Releases: aiveto/veto
Releases · aiveto/veto
Release list
v0.1.6
Changelog
- 8f937ef Authorize every derived page and keep each boundary's guarantee (#95)
- 8550c64 Give MCP and JSON one encoded invoke, then wrap the host. (#94)
- 9a92ca3 Give MCP and the CLI the same three capabilities (#90)
- 5e831ff Give Notes one home next to the note. (#92)
- fb5b445 Give the agent related call lines, a named pending id, and the same page walk the kernel already has. (#97)
- 8cfb147 Mark v0.1.6. (#98)
- 7f5c461 Move Server into capability so MCP and JSON are just callers. (#91)
- c762d64 Reject colliding tools at construction, and claim once on a shared Valkey store. (#96)
- f6d7d08 Ship the README figure as a PNG so GitHub does not stretch a tiny SVG. (#88)
- 69fc783 Show the runtime on the README. (#86)
- 9a96976 Stabilize the capability boundary so MCP and JSON share one form. (#93)
- 67f2be3 Stretch the README figure to the banner width. (#87)
v0.1.5
Changelog
- 2cdf381 Keep one invoke result. Pin eval to the scripted model. (#82)
- f9fb885 Mark v0.1.5 (#85)
- 4dba376 Prepare search, schemas, and the HTTP client once (#83)
- 11ebcd3 Retry the registry publish after the GHCR package is public.
- 78baf38 Satisfy perfsprint on AuthError and the token-url test.
- 6e70975 Say why an invoke did not run, and whether HTTP left.
- 5e5b0cb Treat a GHCR token grant as public, not the first 401.
- 8b7eb2a Treat missing auth as a typed error. Set Why at the call site.
- 9c2a022 Use encoding/json/v2 by default and lock the audit gaps (#84)
v0.1.4
v0.1.3
v0.1.2
Changelog
- 774f6af Call memory.New and semantics.New. The replica store is valkey.
- a5d5b2f Give the allow Rego the reason default the query requires.
- 73bde17 Install veto with brew from aiveto/homebrew-veto.
- c142ef8 Keep Scope to Pre-1.0; Limits already holds the rest.
- c918e6f Keep the Homebrew formula description under 80 characters.
- 4a40c2c Say brew and go install are two install paths, not the same binary.
v0.1.1
Changelog
- d405658 Add a Valkey store so replicas share consume-once
- 8210c78 Add a roadmap for Homebrew, pending, and loaders we need
- 9d8b960 Ask in the chat over stdio, and over HTTP only with chat_approval.
- 1fac9de Close the contract response and require the 404 error.
- 0ea22a9 Close the sign-off: approve reads yaml, README is a first visit
- be6ecbf Drop protobuf from the roadmap
- 01ee99b Drop the breaking-change wording; nobody runs veto.yaml yet
- 5558498 Drop the duplicate roadmap line in the layout
- 296754d Drop the store sentence from the roadmap
- f4d7ccf Drop veto.yaml keys that accept one value
- 0b38dd4 Export policy.Store; ship Memory and Files, not Redis
- ccaf205 Expose part of a contract and check the request body
- bc1cac9 Fix lint on the Valkey store wiring
- 2103641 Keep policy as the use case; edges hold files, gates, and bundles
- af227d8 Keep the roadmap in the repo, off the front door
- 3de6b48 Let a person approve a held call in the chat.
- 89c675e Make the roadmap the next tag, not a feature pile
- b3e83a6 Mark v0.1.1
- 21173ce Match the share card to the hundred endpoints in the README.
- 152fa1c Pass context into the approval store dial
- c447c89 Pass context through Store; invoke_limit sets the rate
- 8a73eda Point runtime at the core, and let execute implement it.
- 888c737 Put the README slogan back
- b9d750b Remove the roadmap; Homebrew is next
- 12f4108 Restore the README; keep only the stronger facts
- d354325 Share one helper for paths, writes, keys, and decisions
- cc532d3 Split the auth resolver by grant type.
- 36672e7 Split the veto command into one file per subcommand.
- 47e67f7 Write bundle rejection fixtures as raw YAML
v0.1.0
Changelog
- c9cda20 Add Dependabot, go vet, and govulncheck
- c13e826 Add OPA call facts and an approval webhook
- 2bddee4 Add a gate mark for the README and the social card.
- 6b517bd Add a root Makefile
- ba277d0 Add agent surface CI as the enterprise killer backlog item.
- aeb2083 Add authenticated Streamable HTTP MCP
- 1fc5e69 Add capability bundles
- 707850b Add container and tag release
- 3757447 Add doctor findings and invoke preview
- ce65a1a Add the license, the two-API example, and CI
- 29edeaa Add the operator guide and veto init
- 6578e66 Add the veto runtime and the open-source backlog.
