit comments

Comments
 (0)