Skip to content

v1.1.2

Choose a tag to compare

@tino-cmd tino-cmd released this 29 Apr 08:49
· 48 commits to main since this release
a69f429

Security

  • openbox_api_key is no longer written to workflow history. Credentials are now captured on the governance activity instance instead of flowing through send_governance_event inputs. Rotate your key after upgrade if your namespace was shared - old histories still contain it.

New

  • W3C trace propagation through Temporal headers is on by default. traceparent flows from caller → workflow → activity, so upstream spans finally stitch to workflow spans in your tracing backend. Opt out with
    enable_trace_propagation=False.

Fixes

  • WorkflowFailed reporting can no longer shadow the real workflow exception when governance is fail_closed and the API is down.
  • Governance error routing now matches ApplicationError.type instead of substring-matching str(e) - no more false halts when a user error message contains a governance keyword.
  • Race fix on the lazy httpx client in hook_governance - eliminates connection-pool leaks under concurrent activities.
  • Replayer in plugin integration tests now receives the plugin, validating interceptor replay-safety.
  • print() in plugin/worker init replaced with module loggers.
  • temporalio >= 1.23.0 version-pin comments corrected.

Compat

No breaking public-API changes. New parameter enable_trace_propagation (default True) on OpenBoxPlugin and create_openbox_worker().

Full changelog: https://github.com/OpenBox-AI/openbox-temporal-sdk-python/blob/main/CHANGELOG.md