- 1117d78 Add upstream auth sources
- 7fbf79b Bound projection pages without overflow
- 4d8a586 Budget the serialized context pack
- 2505c5c Bump actions/checkout from 4 to 7 (#12)
- 7199ded Bump actions/setup-go from 5 to 7 (#10)
- ae1d608 Bump github.com/getkin/kin-openapi from 0.133.0 to 0.149.0 (#11)
- 9463111 Bump github.com/go-openapi/jsonpointer from 1.0.0 to 1.0.2 (#13)
- df0937e Bump go.opentelemetry.io/otel/exporters/stdout/stdouttrace (#9)
- b17c918 Bump golang.org/x/oauth2 from 0.36.0 to 0.37.0 (#15)
- 13e54c4 Claim an unsigned approval once
- f01cbb0 Close the audit findings before release
- f4fbcba Close the invoke, trace, and policy gaps
- 5625f4e Close the launch-review gaps in invoke, config, and generation
- 2439531 Coerce model params and return a stable HTTP result
- 388fa87 Correct the README claims that do not match the commands
- f2a6869 Correct the sentences that contradict the code
- 14b6ddc Correct the setup guide against the commands.
- 9c6bbf1 Document the wow slice after the first eight backlog items.
- 011c1af Drop CONTRIBUTING.md and add make format and make ci.
- ee7c6db Drop the internal launch checklist
- 8f8b961 Drop the license link from the README
- 4068b66 Drop the machine-local checkout path from the agent guide.
- cbd1ad6 Drop the repeated Veto heading from the README.
- 0680ddb Extract one invoke runtime
- f99ff94 Fail a file that drops a field or clips an order id
- eaba15c Fail an eval case when HTTP was not expected
- fe41203 Fail closed on confirmation, and keep stdout traces on the allowlist.
- 47e38fe Fail veto check when the agent surface regresses
- e8ef0d6 Fix confirmation, contract fidelity, and policy wrap
- f95b3cf Fix error causes, flow resume, and retries
- 7dd2978 Fix the findings from the standard linters
- 0d98dda Give File.Confirms the same pointer receiver as the other methods.
- d111f5b Give replay two rows in the Check it table.
- ff16567 Group declarations and methods by receiver
- 4d5418c Honor context cancel and the model response close error
- 1b89c3f Ignore .DS_Store
- 92c553b Keep a signed approval one-time, and match the docs to the gate
- 6e95723 Keep an optional file log of turns
- c62e90f Keep bundles to contracts, relations, and checks
- dc241ea Keep catalog scopes ahead of scheme defaults
- 8a7f579 Keep each generated operation on its own server URL
- 455b8d7 Keep exposure and auth on generated catalogs
- 774971e Keep future providers as keys and return structured invoke errors
- 13c5694 Keep permission denial ahead of OPA confirmation
- 68d4ba1 Keep tests off the user approval directory
- ca2a1d8 Keep tests that lock a behavior
- 4a26e50 Keep the capability surface as the first line
- e6be821 Keep the core off the HTTP edge and lock confirmation state.
- ce35aa1 Keep veto init in the connect section
- bacab0b Lead the README with the control-plane pitch
- 6ac3339 Lead the README with the decision
- 55ce326 Lead the README with the decision before the call
- 6bcd760 Lead the README with the delete scene
- d3b793d Let the three sentences be the social card.
- c3b3edd Limit invoke inside the process
- b7ccabc List veto init before validate
- faba800 Lock relation load failures
- 06a4056 Lock the must-have map and guardrails in the backlog.
- 94c6396 Mark the open-source checklist against the tree
- b80bcfd Mark v0.1.0 and document the module install.
- 94f6cfd Match the docs to the code and add make test
- 0f357e8 Move the model completer into agent
- 1fe8bf7 Name the three tools in the first line
- 1505e16 Order each file as const, var, type, then func.
- 7b3359c Point the README at the listening demo
- b406bd1 Print the demo as a short story
- 13bffee Project named response fields
- 34da00d Put interfaces next to the loop and parse bytes in core
- 2f9870f Put the call shape in the pack and keep whole operations
- bf5cef7 Reject a body that is not a JSON object
- 0cb0255 Reject callbacks and webhooks, and print the pack
- ebf35cd Reject unknown config fields
- 8938393 Remove the security policy and the unused orders example.
- 3954661 Replace the README with the short pitch
- 3be1887 Report a missing ping client
- b007959 Report an unfinished page walk, and make generated CLIs and modules build.
- 91b184b Report doctor blockers on stderr
- e6f65fc Retry idempotent calls and send an idempotency key
- d3c6089 Return a failed close from reads and writes
- b8fb1d8 Return a stable invoke result to MCP
- fa24723 Return one unresolved operationRef error
- 9f661d0 Return the follow error on one line
- 3e040e1 Return the invoke result from generated methods
- c928b97 Rewrite the README and run the orders example
- 7809f18 Run CI on the Go version in go.mod
- 9147f18 Say init once and validate once
- bb3a652 Say what this preview actually does
- 6b6f3e1 Say what veto turns OpenAPI into
- c0fe71d Select a named server and follow list pages
- c32f002 Send a JSON body and reject an empty required parameter
- 420e12a Send bearer auth from the contract
- f879306 Send contract media types and header defaults
- 69bfecb Show joins, the confirmation line, and command metadata
- e8a1b1b Show the share card in the README.
- 1cb8c7e Sign approval tokens the caller holds
- 062c088 Sort with slices.SortFunc
- 2a3fb19 Split notifiers and return the projection view
- b0734d0 Start from veto init, then validate
- f5c5833 Start the veto repository.
- d8d11c4 Stop taking an unused context on search and describe
- a5909a6 Tell contributors to run make ci before a pull request.
- 5f6a797 Tell the two-API example with orders and customers
- 1e75440...