You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
This commit was created on GitHub.com and signed with GitHub’s verified signature.
Highlights\n\n- Controlled PDF/audio derivations and evidence-bounded one-hop graph context.\n- Official-format CodeBuddy local marketplace plugin with MCP, skills, hooks, and no host settings mutation.\n- Explicit Star History CI dispatch workflow.\n- Synchronized release manifests for supported plugins.\n- Replaced legacy gray-matter/js-yaml parsing with maintained yaml frontmatter parsing.\n- Hardened production dependency chain and removed vulnerable optional Transformers/sharp from default installation.\n\n## Verification\n\n- Full prepublish gate passed.\n- Production dependency audit: 0 vulnerabilities.\n- Packaged MCP stdio smoke: 9 tools, including memorix_project_context.\n- CodeBuddy setup dry-run passed without changing host settings.\n\nNative CodeBuddy CLI was not installed on the release workstation, so native-host validation is not claimed. PR #178 remains independent and open with changes requested.