registrar.js: BNS.connect() now filters silentmode.st/electrum and
coinspectrum.duckdns.org:50011 out of the default electrum list. Those
endpoints are our own bns-indexer.js — beacon-only, serves get_history +
transaction.get but NOT listunspent for arbitrary scripthashes. Every
wallet op (getBalance, getUtxos, edit signing) needs listunspent, so
picking a beacon indexer first (which we did for best reachability) broke
every wallet unlock with "-32601 unsupported method: blockchain.
scripthash.listunspent". New `beaconOk: true` opts back in for pure-
resolution paths.
Rebuilt the browser bundle (site/js/bns-register.js) so the fix reaches
portal + admin + register.html + anything else that imports BNS.connect.
site-sirius-x/js/profile-menu.js: a small shared script that transforms
the "🔑 Sign in" nav pill into a dropdown menu on every sirius.x page.
Signed-out shows New wallet / Add wallet / WizardConnect + a link to the
sign-in page. Signed-in (reads localStorage 'siriusProfile') shows the
short address, My names, Admin, Sign out. Included via one <script defer>
tag on each of the 6 pages (landing / portal / admin / docs / theseus /
brand); dropdown CSS is inlined by the script itself so consumers don't
need a matching stylesheet.
Portal.html writing to localStorage.'siriusProfile' after sign-in is a
follow-up so the dropdown reflects state across pages — until then the
menu always shows the onboarding options.
/sirius-x/admin/ — sign in with the wallet ecosystem-known as operator to
mint a new TLD directly from the UI. Non-operator wallets see read-only
mode. The panel:
* Sign-in with seed phrase, wiped from memory on sign-out.
* Operator gate: address whitelist (chipnet, client-side; the covenant
countersignature enforces it on-chain once mainnet lands).
* TLD-registry table: fetched from GET /api/tlds, always visible.
* Mint form: label + records JSON → BNS.registerTldWithBuiltInWallet →
broadcast → auto-refresh registry.
* Progress log streams every step from onProgress callback.
* meta noindex,nofollow — operator surface, not for search discovery.
The "Register a TLD" card on the landing now links to /admin/ alongside
the "propose a TLD" affordance for public users.
Prereq: rebuilt bundle exports registerTldWithBuiltInWallet and
buildTldRegistrationTx (added by concurrent session). Bundle redeployed.
Sign-in view grows a "Register a new TLD" card. User picks a label (validated
against [a-z0-9-]{1,16} and normalised as they type), sees live sats price
computed from a USD field via a static chipnet oracle rate (250,000 sats/USD
≈ $400/BCH), can check availability against navigate.st/api/tlds, then submit
a TREG signed with the built-in wallet — same code path seed-tld-beacon.mjs
uses server-side, but via the browser-exported registerTldWithBuiltInWallet.
* Live price display recalculates on USD-input change; service fee is
paid to REGISTRAR.serviceFee.address (same fee address name registrations
use — no per-TLD split yet since that's mainnet covenant territory).
* Check-availability polls the live /api/tlds endpoint before the user
commits sats to a doomed TREG.
* Progress log streams the shared onProgress steps
("checking-availability", "signing", "broadcast: <txid>") so users can
tell whether the transaction actually left the browser.
* Chipnet rate + form default of $5 make full-flow tests possible from
the operator wallet (~1.25M sats each); users can override the USD to
$0.01 for cheap iteration during testing.
UI verified end-to-end (label sanitisation, price recalc, availability
check against real API, buttons gate correctly on wallet state). Full
sign+broadcast requires a funded wallet — operator can verify.
Next: real oracle (CoinGecko / Kraken feed) + tiered pricing by label
length + admin panel for changing the rate config.
The Theseus subpage on sirius.x had a hardcoded v0.0.4 with pinned download
URLs and pinned hashes — went stale within days (current is v0.3.5). Since
theseus.x is now the canonical Theseus site with its own /#download and
/#verify sections that its operator keeps current, delegate:
* Download section shrunk to a single 'Open theseus.x downloads' CTA.
Removed hardcoded version, per-build cards, size estimates. Added a
short note explaining why (sirius.x won't try to shadow theseus.x's
release notes).
* Verify section: sha256sum placeholder now takes '<downloaded-file>'
instead of a specific filename; hash-check link points at
theseus.x/#verify where the current release's hashes live.
