From 5ca04a85342607172e7083ff5d8442e57b12b34d Mon Sep 17 00:00:00 2001 From: zarzet Date: Sun, 26 Jul 2026 17:58:37 +0700 Subject: [PATCH] docs(extensions): document the .sflx package suffix --- docs/EXTENSION_DEVELOPMENT.md | 11 ++++++++--- 1 file changed, 8 insertions(+), 3 deletions(-) diff --git a/docs/EXTENSION_DEVELOPMENT.md b/docs/EXTENSION_DEVELOPMENT.md index f0e69897..bdd1fac2 100644 --- a/docs/EXTENSION_DEVELOPMENT.md +++ b/docs/EXTENSION_DEVELOPMENT.md @@ -65,9 +65,14 @@ Package the contents—not their parent directory—as ZIP: ```bash cd my-extension -zip -r ../my-extension.spotiflac-ext manifest.json index.js +zip -r ../my-extension.sflx manifest.json index.js ``` +An extension package is a plain ZIP archive renamed to `.sflx`. The longer +`.spotiflac-ext` suffix is the legacy alias; both are accepted everywhere +(manual import, repo downloads) and the layout is identical. Use `.sflx` for +new packages. + `manifest.json` and `index.js` must be unique files at the archive root. SpotiFLAC Mobile rejects traversal paths, symlinks, duplicate paths, oversized manifests, and archives whose extracted size exceeds the safety limit. @@ -182,7 +187,7 @@ Repository maintainers should publish a SHA-256 digest for every package: "version": "1.0.0", "description": "What this extension provides", "category": "metadata", - "download_url": "https://example.com/my-extension.spotiflac-ext", + "download_url": "https://example.com/my-extension.sflx", "sha256": "64-lowercase-hex-characters" } ] @@ -192,7 +197,7 @@ Repository maintainers should publish a SHA-256 digest for every package: Generate the digest after building the package: ```bash -sha256sum my-extension.spotiflac-ext +sha256sum my-extension.sflx ``` Store downloads with a published digest are written to a temporary file,