Closed beta
What we shipped.
Notes for people already using Shiplet. Newest first.
Clearer workspace settings
2026-09-09
- Settings now opens with Plan & usage. Workspace rules and general details have their own sections, with a responsive plan summary and clearer quota meters.
- Failed usage requests show a retry button. Compute allowances are labeled as beta targets while runtime metering and enforcement are being verified.
Safer staging deployments
2026-09-09
- Staging deployments now run as a non-root user with a read-only root filesystem. Temporary bootstrap files and the npm cache use a dedicated writable /tmp area.
- The runtime image is mirrored into private ECR and pinned by digest. We verified startup, health, bundle extraction, dependency installation, and build startup on AWS staging.
Apps can see who opened them
2026-09-08
- Requests through the Shiplet URL now include who is calling: id, name, email when we have it, role, and environment. Browser apps can fetch ./__shiplet/session. Server apps can read x-shiplet-identity. You still do not add OAuth to the small app.
Approved outbound hosts by default
2026-09-08
- New and existing workspaces now default to approved destinations only. If inspection finds a host that is not on the workspace list, deploy is blocked until you add it in Workspace settings. This still does not packet-filter a running task; it stops a deploy when the repo already shows unapproved destinations.
Honest runtime label
2026-09-08
- The console now labels Fargate as a Guarded MVP runtime. Tenant split is real. Arbitrary-code isolation is not claimed until the isolation suite is green.
Pause, resume, delete, and honest usage
2026-09-08
- Pause, resume, and delete an app from Configuration. Pause stops tracked runtime tasks. Resume starts a fresh deployment and opens Deployments so you can watch it come up.
- Delete asks for the app name. Shiplet stops tracked tasks, then removes the app. GitHub stays. CloudWatch logs, old task definitions, and leftover AWS network records are not purged.
- A wake that stays on Waking for more than five minutes can be paused. It no longer traps the app.
- Hitting 5 apps or 20 deploys in 24 hours now explains the limit in plain language. Running apps are not cancelled.
- Overview shows latest-deploy diagnosis and build output, including first-deploy failures.
- Demo Postgres shows a calendar expiry date, not only “30 days.”
- Usage shows a list-price compute estimate from recorded task size and how long each deployment ran. That number is not your AWS invoice.