Sirius.x/theseus becomes a small landing that says 'what Theseus is + how
it works' (evergreen); theseus.x owns everything version-sensitive.
/sirius-x/docs/#host — Pattern C section extended with:
* "The dual-host recipe, end to end" — four-step publish sequence: edit
locally → scp to VPS → sia-upload → verify both.
* "Auto-backup: one command, both mirrors" — a Bash wrapper any operator
can drop into their repo to publish to both mirrors atomically.
* "Automate the reverse — VPS → Sia periodic backup" — a cron snippet
for setups whose primary publish is straight-to-VPS.
* Note on which mirror is authoritative (chain record decides).
scripts/mirror-bcnr-site.sh — general-purpose implementation of the
recipe. Takes local-dir, ssh-dest, sia-bucket-key + optional verify URLs.
Exit codes distinguish scp failure vs sia-upload failure vs verify
failure so a CI/hook can react. Trims trailing slash from Sia bucket key
so sia-upload.js doesn't produce "bns/x//file" paths.
Each owned-name row gets an Edit button. Click → modal with editable fields
for the five most-used records (h / s3 / ip / tls / u), pre-populated from
the current on-chain values. Save signs a UPD transaction with the
in-browser wallet (same code path as sirius/register.html:
BNS.setRecordsWithBuiltInWallet) and broadcasts it.
Live payload-budget indicator shows bytes-used vs bytes-available (from
BNS.payloadBudget for op=UPD); Save disables when the record set exceeds
the 200-byte on-chain envelope so users don't waste a broadcast on a
too-large payload. Progress log inside the modal streams every step
("resolving", "signing", "broadcast: <txid>") from the shared onProgress
callback.
UI verified end-to-end in-browser (synthetic /api/holdings intercept):
modal opens, fields populate, budget calculates live, over-budget disables
Save, Cancel closes. Actual sign+broadcast needs a wallet that owns names —
operator can verify with their seed; the code path is the one register.html
has been using for months.
M1 shipped; M2 (Sia file upload) and M3 (Markdown site builder) are next.
WizardConnect wiring for external-wallet UPDs is a follow-up — the built-in
path is what this session's wallet-unlock flow already supports.
The seven .x names now on chipnet: silentmode.x, sirius.x, theseus.x,
hephaestus.x, prometheus.x, helios.x, hermes.x. New #pantheon section on
the landing lists each with dot-badge, one-line description, and a link
that goes through the silentmode.st BCNR gateway so every browser reaches
them regardless of resolver install.
/sirius-x/docs/#host walks through three patterns for actually shipping a site
under a BCNR name:
* Pattern A — Sia only (what silentmode.bch uses): sia-upload command,
bucket-path convention (bns/<label>/), chain record with trailing slash
so the gateway auto-indexes.
* Pattern B — Your own server: ip + tls records, chain-pinned TLS trust.
* Pattern C — Dual host: Sia primary + VPS mirror (what sirius.x itself
uses), with the nginx location snippet needed on the operator's box.
Also copied INSTRUCTIONS.md to /sirius-x/docs/INSTRUCTIONS.md (served as
plain text) so any session — including ones without a SilentMode checkout —
can read the full operator runbook via a public URL, no clone required.
The copy is gitignored; treat root INSTRUCTIONS.md as authoritative and
re-copy on deploy. Runbook section on docs page now lists three access
paths (browser, clone, planned Forgejo mirror at code.silentmode.st).
brand/ ships every reusable mark plus a browseable kit page:
* logo.svg — full colour wordmark (star + sirius.x, .x in acid green)
* logo-mono.svg — currentColor version for print / one-colour merch
* favicon.svg — 64×64 rounded square, scales cleanly to 16×16
* avatar.svg — 512×512 square, hard corners (platforms round-mask)
* banner.svg — 1200×630 OG / Twitter Card canvas, crop-tolerant layout
* index.html — brand-kit page: asset previews + download links, full
colour palette with names/hex, typography sample, do/don't guidance,
MIT-attribution notice.
Nav: added 🎨 Brand link to every sirius.x page (landing, portal, docs,
theseus). og:image on every page updated to point at /brand/banner.svg
instead of the wordmark logo — social crawlers get a proper 1200×630
banner with title, tagline, and mark instead of a thin logo strip.
