v1.6.1 – Governance & Runtime Reliability
v1.6.1 – Governance & Runtime Reliability / 治理与运行可靠性修复 (2026-09-23)
✨ 保留人工决策,修复项目与运行边界
本次更新加强 P1 问题保护,并修复项目登记、历史归属、macOS 暂停和本地预览中的可靠性问题。
| 类别 | 详细内容 |
|---|---|
| P1 问题保护 | 模型须保留运行前已有 P1 条目及说明,可以上报新的未解决问题,不能新增已勾选条目。违规时尝试保存原稿供审查,恢复共识并暂停;日志或存档失败不再阻断恢复。 |
| 项目登记 | 并发创建和失败清理共用操作锁,失败仅撤回自己的登记,避免覆盖其他成功操作。 |
| 历史与成果归属 | 按稳定产品身份关联历史和成果,支持明确的目录迁移;同一路径上的新产品不会继承旧产品成果,缺少可靠证据的旧记录保持未关联。 |
| macOS 暂停 | 暂停前核验服务归属,查询或卸载失败明确返回,避免误停其他安装或错误报告成功。 |
| 本地静态预览 | 限制隐藏、凭据、非网页资源及越界访问,校验请求来源,并为探活和停止接口验证控制令牌。 |
| 双语说明 | README、人工问题处理步骤和看板暂停提示与实际行为一致,保留原有真实产品展示。 |
| 操作与边界 | 人工编辑共识前应停止运行并完成待处理的中断恢复。周期前后比较不能追回检查间新增后彻底删除的内容;共识恢复不撤销产品文件或外部操作,也不提供完整执行沙箱或实时预算硬停。 |
✨ Preserve human decisions and repair runtime boundaries
This update strengthens P1 issue protection and fixes project registration, history ownership, macOS pause and local preview reliability.
| Category | Details |
|---|---|
| P1 issue protection | Agents must preserve pre-cycle P1 entries and descriptions. They can report new unresolved blockers but cannot introduce checked-off ones. Violations attempt to retain the rejected draft, restore consensus and pause; logging or archival failures do not block recovery. |
| Project registration | Concurrent operations and failure cleanup share an operation lock. A failed operation removes only its own registration rather than overwriting another successful update. |
| History and artifact ownership | Stable product identity connects history and artifacts across explicit relocation. A new product at the same path does not inherit its predecessor's artifacts; legacy records without reliable evidence remain unassociated. |
| macOS pause | Service ownership is checked before pause, and query or unload failures are reported instead of stopping another installation or claiming success. |
| Local static previews | Hidden, credential, non-web and out-of-root resources are restricted. Requests validate their origin, and health/stop controls require the control token. |
| Bilingual guidance | README claims, human issue-handling instructions and Dashboard pause labels match the supported behavior, with the existing real-product gallery preserved. |
| Operation and limits | Stop the loop and complete pending interrupted-cycle recovery before editing consensus. Boundary comparisons cannot recover content introduced and completely removed between checks. Consensus restoration does not undo product files or external actions, and this release adds no complete execution sandbox or live budget cutoff. |