Skip to content

v0.2.1

Latest

Choose a tag to compare

@github-actions github-actions released this 05 Oct 22:18

What's Changed

Security

  • Project config trust checks (CWE-427): project_config() and
    find_project_root() now skip .ai/ directories that are not owned by the
    current user, preventing configuration injection (provider credentials,
    MCP servers) from shared or world-writable directories. A
    SecurityWarning is emitted when a directory is skipped or when ownership
    cannot be verified (Windows). Directories that fail verification are
    skipped, not loaded.

Changed

  • GitHub Actions bumped to Node 24 majors (checkout v7, setup-python v7,
    upload-artifact v7, download-artifact v8, action-gh-release v3) -
    clears the Node 20 deprecation annotations on every run.
  • Release workflow now derives the GitHub release body from CHANGELOG.md
    instead of relying solely on auto-generated notes.

Full Changelog: v0.2.0...v0.2.1