Agent Plugins v0.5.0
This release introduces a version-aware Agent Plugins conformance architecture while retaining published Agent Plugins 1.0.0 as the default target.
Highlights
- Separates portable client loading, strict authoring, Goose extensions, and release policy.
- Adds a local schema registry and immutable Agent Plugins 1.1.0 draft snapshot; 1.1.0 remains inactive pending publication.
- Adds filesystem-resolved containment and strict symlink-safe packaging.
- Implements fixed portable Skill and mcp.json discovery with component-level failure isolation.
- Adds secure MCP stdio, HTTP, header, environment, placeholder, runtime, and PLUGIN_DATA validation.
- Migrates Goose hooks to extensions/io.github.block.goose/hooks.json with transaction-safe writes and legacy diagnostics.
- Adds a dry-run-first plugin migration workflow with explicit approval and backups.
- Adds an immutable conformance fixture matrix and adversarial security coverage.
Validation
- agent-creator: 12/12 tests
- hook-creator: 13/13 tests
- plugin-creator: 75 passed, 1 platform-specific skip
- skill-creator: 35/35 tests
- Distribution and offline bundle smoke tests passed
- Source-bound integration: current 11/11 versus v0.4.1 baseline 4/11 (+63.64 percentage points)
- Four current component receipts passed
- Release gates and human review passed
- Archive integrity: 978 canonical files
Archive
agent-plugins.zip SHA-256:
d2183c8fb4d917461066b4e557dd583fdecc0422fbdd0db5ced9311834979519