Releases: constellation-works/orbit
Releases · constellation-works/orbit
Release list
v0.25.0
What's Changed
- [auto-task] Skill validation — review the shipped Orbit skills for drift by @orbit-agent-01 in #2541
- [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #2542
- [friction-curation] Note in CI that a failed guardrails step skips the sandbox gate by @orbit-agent-01 in #2543
- Publish a privacy policy page on orbit-cli.com by @orbit-agent-01 in #2544
- [friction-curation] Retry a task pilot once when only status drifted, and keep other drift rejected by @orbit-agent-01 in #2545
- docs: Refresh README and remove stale product descriptions by @danieljhkim in #2547
- [security-review]
orbit mcp listenexecutes JSON-RPC lines from a browser-sent HTTP POST, so any web page can blind-write tasks while the listener runs by @orbit-agent-01 in #2548 - Promote doc-duties to the embedded default auto-task catalog by @orbit-agent-01 in #2549
- docs: Tighten RELEASING.md and CONFIG.md by @danieljhkim in #2550
- Copilot terminal-status fixture intermittently fails to launch freshly written executable with ETXTBSY by @orbit-agent-01 in #2551
- [code-scanning-sweep] Fix rust/command-line-injection in crates/orbit-core/src/application/job/pipeline/worker/scope.rs by @orbit-agent-01 in #2552
- Full QA harness aborts in managed worktree when owner-only qa-full-sweep definition is absent by @orbit-agent-01 in #2554
- [BLOCKED] [friction-curation] Require caller enumeration when a repair narrows a shared invariant by @orbit-agent-01 in #2546
- Add a run-failure-patterns default auto-task that mines unfiled recurring run failures by @orbit-agent-01 in #2555
- Add a report-only backlog-hygiene default auto-task for stuck and untriaged tasks by @orbit-agent-01 in #2556
- Full QA definition-policy scenario never executes its required plugin command-group assertion by @orbit-agent-01 in #2557
- Full QA workflow-process tests misidentify disposable non-Git fixtures inside managed worktree by @orbit-agent-01 in #2558
- fix: Render worker scope memory limits from their integers (CodeQL #459) by @danieljhkim in #2553
- [code-review] Run-failure scan read commands can mutate run state by @orbit-agent-01 in #2559
- Task-pilot QA fixture tries to fetch through read-only shared Git metadata in managed worktree by @orbit-agent-01 in #2560
- [code-review] Backlog-hygiene report reads runs through commands that finalize orphaned runs by @orbit-agent-01 in #2561
- Codebase refinement: bug fixes, hardening, dead-code removal, dedupe by @danieljhkim in #2562
- [auto-task] Skill validation — review the shipped Orbit skills for drift by @orbit-agent-01 in #2563
- [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #2564
- website: redesign the homepage and docs chrome, fix stale docs by @danieljhkim in #2565
- [friction-curation] Update the host scheduler's auto-task definition from a sandboxed job run by @orbit-agent-01 in #2566
- [code-org] Restructure orbit-cmd: registry/ and task/ modules, split doctor.rs into doctor/ by @orbit-agent-01 in #2567
- [code-org] Restructure orbit-engine: activity_job workspace module layout, split ci/collect.rs and cli_runner orchestrator/spawn by @orbit-agent-01 in #2568
- [code-org] Split orbit-exec linux_sandbox.rs into a linux_sandbox/ module by @orbit-agent-01 in #2569
- [code-org] Restructure orbit-tools: split plugin backend/callback/loader and move logic out of builtin/github/mod.rs by @orbit-agent-01 in #2570
- dashboard: redesign the chrome, Tasks, drain card, Runs and run detail by @danieljhkim in #2572
- [code-org] Restructure orbit-core runtime/: plugin/, workspace/, audit/ modules and a declarations-only mod.rs by @orbit-agent-01 in #2571
- [code-org] Restructure orbit-core application/: fold routine.rs into routines/, extract managed_assets, group health, split gate.rs and command dispatch by @orbit-agent-01 in #2573
- [code-org] Restructure orbit-core engine_host: split runtime_host.rs and regroup v2_host into ci_failure/, pull/, admission/ by @orbit-agent-01 in #2574
- [code-org] Restructure orbit-store: split migration steps, move logic out of fat mod.rs files, split task_registry/store.rs, group contracts by @orbit-agent-01 in #2575
- dashboard: split the stylesheet per screen, organize assets into folders, tidy the top bar by @danieljhkim in #2576
- Remove two unused imports in orbit-core left by recent refactors by @orbit-agent-01 in #2577
- [code-review] Rule injection writes through agent-guide symlinks outside the workspace by @orbit-agent-01 in #2578
- Explicit Ship is refused as a duplicate while a task-pilot preparation run lists the task by @orbit-agent-01 in #2579
