Skip to content

Releases: Sumatoshi-tech/sparkplane

v0.1.6

Choose a tag to compare

@github-actions github-actions released this 22 Sep 01:01
f39bf66

Sparkplane v0.1.6

Agent launches default to auto mode: full filesystem and network access
without action approval prompts for Codex, Claude Code, and OpenCode.

sparkplane dgx-spark launch codex
sparkplane dgx-spark launch claude
sparkplane dgx-spark launch opencode

Use --mode inherit (or SPARKPLANE_LAUNCH_MODE=inherit) to preserve the
agent's own permission settings. Forwarded sandbox, approval, and Claude
settings flags require inherit mode. For example:

sparkplane dgx-spark launch codex --mode inherit --allow-network -- --sandbox workspace-write
sparkplane dgx-spark launch claude --mode inherit -- --permission-mode plan

Launch dry-run JSON includes mode. Permissions apply to the child session;
agent configuration files and the appliance's security policy are unchanged.
Managed agent restrictions still apply.

This change requires updating the workstation client. Restarting an inference
instance or upgrading the appliance is not required for the new launch default.

Changes: #9

v0.1.5

Choose a tag to compare

@github-actions github-actions released this 21 Sep 23:10
2690203

Coding-agent internet access

Add --allow-network when launching an agent that needs package downloads,
remote repositories, documentation or APIs:

sparkplane dgx-spark launch codex --allow-network -- --sandbox workspace-write
sparkplane dgx-spark launch claude --allow-network

The environment equivalent is SPARKPLANE_LAUNCH_ALLOW_NETWORK=true.
The setting is invocation-only; default permissions, filesystem protections,
approval policies and managed restrictions remain in force. OpenCode already
has direct network access and retains its tool permissions.

Codex now receives its private inference CA through CODEX_CA_CERTIFICATE
instead of a launcher-supplied SSL_CERT_FILE, keeping public HTTPS trust intact
for development subprocesses. Neither change weakens inference-token scope,
TLS verification, or appliance engine networking.

See network controls and limitations.

Upgrade scope

Upgrade the workstation client to use these fixes. An existing v0.1.4 appliance
can remain running; no model restart, engine rebuild or context change is needed.
The release also includes the normal ARM64 appliance package for new installs.

Provenance and verification

  • Source: 2690203db432ad0802efbfdd642295798d431834, PR #8.
  • Build and signing: Release workflow.
  • Clients: sparkplane-x86_64-unknown-linux-gnu, sparkplane-aarch64-unknown-linux-gnu.
  • Appliance: sparkplane-appliance-aarch64.tar.gz.
  • Signed inventory: SHA256SUMS and its detached SHA256SUMS.minisig.
  • The established release signing authority is unchanged. Verify against your
    existing trusted public key, not a newly downloaded key alone.

Lint, appliance/client-only tests, dependency audit, and warning-denying
documentation checks passed. The native Codex sandbox regression also verified
public HTTPS access with opt-in and denied writes outside the workspace.

v0.1.4

Choose a tag to compare

@github-actions github-actions released this 21 Sep 09:42
cf2f2ac

What's Changed

Full Changelog: v0.1.3...v0.1.4

v0.1.3

Choose a tag to compare

@github-actions github-actions released this 21 Sep 08:39
b4e2ab7

What's Changed

Full Changelog: v0.1.2...v0.1.3

v0.1.2

Choose a tag to compare

@github-actions github-actions released this 21 Sep 08:12
d5fd273

What's Changed

  • fix: install pinned components before release cross-builds by @dmytrogajewski in #5

Full Changelog: v0.1.1...v0.1.2