From a0f315be51ef121618e73d5b450c8616c0d11d21 Mon Sep 17 00:00:00 2001 From: Astounds Date: Mon, 20 Apr 2026 01:22:55 -0400 Subject: feature/hls: Add HLS playback support, and refactors documentation for better usability and maintainability. (#1) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit ## Overview This PR introduces HLS playback support, improves the player experience, and refactors documentation for better usability and maintainability. ## Key Features ### HLS Playback Support - Add HLS integration via new JavaScript assets: - `hls.min.js` - `plyr.hls.start.js` - `watch.hls.js` - Separate DASH and HLS logic: - `plyr-start.js` → `plyr.dash.start.js` - `watch.js` → `watch.dash.js` - Update templates (`embed.html`, `watch.html`) for conditional player loading ### Native Storyboard Preview - Add `native_player_storyboard` setting in `settings.py` - Implement hover thumbnail preview for native player modes - Add `storyboard-preview.js` ### UI and Player Adjustments - Update templates and styles (`custom_plyr.css`) - Modify backend modules to support new player modes: - `watch.py`, `channel.py`, `util.py`, and related components ### Internationalization - Update translation files: - `messages.po` - `messages.pot` ### Testing and CI - Add and update tests: - `test_shorts.py` - `test_util.py` - Minor CI and release script improvements ## Documentation ### OpenRC Service Guide Rewrite - Restructure `docs/basic-script-openrc/README.md` into: - Prerequisites - Installation - Service Management - Verification - Troubleshooting - Add admonition blocks: - `[!NOTE]`, `[!TIP]`, `[!IMPORTANT]`, `[!WARNING]`, `[!CAUTION]` - Fix log inspection command: ```bash doas tail -f /var/log/ytlocal.log ```` * Add path placeholders and clarify permission requirements * Remove legacy and duplicate content Reviewed-on: https://git.fridu.us/heckyel/yt-local/pulls/1 Co-authored-by: Astounds Co-committed-by: Astounds --- generate_release.py | 29 ++++++++++++++++++++++++----- 1 file changed, 24 insertions(+), 5 deletions(-) (limited to 'generate_release.py') diff --git a/generate_release.py b/generate_release.py index 8bec3a0..5ee0a51 100644 --- a/generate_release.py +++ b/generate_release.py @@ -44,6 +44,10 @@ def remove_files_with_extensions(path, extensions): def download_if_not_exists(file_name, url, sha256=None): if not os.path.exists('./' + file_name): + # Reject non-https URLs so a mistaken constant cannot cause a + # plaintext download (bandit B310 hardening). + if not url.startswith('https://'): + raise Exception('Refusing to download over non-https URL: ' + url) log('Downloading ' + file_name + '..') data = urllib.request.urlopen(url).read() log('Finished downloading ' + file_name) @@ -58,12 +62,14 @@ def download_if_not_exists(file_name, url, sha256=None): log('Using existing ' + file_name) def wine_run_shell(command): + # Keep argv-style invocation (no shell) to avoid command injection. if os.name == 'posix': - check(os.system('wine ' + command.replace('\\', '/'))) + parts = ['wine'] + command.replace('\\', '/').split() elif os.name == 'nt': - check(os.system(command)) + parts = command.split() else: raise Exception('Unsupported OS') + check(subprocess.run(parts).returncode) def wine_run(command_parts): if os.name == 'posix': @@ -92,7 +98,20 @@ if os.path.exists('./yt-local'): # confused with working directory. I'm calling it the same thing so it will # have that name when extracted from the final release zip archive) log('Making copy of yt-local files') -check(os.system('git archive --format tar master | 7z x -si -ttar -oyt-local')) +# Avoid the shell: pipe `git archive` into 7z directly via subprocess. +_git_archive = subprocess.Popen( + ['git', 'archive', '--format', 'tar', 'master'], + stdout=subprocess.PIPE, +) +_sevenz = subprocess.Popen( + ['7z', 'x', '-si', '-ttar', '-oyt-local'], + stdin=_git_archive.stdout, +) +_git_archive.stdout.close() +_sevenz.wait() +_git_archive.wait() +check(_sevenz.returncode) +check(_git_archive.returncode) if len(os.listdir('./yt-local')) == 0: raise Exception('Failed to copy yt-local files') @@ -136,7 +155,7 @@ if os.path.exists('./python'): log('Extracting python distribution') -check(os.system(r'7z -y x -opython ' + python_dist_name)) +check_subp(subprocess.run(['7z', '-y', 'x', '-opython', python_dist_name])) log('Executing get-pip.py') wine_run(['./python/python.exe', '-I', 'get-pip.py']) @@ -241,7 +260,7 @@ if os.path.exists('./' + output_filename): log('Removing previous zipped release') os.remove('./' + output_filename) log('Zipping release') -check(os.system(r'7z -mx=9 a ' + output_filename + ' ./yt-local')) +check_subp(subprocess.run(['7z', '-mx=9', 'a', output_filename, './yt-local'])) print('\n') log('Finished') -- cgit v1.2.3