Manager runtime
Waiting for the local service snapshot.
- Manager
- -
- Preview index
- -
- Scheduler
- -

Review health, schedule state, configuration, and generated previews without exposing TautWeekly to a cloud service.
Private by design. This Manager makes no analytics or cloud-management requests.

Here is what TautWeekly can confirm from this host right now.
No operational action is performed by this dashboard.
Add Tautulli, Plex, and email settings, then let the Manager validate the non-sending setup checks.
Generate local newsletter previews from the Preview center. Email is never sent by that action.
Runtime health is kept separate from configuration and external integrations.
Waiting for the local service snapshot.
Safe setup checks have not been recorded.
Inspecting the configured Windows task.
Task execution is not presented as inbox delivery.
Safe checks run after a successful save and remain available for manual retesting.
Task Scheduler has not reported an upcoming run.
No sanitized renderer result has been recorded.
Only authenticated, indexed HTML files are available.
Review every supported value and preserve stored credentials. The first valid save runs initial setup; later saves rerun only the checks or local previews affected by each card.
Waiting for a validated configuration save.
This workflow never authenticates to SMTP, sends email, changes welcome state, or installs or modifies a schedule. Every check remains available for manual retesting.
The first valid save, or a saved Tautulli connection change, loads these choices automatically. Sanitized library metadata, user IDs, display names, and explicit roles are retained locally for other saved cards; email addresses and credentials are never stored in this cache.
Select at least one active movie or TV library. Saving the form applies these choices without exposing raw IDs.
Checked users do not receive production delivery. Unchecked active users with an email address are eligible; Tautulli notification-agent settings do not control TautWeekly delivery. Repeat lookup refreshes these Manager choices only. Every manual or scheduled production send first refreshes Tautulli's Plex user list and then reads the live roster; a new eligible user is included unless excluded. Every user remains available for previews and TestEmail runs.
The current config.json is invalid or unreadable. The Manager will not overwrite it or guess at its contents.
Backups expose metadata only. Rolling retention keeps the newest 10 and removes the oldest on overflow. Restoring validates the selected file and first saves the current configuration. Deletion is manual, confirmed, and permanent.
Review the configured delivery window and make one explicit change at a time.
The Manager accepts only package-defined schedule actions and rechecks the saved configuration revision before applying one.
Disabling or removing a schedule never cancels a newsletter process that is already running.
Create the verified SYSTEM task from the configured day and local time.
Allow the package scheduler to begin future scheduled newsletter runs.
Prevent future starts while preserving configuration, history, output, and any delivery already running.
Delete only a task whose ownership matches this installation. Private TautWeekly files remain in place.
Review this operation before requesting Windows administrator approval.
No UAC request has been started by this Manager.
Successful saves run safe compatibility checks and the full enabled-cache check automatically. Use this page for optional rechecks after later service, filesystem, or configuration changes; they are not background heartbeats.
The Manager disables proxies and redirects, applies short timeouts, and rejects public or link-local addresses. Tautulli receives its API key using its required API query format; Plex receives its token only in the X-Plex-Token header. Neither secret is returned to this browser or logged.
No connection is attempted on page load or passive dashboard rendering. Header Refresh repeats saved Tautulli choice discovery and an eligible update check; it does not run this direct-Plex verification. SMTP, newsletter generation, email delivery, and scheduling are outside this service check.
No integration result is retained for this saved configuration.
SMTP may be a public provider, so this separate check permits routable private or public unicast endpoints while rejecting unsafe address classes. It stops before authentication and never sends sender, recipient, subject, newsletter, or message data.
The Manager checks DNS/TCP, the SMTP greeting, EHLO, and certificate-validated STARTTLS when enabled. Authentication and sender permission require the separate guarded TestEmail delivery.
No SMTP preflight is retained for this saved configuration.
The browser receives counts and health states only. It never receives cache paths, titles, GUIDs, rating keys, hashes, artwork, viewing metrics, recipient data, credentials, or manifest contents.
Validate, save, and verify runs the independent cache refresh when its coverage inputs change, then completes this full local check. Recheck later to create and remove one fixed-content write probe, validate the bounded manifest and backup, and hash cached artwork. No service or recipient is contacted.
No deleted-item cache status is available for this saved configuration.
Generated HTML is served through an authenticated, sandboxed viewer.
Uses the saved configuration and Tautulli user ID to create local HTML in the package output folder. This action contacts the configured services, but does not contact SMTP, send email, or change welcome state.
Uses the saved configuration and selected Tautulli user to send six real messages exclusively to the configured TestEmail. The address is not copied into operation history. This does not send to Plex users or change welcome state.
Choose one Manual Welcome newsletter for a selected user or the normal production send for every eligible recipient.
Aggregate delivery evidence will appear after a manual send starts.
The Manager keeps sanitized operation state locally.
The index from the latest successful run opens automatically.
Checking. Count-only FIFO keeps the newest 20 completed items; each new overflow item removes the oldest. Records contain only operation type, timestamps, aggregate counts, package version, exit status, generated preview identifiers, and an allowlisted failure category with a sanitized support code when needed.
Review the authentication controls for this package.
Keep the local Manager available from the notification area without changing the independent newsletter schedule.
Closing the Manager is separate from newsletter delivery. Exit TautWeekly for Plex removes only the tray icon and local Dashboard server. It does not disable the weekly Windows Scheduled Task or cancel a newsletter delivery already running.
Checking the local access policy.
Local recovery remains available. If the password is forgotten, run 18-RESET-MANAGER-ACCESS.bat from the TautWeekly folder. Installed copies also include Reset-TautWeekly-Access.cmd. Recovery disables only the Manager lock and leaves configuration, credentials, schedules, history, and previews untouched.
Open the Manager from an ordinary remote browser through a stable public HTTPS address. The Manager remains bound to loopback; Funnel proxies only the fixed local target.
One-time Tailscale approval is required. Review the official page, approve Funnel for this device, then return here and choose Verify.
Funnel makes the Manager login page publicly reachable over HTTPS. Remote viewers do not need Tailscale or a VPN, so the Manager password lock is mandatory. Use a unique password; Internet login attempts remain a brute-force risk.
Local access remains the recovery path. Password-lock disable and uninstall first turn off and verify only the exact TautWeekly Funnel. If verification fails, the password and application stay in place.
Reading the last local update result. No Internet request is made during normal refresh.
The package reports the safe update boundary for this platform.
The Manager never gains host control. Container profiles do not mount the Docker socket, add a privileged helper, run the web process as root, or mutate the host. Use the reported full-semver reference or its manifest digest; minor, latest, and edge tags are mutable. Native Unix packages keep installation in their existing host wrappers.
Preview and schedule actions are allowlisted. Browser input cannot choose an executable, script path, or command string.
The Manager applies the network and authentication boundary owned by this package.
Secrets stay hidden during normal reads. Revealing returns only the selected credential, uses password re-authentication when the optional lock is enabled, and automatically clears from the page.
Task execution, SMTP acceptance, and inbox delivery remain distinct states in both API copy and interface labels.
Updates and rollback follow the package boundary reported by this Manager.
Useful setup evidence is retained without storing configuration values or raw service responses.
Sanitized and bounded. Each event contains only a timestamp, category, outcome, fixed summary, and support code. URLs, IP addresses, email addresses, user identities, media data, credentials, and raw command output are excluded. Count-only FIFO keeps the newest 20 events; each new overflow event removes the oldest.