From the frozen build notes. Gameplay acceptance remains in progress.
Read complete changes
Native community browser
Saves now opens a first-class **Community** tab in the game's own GUI. Local My saves, favorites and the optional shared-folder inbox remain separate, clearly labeled workflows.
Added responsive thumbnail cards with map title, authenticated creator, description, tags, like count and download count. Details show the complete description, credits, map dimensions, file size, game version, sharing terms and stable map ID.
Keyword searches match all supplied words across title, description, tags and creator. Exact creator/tag filters, clickable tag chips and creator links, newest/most-liked/most-downloaded sorts, 24-entry pages and My submissions are integrated with the service API.
Added native sign-in and account creation, with no browser redirect or GitHub account requirement for players. Public browsing/downloads need no account. Passwords and bearer credentials are kept only in the running client, not configuration or save files. Initial registration is invitation-gated. Password reset/recovery and persistent sign-in are not implemented.
Submit, download and play
Local save Details and context menus now offer **Submit to community**. A dedicated form collects title, instructions, up to eight tags, attribution and an explicit sharing-permission choice. Publishing requires account sign-in and a separate permission checkbox. Ordinary Save never uploads anything.
Publication uses an owned private draft, separate bounded world/thumbnail uploads, server SHA-256 receipts and an explicit final publish transition. Incomplete transfers stay private. The byline comes from the authenticated creator, not a typed local metadata field.
Download & play and Keep in My saves use HTTPS background jobs. Transfers do not execute on the render thread. Thumbnail requests are limited to four parallel workers; loading, service failures and expired sessions are visible.
Downloaded worlds must match the catalog byte count and SHA-256 before native material/control validation. Missing identities are rejected rather than replaced silently. Downloads use unique game-managed paths. Play opens the real game with the selected map and preserves the original experiment window, without visiting a website.
Added one-like-per-account controls, remove-like, in-game problem reporting and explicitly confirmed owner withdrawal. Download counters are deduplicated per hashed network/day, not represented as exact unique-player counts.
Shared backend and operating boundaries
Added the original Cloudflare Worker service, additive D1 schema and private R2 object-storage configuration under `services/community`. Routes cover accounts, catalog, drafts, uploads, publish, downloads, ratings, reports and operator moderation with audit reasons.
SQL parameters, fixed sort choices, request/file/text bounds, ownership checks, session expiration, basic request/login/registration/upload/report limits and abandoned-draft cleanup are implemented. Concurrent upload replacement uses compare-and-swap; published object references are immutable. Service secrets never ship with the game.
Initial admission is native V6/V7, 32 MiB per online world, 8,388,608 cells, 256 global slots and 50 slots per account. These conservative capacities are not a promise of unlimited hosting or zero running cost. Server validation checks the native header; the existing bounded native reader remains the final content-admission gate.
**Not live yet:** Cloudflare authorization was expired when deployment was attempted. The shipped endpoint remains empty rather than pretending a local directory is a public catalog. Real hosting authorization, deployment configuration and two-player acceptance are still required. No paid plan was enabled. The interface explicitly reports this state.
Native free rigid-body/joint save fidelity is still unfinished; existing capture refusal remains. No production security audit, bot-proof moderation, email recovery, comments or cross-version scientific compatibility is claimed.
Release bookkeeping
Actual version and embedded What's New are now 0.1.30. GitHub and this detailed changelog are the release record. New Discord-update generation/publication is discontinued at Drew's direction.
The package includes the matching frozen source, service source, authored request records, checksums and full changelog, including earlier 0.1.23-0.1.29 changes. A GitHub release source snapshot is distinguished from master-branch commits so peer edits are not silently swept into history.
Ordinary app compilation and service syntax/bundling are delivery checks only. Drew owns testing: no gameplay interactions or automated account/submission scenarios were run. The live shared-service outcome is explicitly unfinished until authorization and real deployment succeed.