- Dashboard truncates a refused Ship/Approve error to one ellipsized line ("ship failed: tas…") by @orbit-agent-01 in #2580
- [test-cleanup] Add a cli_runner test builder and file fixtures to collapse orchestrator.rs/spawn.rs setup boilerplate by @orbit-agent-01 in #2581
- Make
orbit job resumesubmit a detached worker by default (add --wait for the foreground path) by @orbit-agent-01 in #2582 - [ci-failure-sweep] Fix red CI: CI / Coverage (informational) / Collect workspace coverage by @orbit-agent-01 in #2583
- [code-org] Restructure orbit-web: split state.rs and slim lib.rs and api/mod.rs by @orbit-agent-01 in #2584
- [friction-curation] Task-pilot apply fails whenever agent-main advances during the pilot ("state-trigger source changed") by @orbit-agent-01 in #2585
- [code-org] Leftover splits: orbit-types task model and auto_task, orbit-config registry, orbit-cli operation, orbit-agent response layout by @orbit-agent-01 in #2586
- [friction-curation] Stop the orbit-common generation admission test from failing after a dropped update by @orbit-agent-01 in #2587
- Refuse a second live resume of the same source run (server-side dedup for submit_resume_run) by @orbit-agent-01 in #2588
- [test-cleanup] Add a tool-call test helper to collapse task_tools.rs boilerplate by @orbit-agent-01 in #2589
- [ci-failure-sweep] Fix red CI: macOS Platform / macOS Sandbox / Run orbit-core sandbox tests by @orbit-agent-01 in #2590
- [test-cleanup] Add an initialized-MCP-client fixture to collapse mcp_roundtrip.rs handshake boilerplate by @orbit-agent-01 in #2591
- Block tasks coupled to a run that is reconciled
interrupted(system interruption) by @orbit-agent-01 in #2592 - CI red: job_resume_detached fixture defines [crews.sol] without a default_crew on hosts with no agent CLIs by @orbit-agent-01 in #2593
- [test-cleanup] Replace text-matching dashboard_assets tests with behavior tests, keeping only structural safety guards by @orbit-agent-01 in #2594
- Hold new run admissions while a host shutdown/reboot is scheduled by @orbit-agent-01 in #2595
- [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #2596
- [test-cleanup] Review zero-unique tests in crates/orbit-cli/src/command/workspace/tests/init.rs by @orbit-agent-01 in #2597
- [test-cleanup] Review zero-unique tests in crates/orbit-web/src/api/tests/tasks.rs by @orbit-agent-01 in #2598
- [test-cleanup] Review zero-unique tests in crates/orbit-core/src/adapter/tool_h...
v0.24.0
What's Changed
- fix(website): fix the hero session figure and refresh stale docs by @danieljhkim in #2259
- fix(deps): bump rmcp to 2.2.0 (GHSA-9g45-5xwm-f3wc) by @danieljhkim in #2260
- feat(website): lead the homepage with the agent-driven flow by @danieljhkim in #2262
- chore(deps): bump devalue from 5.8.2 to 5.9.2 in /website in the npm_and_yarn group across 1 directory by @dependabot[bot] in #2261
- fix(website): make the hero transcript readable by @danieljhkim in #2263
- docs(readme): lead with the agent-driven loop by @danieljhkim in #2264
- [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #2265
- [ci-failure-sweep] Fix red CI: CI / Coverage (informational) / Collect workspace coverage by @orbit-agent-01 in #2266
- [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #2267
- Align final-QA crew contract test with authorized Opus configuration by @orbit-agent-01 in #2268
- [code-review] Memoised bwrap probe pins a transient namespace failure for the process lifetime, permanently failing sandboxed dispatch by @orbit-agent-01 in #2269
- [security-review] Dashboard never validates the Host header, so DNS rebinding lets any website read every API GET by @orbit-agent-01 in #2270
- [qa-sweep]
orbit auto-task liston a TTY hides the STATE column when every definition is disabled by @orbit-agent-01 in #2271 - [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @orbit-agent-01 in #2272
- [distributed-drain v1] Retire terminal failed-run triage while preserving authorized in-run recovery by @orbit-agent-01 in #2273
- [distributed-drain v1] Preserve declared missing-file context through task storage, projections and locks by @orbit-agent-01 in #2274
- [qa-sweep] GET /api/routines returns 500 when the systemd user bus is unavailable by @orbit-agent-01 in #2275
- [security-review] Env-value redaction misses AUTHORIZATION / AUTHZ / OAUTH variables: only a standalone AUTH segment counts as sensitive by @orbit-agent-01 in #2276
- [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @orbit-agent-01 in #2277
- [qa-sweep] Make task-start provenance test deterministic under managed worker identity by @orbit-agent-01 in #2278
- [distributed-drain v1] Retire epic execution with safe legacy migration and retained task hierarchy by @orbit-agent-01 in #2279
