Any admin can install a sandboxed extension from a git URL, no server access needed. An extension is TypeScript compiled to WebAssembly and run inside atmoBB, one instance per install, with no filesystem or network of its own; it reaches the forum only through the capabilities (kv, records, timers, notify) an admin grants it at install. It can show a panel on a thread staff attached it to, or on its own page at /ext/<repository>; keep private state; publish records to the forum's own repo, in NSIDs under the extension's own authority; run on a schedule; and send notifications through atmo.pub. Install review shows what it would publish, what it can do and see, and whether the atmobb.app directory has endorsed the repository or reviewed this exact release, a trust signal, not a gate. Updates, rollback, disable, and uninstall all go through the same review, with an openWork handler and a force option for an extension with work in progress. The extension authoring kit scaffolds a project, builds it, and runs it against a dev forum before you ever tag a release.
Hi, I'm Keith! You can @ me with any bugs or problems or ideas, but pls be nice.