Recent Activities
This page shows what are we working on.
-
1.8.5
-
1.8.4
-
head
-
Input text color for the editor b483ed
-
Merge branch 'feat/3.0' into 3.x 202a63
-
Ability to control surface and popover backgrounds b24645
-
WIP a267f5
-
feat(font-palette): remove heading separators from typography section
The font-roles and font-assignments heading fields are no longer needed
in the accordion — role fields are rendered by the dedicated font palette
section widget, and the consumer fields follow directly without needing
a separator heading. bb1826 -
feat(font-palette): add font_palettes config and role fields to typography section
Add font_palettes.default with full options list and three named role definitions
(primary, secondary, utility). Replace inline options[] on base-font-family and
headings-font-family with font_palette: 'default'. Add primary-font, secondary-font,
and utility-font role fields to the Typography section. f3f94b -
feat(typography): add font_picker fields for body and headings fonts
Add base-font-family and headings-font-family font_picker fields to
the typography section with 15 options each (web-safe + Google Fonts).
Google Font options include url keys for external stylesheet loading. de7fe2 -
WIP 523fa5
-
WIP acdf89
-
WIP 2e34c5
-
Allow installing using composer cd31e9
-
WIP 69d3a1
-
WIP 293701
-
WIP 672519
-
WIP 093ab3
-
WIP 51f814
-
WIP a1b4ae
-
WIP 720d77
-
WIP 60cda4
-
feat(settings): rename css_var to property in all settings entries 81192e
-
WIP 112d86
-
WIP 30b638
-
WIP 9c400c
-
WIP 5c21f0
-
WIP 6d9c13
-
WIP 69687e
-
WIP e4a462
-
oklch aee077
-
WIP 9531d9
-
WIP 85ca3a
-
WIP e07e39
-
WIP a05de3
-
WIP bf3db2
-
WIP 8e1cbc
-
WIP fcc86a
-
WIP 16e393
-
WIP 3652d5
-
WIP 758e72
-
WIP 86e087
-
WIP 3ade0b
-
WIP 779741
-
WIP 43aa31
-
WIP 78419f
-
WIP 95df67
-
-
head
-
Fixed `undefined` menuSlideout when using third-party menu's 6ebe7a
-
Reusable slideout widget 127b7c
-
Wrap tab switch into startViewTransition to allow view-transitions 9018b1
-
Allow configuring scroll reveal onReveal options from block d7812c
-
Breadcrumb min-height: don't override theme style 8f3084
-
Improve stability of prev commit 7750f3
-
Minisearch: fixed non focusable input if it's hidden initially 2fde2a
-
Fixed incorrect magnifier position when gap in rem's 9d36ab
-
Submit form when clicking the search label and hide it if input is empty bece72
-
BreezeTheme 3.0 43137d
-
RangeSlider: use hex colors and color-mix to add transparency 015ee2
-
Fixed missing provider, proper element binding when using `uiLayout` c7f760
-
Shorten line length 3501ae
-
Better compatibility with complex ui components (Amasty_MegaMenu) 7fe7ae
-
-
2.28.1
-
1.4.4
-
Version 1.4.4 9de74d
-
fix(TicketDataFilter): context-aware forbidden fields — admin vs frontend (close #61)
Admin UI Component sends ALL form fields (hidden + disabled) on every POST,
so logging system fields as 'attacks' creates false positives for every
legitimate admin ticket save (issue #61).
Split FORBIDDEN_FIELDS into two context-aware lists:
- FORBIDDEN_FRONTEND_FIELDS: ticket_id, number, created_at, modified_at,
store_id, visitor_id, rate — suspicious from a regular customer
- FORBIDDEN_ADMIN_FIELDS: [] — admin can do everything, whitelist is the defense
Updated hasForbiddenFields/getAttemptedForbiddenFields to accept $isAdmin flag.
Callers explicitly pass false (frontend) or true (admin). 1088a0 -
fix(TicketDataFilter): empty FORBIDDEN_FIELDS to stop false positive security logs
Magento UI Component admin form sends ALL fields (hidden + disabled) on
every POST — ticket_id, number, created_at, store_id, etc. — causing a
'Mass Assignment attack' warning on every legitimate admin ticket save.
The whitelist (filterAdminData/filterCustomerData) is the actual defense.
FORBIDDEN_FIELDS detection is redundant and misleading in this context. ebc2eb -
fix(TicketDataFilter): add missing keys to ADMIN_ADDITIONAL_FIELDS
Keys swissup_helpdesk_ticket_message, http, website, ftp were silently
stripped by filterAdminData() before reaching ResourceModel/_beforeSave
and _afterSave, causing:
- admin replies to never create TicketMessage (no email sent to customer)
- HTTP/website/FTP credentials to never be written to the notes field 3920bc
-
-
1.4.3
-
head
-
2.6.9
-
Version 2.6.9 185684
-
-
1.0.2
-
1.0.0
-
Version 1.0.0 6cf6c7
-
-
1.0.2
-
1.0.0
-
Version 1.0.0 07e2be
-
Remove banner from page checkout 2af2bf
-
Category page. category image add fetchpirority. dfb6f9
-
Product Page. Fix images popup (close #26). A bit better solution. As for me :) 8f4f56
-
Grouped product. #11 0dd936
-
Product Page. Fix images popup. #26 5a27c2
-
Add section products on home page #27 ed2ba0
-
-
1.0.2
-
0.3.0