- [code-review] Dashboard
/healthz?detailed=trueskips the Host gate, so DNS rebinding still reads workspace names and host paths by @orbit-agent-01 in #2280 - [distributed-drain v1] Establish recoverable task/reservation commit boundary before admission by @orbit-agent-01 in #2281
- [code-review]
orbit-coresweep tests fail intermittently under full-suite parallelism with an empty SweepOutcome by @orbit-agent-01 in #2282 - [code-review]
task lintreports a non-existent gate: empty context_files is an error citing an admission refusal that never fires by @orbit-agent-01 in #2283 - [friction-curation] Document that nested bwrap cannot create user namespaces inside agent-executor worktrees by @orbit-agent-01 in #2284
- [friction-curation] Document the python workaround for reading website/dist when Claude Read/grep denies generated output by @orbit-agent-01 in #2285
- [friction-curation] Document stage-attach-remove for QA evidence that lives outside workspace_root by @orbit-agent-01 in #2286
- [code-review] Epic root with inherited-only context is admitted unserialized, contradicting the retirement's "not eligible until repaired" promise by @orbit-agent-01 in #2287
- Keep persistent MCP clients usable across upgrades or refuse before schema changes strand them by @orbit-agent-01 in #2288
- [code-review] v20's migration doc comment was orphaned onto
apply_task_commit_journal, leaving v20 undocumented and v21 mis-described by @orbit-agent-01 in #2289 - [code-review]
show_workspace_claimmutates reservation rows outside the commit boundary by @orbit-agent-01 in #2290 - Remove website validation guidance that routes around a file-read permission denial by @orbit-agent-01 in #2291
- Add
skill-validationauto-task: recurring review and repair of the shipped Orbit skills by @orbit-agent-01 in #2292 - Resolve same-host cross-workspace dependencies consistently during task preparation and admission by @orbit-agent-01 in #2293
- [qa-sweep] HEAD generation pin requires a writable global root, so
--rootscratch init fails with EROFS in agent-executor sandboxes by @orbit-agent-01 in #2294 - ci-failure-sweep: bare head-SHA fingerprint lets any open task mentioning the commit suppress an unrelated CI failure by @orbit-agent-01 in #2296
- [friction-curation] Teach agents to confirm orbit.task.add with a compact id projection, not truncated JSON by @orbit-agent-01 in #2297
- [ci-failure-sweep] Fix red CI: CI / Coverage (informational) / Collect workspace coverage by @orbit-agent-01 in #2298
- Restore macOS sandboxed nested Orbit calls under executable-generation admission by @orbit-agent-01 in #2299
- Dashboard: Audit Summary 24h pane omits the tool call failure rate by @orbit-agent-01 in #2300
- feat(dashboard): regroup the auto-drain pane around what an operator can act on by @danieljhkim in #2295
- [distributed-drain v1] Add atomic distributed admission, durable claims and replayable receipts by @orbit-agent-01 in #2302
- [code-scanning-sweep] Fix rust/path-injection at 3 locations in crates/orbit-common/src/fs/generation.rs by @orbit-agent-01 in #2303
- orbit web connect: grant operator capability to the remote dashboard server by default by @orbit-agent-01 in #2304
- [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @orbit-agent-01 in #2305
- feat(dashboard): move Auto-drain under Work beside Tasks by @danieljhkim in #2301
- feat(dashboard): one row vocabulary for Routines, Auto-tasks and a projected Jobs pane by @danieljhkim in #2306
- [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @orbit-agent-01 in #2307
- Federated MCP:
orbit mcp serve --federated --operatorpropagates operator to every destination; remove destination-side caller authorization by @orbit-agent-01 in #2308 - [distributed-drain v1] Fence claim writes and add idempotent settlement, inspection and deliberate recovery by @orbit-agent-01 in #2309
- [code-scanning-sweep] Fix rust/path-injection at 4 locations in crates/orbit-common/src/fs/generation.rs by @orbit-agent-01 in #2310
- Restore artifact provenance build after caller authorization removal by @orbit-agent-01 in #2311
- [distributed-drain v1] Expose key-bound claim lifecycle APIs with read-only preflight and receipt lookup by @orbit-agent-01 in #2312
- fix: Recover a pending task-commit marker on job resume instead of refusing [ORB-12575] by @orbit-agent-01 in #2313
- [code-review]
orbit updateacquires generation admission on the host-global root while every client pins--root/ORBIT_ROOT, so an upgrade can replace the binary under live MCP clients by @orbit-agent-01 in #2314 - docs(plugin): require search-before-add only for finding-driven filings by @danieljhkim in #2315
- [distributed-drain v1] Ac...
