Every version of ServerStick, newest first — the same notes your server shows
you when an update is ready. Your server updates itself, so you are normally
already on the latest. Versions read app:packaging; the second
number changes when a release is repackaged without changing what it does.
Hermes is easier to read: answers are no longer squeezed into a narrow bubble, and when Hermes runs out of room mid-thought you now see what it was working through instead of an empty reply. Buttons stay legible on light wallpapers. Groundwork for reaching this box directly on your own network, without the round trip through our server.
Each app’s settings panel now shows how that app is doing — its health checks, how long it has been running, and when it was last backed up (including a warning when it never has been).
Removed the mining CPU limit slider. Mining already steps aside on its own the moment your apps need the processor, which works better than any number you could set, so the slider only made the choice look like yours to get wrong.
Publishing an app to the internet no longer hands you the link before its security certificate is ready — it now says it is still setting up, and the link appears when it will actually work. If publishing fails, there is a Try again button instead of just an error.
Mining now shows what it has actually earned over the past week, next to what your AI use cost — so you can tell whether it is worth leaving on. Text across the dashboard is larger on laptops and desktops instead of a fixed small size.
Fixes the settings panel for your apps, which was showing an error instead of opening. The mining tile now takes you straight to the mining settings rather than to the top of settings.
New: a notifications bell in the top bar tells you when an update is ready, when AI credit is running low, when storage is filling up, or when something is not backed up — instead of you having to go looking. Settings are now grouped rather than one long list. Mining no longer quietly reserves about 2 GB of memory on smaller servers, and you can choose for yourself whether it favours memory or earnings.
You can now bring your own AI key from seventeen providers instead of four, and the Google option works — it was pointing at the wrong address before. Health checks also report memory now.
Health checks now include memory, so Hermes can tell you whether the box is running out of RAM instead of only guessing from how it feels.
Your AI credits now work for the Hermes assistant as well as the dashboard chat, and the connection renews itself — so it keeps working past the first day without you doing anything.
Hermes can now look after your server through the same checked tools the dashboard uses — reading logs, checking status, restarting an app — instead of running raw commands. Groundwork; you should not notice a difference yet.
New app links are now secured before you are given them, so opening one no longer risks a browser security warning while the certificate is still being issued. Also reports this server’s own address correctly rather than your router’s.
Also shipped as 0.6.36:0, 0.6.37:0.
The StartOS panel now lists only addresses you can actually open, instead of every address the box knows about — most of which could never work from another device.
Fixes Hermes sometimes printing a block of code at you instead of actually doing what you asked.
Your server can now update StartOS itself from ServerStick. A downloaded update waits for you to restart the server, and ServerStick now tells you when that is the case.
Your server can now update StartOS itself from ServerStick, instead of sending you to a separate control panel to do it.
When an app needs a newer version of StartOS than this server is running, installing it now says so plainly instead of failing with "Not Found".
Hermes can now read the logs of any app you have installed, not just the ones it shipped knowing about. Adds a Hermes Controls tile for its skills, scheduled jobs and memory.
Hermes now checks what is actually installed on this device before answering, instead of relying only on what it knew when it was built.
Fixes two ways the dashboard could forget a password that was correct, leaving the StartOS and Backup panels stuck until you set the box up again. Mistyping your password once was enough to trigger the worse of the two: the typed password was saved before it had been checked, so a typo overwrote the working one and was then thrown away. Passwords are now checked with the server before anything is saved, so a wrong guess leaves your saved password untouched. Separately, signing in and finishing setup back-to-back made the dashboard re-check the same password twice within seconds; the server's own rate limiter turned the second check away and the dashboard misread that as a wrong password. It no longer makes that redundant check, and only forgets a saved password when the server actually says it is wrong.
Fixes the dashboard forgetting a password that was correct. When it re-checked your password with the server twice in quick succession -- which happened during normal sign-in and setup -- the server's own rate limiter would turn the second check away, and the dashboard mistook that for a wrong password and erased the saved one. The visible symptom was being asked for the same password twice, after which the StartOS and Backup panels stopped working until the box was set up again. The dashboard now skips the redundant re-check entirely, and only forgets a saved password when the server actually says it is wrong.
Adds support for StartOS 0.4.0 and 0.4.0.1. StartOS 0.4.0 replaced its login system with signed requests, which stopped this dashboard from talking to the server at all -- it now signs every request and works across both the old and new StartOS. This also unblocks installing apps: the app catalogue now requires a newer StartOS than the one shipped on the original stick, so servers still on 0.4.0-beta.9 could not install anything. The StartOS panel now tells you when updating will fix that. If a future StartOS release ever changes authentication again, the dashboard now says so in plain language instead of reporting a wrong password.
