Repository navigation
Leave the profile alone in an elevated window, replace only snapshots with --force, skip language files beside the program when elevated - #51
Merged
Conversation
… with --force, skip language files beside the program when elevated Security report package SD (S-7, S-8, S-9, S-10), owner's decisions. - An administrator window under User Account Control (administrator role and a token with a linked limited token) no longer creates the layout folder, writes the layout file or moves a damaged one aside. It still reads it. The folder's location is chosen by settings and an environment the unelevated half of the account controls, so checking the path would not close this. The built-in Administrator and machines with UAC off keep saving the layout. - snapshot create --force replaces only a file this build reads as a snapshot. Any other file is refused with code 2, with or without --force, before signatures are read, and left untouched. Quarantine of an unreadable file is gone from this path. The size is asked before reading, so a very large file no longer ends the command with an out of memory error. This narrows the documented meaning of --force. - A process with administrator rights does not read languages\gui.<code>.json beside the program and says so in the line under the list when such a file is there. - Snapshot access lists stay as they are (measured: an account without administrator rights reads 781 of 801 entries identically by itself). Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
|
Important
This repository does not receive automatic reviews because it has fewer than 10 stars. ⚙️ Run configuration
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Security report package SD (S-7, S-8, S-9, S-10), owner's decisions.
snapshot create --forcereplaces only a snapshot (narrows the documented meaning of the switch). A file this build cannot read as a snapshot is refused with code 2, with or without--force, before signatures are read, and left untouched. Quarantine is gone from this path. The size is asked before the file is read: a 1.5 GB file used to end 0.3.0 with an out of memory error after four seconds.languages\gui.<code>.jsonbeside the program and says so in the line under the list when such a file is there.Checks
--forceover a text file now exits 2 in about 0.3 s with the file untouched (0.3.0 exits 0 and moves it aside), and opening and closing an elevated window leaves the layout file untouched (0.3.0 rewrites it).🤖 Generated with Claude Code