Kept /assets/favicon.svg and /assets/logo.svg in place so existing
external references (Nostr metadata, third-party embeds) don't break.
gateway/public-gateway.mjs:
* GET /api/holdings/<scripthash> and POST /api/holdings {scripthashes:[…]}
— server-side wallet-holdings lookup for the portal. Bns-indexer is
beacon-only so it can't answer listunspent for arbitrary addresses; the
gateway does the electrum roundtrip and cross-joins with the cached BCNR
index. Client posts scripthashes (no libauth needed on the server) and
gets back the names owned.
* elConnect now falls through to whole-buffer JSON.parse when a Fulcrum
response lacks a trailing newline — chipnet.bch.ninja does this and
otherwise every elCall to it times out. Same tolerance pattern as
bns-indexer.test.mjs's tiny electrum client.
* verifyElectrum picks a full electrum with a 3s server.version probe so a
hung server fails over to the next in seconds instead of stalling 20.
* Skips silentmode.st/electrum and coinspectrum.duckdns.org:50011 for
/api/holdings — both are bns-indexer routes that don't do listunspent.
web/register-entry.js: export addressToScripthash so the portal can derive
the scripthash for each of its wallet's watched addresses before POSTing.
Browser bundle rebuilt.
site-sirius-x pages:
* favicon + logo hrefs made relative (./assets/… on index/portal,
../assets/… on docs/theseus). Absolute /sirius-x/… broke on the sirius.x
BCNR route where the site is served from root instead of under /sirius-x/.
* Roadmap nav link added back to portal, docs, theseus — the landing has an
anchor to a section on itself, so subpages now link to it explicitly.
* portal.html: loadNames rewritten to POST scripthashes to /api/holdings
instead of doing client-side electrum. Works on browsers whose networks
block chipnet electrum ports; same-origin HTTPS on 443.
* portal.html: bundle import ?v= bumped so Chrome's in-memory ES module
map picks up the new bundle instead of a stale cached copy.
assets/favicon.svg — 4-point sparkle star in acid green on a rounded dark
square. Scales cleanly at any size (16px tab icon through Retina). Uses the
Silent Mode palette so it recognisably reads as Silent Mode family.
assets/logo.svg — the same star + "sirius.x" wordmark with the .x accented in
acid green. Used as the og:image; can also be inlined as a brand mark.
Every page (landing / docs / portal / theseus) gets:
* <link rel="icon"> + <link rel="mask-icon"> pointing at favicon.svg
* og:type, og:site_name, og:title, og:description, og:url, og:image
* twitter:card + twitter:title/description on the landing (summary card)
Absolute paths (/sirius-x/assets/…) so subpages get the same brand mark
without per-page path juggling.
Bns-indexer on VPS was only exposed on port 50011 via nginx, which corporate
firewalls, mobile carriers, and many VPNs block. Added an nginx location on
443 that proxies to the same 127.0.0.1:50010, giving us a browser-friendly
WSS endpoint on the standard HTTPS port.
* lib/electrum.js CHIPNET_ELECTRUM: wss://silentmode.st/electrum listed
first (used by registrar.connect() + everything that depends on it).
* lib/resolver-web.js CHIPNET_ELECTRUM: same, kept in lockstep per the
"change both together" comment.
* bns-register.js bundle rebuilt to bake the new list.
* portal.html imports the bundle with ?v= so Chrome's in-memory ES-module
map doesn't serve a stale copy across tabs.
Portal now connects successfully; next remaining issue is that
bns-indexer only supports (server.version, get_history, transaction.get) —
`blockchain.scripthash.listunspent` for wallet address queries is not
implemented, so the "list your names" step fails there. Follow-up: add a
GET /api/holdings/<address> to public-gateway.mjs backed by the existing
BCHN electrum access, so the portal can pull holdings over plain HTTP.
Broad-scope commit sweeping in work from parallel sessions plus this session's
dev-only utilities. No single unifying theme — this is the "commit everything
that's ready" pass. Grouped by area below.
AriadneResolver / mobile
* Small updates to BchFetcher, Bns, MainActivity, AriadneVpnService, and the
Android manifest — from a parallel mobile-resolver session.
* AriadneResolver/mobile/webpreview/ — new local dev webview (index.html +
server.mjs) for iterating on the mobile UI without a device.
Email / SnappyMail
* Email/snappymail-plugin/silentmode-addresses — new SnappyMail plugin
(README, CSS, PHP entry, JS) for surfacing @silentmode.st address
management inside the webmail UI.
Hephaestus (Forgejo + auth-proxy)
* auth-proxy/src/oidc.ts + docker-compose.yml updates.
