Wave 3 of the 2026-09-28 design overhaul.
- Esc (no modifiers) cancels an in-progress dictation, recording or
processing: VoiceModeService.requestEscape() queues the dead 'escape'
action. Clicking the capsule cancels only while recording, so a stray
click during processing no longer throws the text away.
- Errors show in the user's language: bootstrap now passes error.code to
the tip (the translated branch never ran), and one core classifier
(voice-error-message) feeds both the tip and the main-window alert.
- Capsule: bars stay flat without input (no fake "alive" wobble before the
mic opens), an indeterminate bar replaces the made-up percentage, the
partial transcript stays visible while processing, an Esc hint, and a
brief "Inserted" state so success is visible.
- All six popups share popups/_shared (Pretendard, one panel radius,
selection, kbd hints, reduced motion). History/command popups get
titles, listbox roles and window sizes from popup-list-geometry (empty
states were clipped); the command popup's "0" key is registered;
result popup explains why it appeared and can be closed; captions keep
a theme-independent dark backing on purpose.
- Popup themes follow the OS when set to system and the document lang
follows the app language.
- Site hero demo mirrors the new capsule (done state, indeterminate bar,
Esc hint; 10 locales).
Wave 2 of the 2026-09-28 design overhaul ("records are the main
character, a quiet instrument"). Decisions: design.md.
- Shell: sidebar with primary Home / Records / Meetings (Ctrl+1..3) and a
secondary "Tools" group; every item is a button with aria-current.
The status bar is removed — its "100% LOCAL PRIVACY · ZERO CLOUD SYNC"
claim contradicted device sync; the sidebar shows only queried state.
- Navigation context (routes, params, back, useRouteRequest) so Home can
open a specific meeting or record.
- Home replaces the dashboard: dictation key, start actions, only real
problems, one-line summary, recent records and meetings, file
transcription, free-tier limits.
- Settings become a full-screen route with vertical tabs (tabs no longer
clip) and a shared row grammar; long-standing bugs fixed: team and
enterprise tiers crashed the license tab (currentTier undefined),
first-run onboarding could not be left, Pro+ saw "upgrade to Pro+".
- Records: date-grouped single list with in-place expansion, search and
tags together, mode/favorite filters, load more past 50, undoable
delete. Meetings: list with search/rename/delete, summary-first detail
(summary | transcript | documents | my notes), notes persisted locally
instead of being lost. Tools pages cleaned up; stale-closure example
chips and a 1550x mouse-distance bug fixed.
- Shared pieces: PageHeader, EmptyStateCard, SearchInput ("/" works),
ConfirmDialog, notify with undo; display-labels maps domain values to
typed i18n keys so missing keys fail to compile.
- Mono font stack falls back to Pretendard for Hangul (Korean labels no
longer render spaced out).
- i18n: new ko/en keys via scripts/i18n-add-keys.mjs (one read-merge-
write so parallel editors cannot clobber locale files).
Some renderer files also carried pre-existing in-flight changes (error
recovery deep links, meeting document hooks); they are included as-is.
Batch of red-team r3 fixes that were in the working tree before the
2026-09-28 design overhaul, committed as one unit with their tests.
- desktop main: STT timeouts and sidecar, voice recording store, sync
(credentials, audio, knowledge reindex, push gates), runtime
provisioner, update policy, AltGr keybindings, voice-command policy,
dictionary file codec/limits, meeting transcript condensing and a
local recording ledger so interrupted-session recovery only closes
meetings this device recorded (a phone's live meeting is left alone).
- mobile: login CSRF via implicit token callbacks rejected, account
deletion/retention, durable queue retention, knowledge realtime
without unfiltered DELETE, meeting re-record failure paths, cloud STT
client, preferences store/resync.
- core: text chunking splits long unbroken transcripts to fit, template
field policy, dictionary limits, meeting markdown inline handling.
- server: payple webhook policy and cancellation order scope, meeting
document generation quota, team RPC null-role guard, unified LLM
quota in-flight accounting, knowledge chunk vector index, meeting
re-record failure paths (migrations 20260929*).
- ci: portable/runtime feed gates, update-policy schema, Forgejo file
delete and alias planning.
Four older tests are updated to the new contracts rather than the old
behavior: token-pair auth callbacks are rejected, knowledge realtime no
longer subscribes to DELETE, long transcript lines are split, and
meeting recovery requires the local recording ledger for empty rows.
- Add theme-raw.ts (no MUI/DOM deps) as the one source of theme values.
Each theme declares only surfaces, 3-tier text, borders, accent and
overlay shadow; legacy glass/gradient/glow/crt keys are derived as
flat values so existing call sites lose effects without edits.
- Tertiary text now clears 4.5:1 on every surface in all six themes
(label/inactive/dimLabel/muted alias it). Filled buttons use
accent.solid + accent.ink (5.17:1 on dark/light, was 3.68:1).
- theme-vars.ts derives popup CSS from the same raw values instead of a
hand copy, and defines the previously undefined --d3-overlay-strong
and --d3-accent-glow-dim.
- MUI: no ripple, global focus-visible ring and reduced-motion rule,
flat Card, status colors per theme, shape radius 16 -> 6.
- DS: flatten MetalCard/DoubleBezelCard/ScreenPanel/TiltCard, tone-based
PhysicalButton (500 weight, no lift), TactileBadge with zero tracking
and keyboard support, glow-free Led/StatRing, idle wave amplitude 0.
- PhosphorText drops mono/uppercase variants: mono has no Hangul glyphs,
which spaced out Korean labels.
- design.md: record the 2026-09-28 redesign brief, audit, IA and tokens.