One unified extension
MokonyxCross (cross-posting) and MokonyxOpenGraph (social meta tags) are now merged into a single com_mokonyxsocial component — one install, one update stream, one dashboard. Content you publish can be queued and posted automatically to Mastodon, Discord, Facebook, X/Twitter, LinkedIn, Bluesky, Telegram, Slack and more, while the matching og: and twitter: tags are emitted for rich link previews.
New in this cycle
- First-run setup wizard — a guided walkthrough (with an onboarding tour) so a new install is configured in minutes.
- Site-to-site relay — cross-post to another MokonyxSocial site, which then fans the article out through its own connected services.
- Scheduled auto-send — the post queue now dispatches on a schedule out of the box.
- Fresh-install ready — a clean install experience; the installer self-heals the admin menu, database schema, packaged plugins, and guided tours on every install and update.
Security hardening
This cycle closes several access-control gaps so that every privileged action is properly permission-checked:
- The REST dispatch endpoint — which publishes a queued post out to a third-party platform — now requires the Edit State permission. A valid API token alone is no longer sufficient.
- Completing the setup wizard — which can write configuration and create service credentials — now requires a dedicated Setup permission.
- The service Test action, the preview panel, the tag-lookup API, and the admin entry point are all gated on the Manage permission.
Permissions are configured under Components → Mokonyx Social → Options → Permissions, using Joomla's standard access-control groups. We recommend granting Manage to reviewers, adding Create/Edit/Edit State for the team that runs social, and reserving the Setup permission for administrators.
MokonyxSocial is part of the Mokonyx product line by Moko Consulting.