* scripts/bootstrap-auth.sh — idempotent script that registers the wallet
auth-proxy as Forgejo's OIDC provider after `docker compose up -d`. All
secrets read from .env — no literals in the script.
TheseusNavigator / dev tools
* dev/list-tlds.mjs — enumerate every registered BNS name grouped by TLD via
our own indexer.
* dev/show-tlds-bch.mjs — dump the full records payload of the legacy
tlds.bch name (kept as a diagnostic for the list-in-one-NFT era).
Deviant sites + brand
* site/deviant/ — new microsites (anthemus, potidaea, brand, mindmap, main
index) plus the full brand kit under site/deviant/brand/ (logos, icons,
palette, social exports as SVG source + PNG renders).
* site-sirius-x/portal.html — updates.
Coordination
* _coordination/sessions/mobile-resolver.md — parallel-session notes.
Deliberately excluded from this commit:
* scratchpad/ — this session's temp drafts (Sia doc mockups, tlds UPD payloads).
* TheseusNavigator/_prev/ — ~372 MB of prior release binaries; belongs in
a separate artefacts store, not the git tree. Add to .gitignore next pass.
Standard header pattern — brand + main nav on the left, the account action on
the right. New .portal class does margin-left:auto plus a subtle acid tint so
it reads as a button, not another nav item. Applied on all four pages
(landing, docs, portal, theseus); the label is '🔑 Sign in' everywhere
(portal.html itself still marks it .here).
The landing kept expanding whenever documentation was added inline. Moving it
to its own subdirectory gives docs room to grow and keeps the landing to the
"try it / roadmap / verify" story it's supposed to be.
* docs/index.html — TOC + eight sections (TLD registry, registration,
records, resolver, mainnet pricing, tracker, verification, runbook).
Reads on its own; no dependency on the landing.
* index.html — #docs section shrunk to a one-paragraph call-to-action with a
prominent "Open the docs →" button; nav Docs link now points at /docs/.
* portal.html + theseus/index.html — nav Docs links updated to /docs/ (was
./#docs / ../#docs) so every subpage points at the standalone docs.
* portal.html — sign in with a seed phrase (in-memory only, wiped on sign
out), fetch owned NFT categories across all watched addresses, cross-join
against BCNR buildIndex to show the wallet's names + records. Read-only
for now; record edit (UPD) will piggyback on the register bundle's signing
path. WizardConnect button stubbed with a "soon" pill — the adapter
already exists in register.html and will be wired in the next pass.
* theseus/index.html — download page for Theseus Navigator (v0.0.4) and
Ariadne Resolver (Windows setup + Android APK). Same design system as the
landing. Links to dl.silentmode.st for the actual binaries and to
silentmode.st/releases for the manifest.
* index.html — nav now has 🧭 Theseus and 🔑 Portal chips; "Try it" section
adds cards for the portal and Theseus.
* site/tlds/ — .com row removed from the public table; count updated to 14;
supersedes the "held by operator" language per operator direction.
* site-sirius-x/index.html — softened ICANN-adjacent note.
All routes verified live: silentmode.st/{tlds,sirius-x,sirius-x/portal.html,
sirius-x/theseus,bns/sirius.x} return 200. Sia mirror updated for all three
new/changed sirius.x pages.
The bare git tree serves over dumb-HTTP from silentmode.st/sirius-x/repo/silent-mode.git;
verified with `git clone` end-to-end. Bundle URL added too as an alternative for
environments where dumb-HTTP is blocked.
Still MVP: read-only. Push requires either Forgejo, git-http-backend + auth on
nginx, or SSH — all separate track per operator direction.
Register the name (chipnet), upload the page to Sia, mirror on VPS. Content
consolidates existing docs (silentmode.st/tlds/, INSTRUCTIONS.md) into one
canonical entry point and names the deferred pieces — wallet portal, Sirius
Studio site editor, decentralized git remote — as roadmap items.
* name: sirius.x, REG txid 15bec52981fa82f9fa1c966600204112b7478a821f8384e0c8fecaea375215e9
* records set via UPD: {"s3":"bns/sirius.x/"}
* mirrors live: https://silentmode.st/sirius-x/ (VPS, immediate) and Sia
bucket bns/sirius.x/ (BCNR route via navigate.st/bns/sirius.x/ pending
Sia propagation to the gateway's s3d)