Commit Graph

5 Commits

Author SHA1 Message Date
martbost e42f1dcc34 NAS zones on the landing and the board (PolHunter is an advertising property too)
Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
2026-09-19 16:44:14 -05:00
martbost 3199347ca7 Missions may place the token with {token} and name the embed host explicitly (Telegram Mini App launch links)
Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
2026-09-19 16:37:34 -05:00
martbost 693a04f08d Landing: sign in through the IAP hand-off directly, so PolHunter works standalone
Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
2026-09-19 16:17:04 -05:00
martbost 523d57624e PolHunter v0.2: the hunt engine
Hand-off sign-in from InstantAdPay (lib/sso.js: HMAC token, five minutes, single use; no sign-up,
no mailer), missions with per-member per-visit proof codes (lib/missions.js: the embed is
answered only from the mission's own origin, only after the dwell; hiding place rotates by day
and member), weighted-low rewards with a daily cap that queues rather than refuses
(lib/rewards.js), the faucet sender on ethers with a low-balance alert (lib/faucet.js), the
one-line embed for the sites (public/embed.js), the hunter board, the public ledger, an
admin page, and the site's own look. Telegram is behind the OUTBOUND gate like everything else.
13-check end-to-end test in test/run.js.

Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
2026-09-19 14:17:44 -05:00
martbost 1a6166abc3 PolHunter shell: default-deny gates (OUTBOUND, SIGNUPS, CURTAIN), health, placeholder page
Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
2026-09-19 10:16:11 -05:00