Mining now has its own Settings section (it used to just open Settings with nowhere to go). Hermes checks backup health before recommending Immich/Nextcloud/Vaultwarden/Files, and mentions a private tunnel when you need an app on your phone. The app catalog loads at boot instead of on your first "Add app" click.
Settings now shows what needs attention without opening every tab: a red or amber dot next to Backup or Security when something's wrong. Backup is also a real Settings section now, not just something you had to find by clicking its tile.
Backup tile now warns harder when it matters: red "at risk" instead of a generic amber nag if Immich, Nextcloud, Vaultwarden, or Files is installed and unprotected. Hermes can now check your backup health and open the backup panel for you (never touches your share password itself) -- ask it "are my backups okay?" or "help me set up backups."
Two new ways to send feedback: a small icon on Hermes' header (visible whether the panel is open or collapsed) and one right in the chat input, both opening the same reviewed report -- you see exactly what gets sent before it does.
Login now backs off automatically after repeated wrong passwords (persistent, restart-proof), and Settings > Security shows failed login attempts against this server.
Managed AI now runs on the newer DeepSeek V4 Flash 0731 checkpoint by default.
Reporting a problem now happens in the dashboard, not in the chat. Ask Hermes about something that went wrong and it writes the report up for you — then the dashboard shows you the complete thing, every field, before you decide whether to send it. You can also report a problem yourself from Settings, without Hermes.
Also shipped as 0.6.15:0.
Hermes can now report problems for you. When something breaks, ask it to look — it checks what it can, tells you what it found, and shows you exactly what would be sent to ServerStick support before anything leaves your server. Nothing is sent unless you say yes.
Also shipped as 0.6.14:1, 0.6.14:2.
This server now keeps itself up to date: fixes to ServerStick’s own software install on their own, and you can turn that off or check for updates yourself under Settings › Updates. Apps you installed are never touched. Also fixes a problem where a freshly set-up server could end up with no public address, and the address now repairs itself if it ever goes missing.
Backups are now in the dashboard: pick a USB drive or a network share, back up on demand, and see when it last happened. The homescreen is rearrangeable — drag tiles to reorder, pull a corner to resize — and every app tile has a settings panel for its addresses and whether it is on the internet, plus a corner button to pause or start it. Server stats, settings and the Hermes chat panel have all been redesigned.
The brain-setup model picker now fetches its recommended-model list live from ServerStick Cloud instead of a hardcoded list baked into the dashboard, so the lineup can be updated centrally without a device update.
Security and disclosure patch, no feature changes: dashboard logins now use revocable, expiring sessions instead of one permanent cookie; the auth cookie is marked secure over the public tunnel; login rate-limiting is now scoped per client instead of shared globally; the mining card now plainly discloses that mining uses your electricity and requires an explicit confirmation before it turns on; and license/compliance paperwork for the bundled miner is now included in the package.
Optional mining: you can now turn on background mining from the dashboard to earn Credits (a prepaid meter for AI usage) with your device's spare CPU. It is off by default, always visible while running, capped, and automatically pauses whenever your other services need the processor, so nothing slows down. Your AI balance is now shown as Credits rather than a dollar amount. (x86_64 devices only for now.)
Onboarding reliability. Setting up now publishes your dashboard at its own address automatically (it used to leave the box with no public link to itself), starts the tunnel even when it was stopped, and retries instead of giving up on the first hiccup. Hermes also gives the right advice when it temporarily loses its connection to StartOS.
Also shipped as 0.6.6:0.
Real app icons. The springboard and the Add-app picker now show each app’s actual icon (from the app itself once installed, or the registry beforehand) instead of a stand-in emoji.
Real service installs: the catalog now installs actual StartOS packages from the Start9 registries (Nextcloud, Jellyfin, Immich, Vaultwarden, File Browser, Uptime Kuma, SearXNG, ntfy) with live install progress. Public URLs are only created once a service is installed (no more 502 placeholder subdomains), and tunnel ports are discovered from StartOS instead of guessed. Hermes can now install/uninstall services (with confirmation), read service logs, check system status, credit balance, and manage subdomains. Managed-tier credit display shows the real ledger balance.
Dashboard now unlocks with your StartOS admin password (the old "setup code" was never actually shown anywhere). Also: claim-code onboarding, per-device managed-AI auth with automatic token refresh, no wallet prompt on the managed tier, and backend endpoints on *.api.serverstick.com.
Claim-code onboarding (registration is now gated by a one-time code), per-device managed-AI auth with automatic token refresh (no shared secret on the device anymore), managed tier no longer asks for a wallet address, and backend endpoints moved to *.api.serverstick.com.
Test bump to verify the ServerStick registry update flow end-to-end (no functional changes).
Spike: prove the S9PK packaging works. Not production-ready.