v0.23.0
What's Changed
- fix(website): correct --complete and approval semantics on the home page by @danieljhkim in #2128
- perf(common): PatternRedactor::with_argv_secrets() compiles ~36 Unicode regexes per call, bypassing the OnceLock cache by @danieljhkim in #2129
- perf(store): child-run admission scans a job's entire run history and parses input_json per row inside the writer transaction by @danieljhkim in #2130
- test: worktree_gc_routing sleeps until the next wall-clock minute (2–62 s), twice, inside the serialized test group by @danieljhkim in #2131
- perf(store): run listing always hydrates steps with agent_response_json; sweep/summary/gc callers fetch every run unfiltered by @danieljhkim in #2132
- perf(cli): logging subscriber reads config.toml, walks the log dir, and opens the JSONL log on every invocation (even --help) by @danieljhkim in #2133
- perf(store): TaskRegistryStore has no read pool; every registry read serialises behind the writer mutex by @danieljhkim in #2134
- fix(engine): drop needless borrows of the static argv redactor (unbreaks CI clippy) by @danieljhkim in #2135
- perf(web): handlers run store/filesystem work directly on tokio workers instead of via blocking() by @danieljhkim in #2136
- perf(mcp): every workspace tool call opens a brand-new OrbitRuntime (registry parse, host.toml ×2, SQLite opens) by @danieljhkim in #2137
- launchd clock health reports HEALTHY while the unit's program is missing and launchd has it in the penalty box (exit 78) by @danieljhkim in #2139
- perf(store): reindex/import/renumber commit one IMMEDIATE transaction + FULL fsync per task by @danieljhkim in #2140
- Seeded
delivery-qa/delivery-code-reviewhardcodebranch: agent-main; on amain-based workspace every tick fails with an opaqueautomation_deferred: evidence_unavailableby @danieljhkim in #2141 - fix(registry): read a missing global root as an empty registry by @danieljhkim in #2144
- MCP
orbit.task.updatestart fromproposedrecordsstarted from_status: proposedafter an implicit approval to backlog, and dropsplanned_byfor the plan supplied on that write by @danieljhkim in #2146 - perf(core): update_task with dependencies hydrates the entire store to run a cycle check by @danieljhkim in #2147
- perf(core): CI-failure filing re-hydrates every task and reads every open task's comments once per failure cluster by @danieljhkim in #2148
- ci: make the ci-fast guard self-tests pass on macOS by @danieljhkim in #2150
- [BLOCKED] build: tiktoken-rs is a hard dependency of orbit-engine but only used in orbit-agent tests; jsonschema in orbit-engine is test-only by @danieljhkim in #2138
- [BLOCKED] Installer /
orbit updateleaves the launchd clock unit pointing at the previous binary path; sweeps die silently until someone runsorbit doctorby @danieljhkim in #2143 - perf(search): federated search loads the registry once, fans out concurrently, shares the query embedder by @danieljhkim in #2151
- perf(web): every API request re-reads and re-validates the workspace registry under a global lock by @danieljhkim in #2152
- perf(search): cosine scan allocates per row, recomputes norms, re-sorts top-k per insert under the store mutex by @danieljhkim in #2154
- [BLOCKED] perf(search): batch embeds across fields/sources and commit reindex in few transactions by @danieljhkim in #2153
- perf(exec): Linux bwrap compile walks the worktree once per deny rule (×2), recompiles glob regexes per rule, and re-probes bwrap every spawn by @danieljhkim in #2156
- [code-review] reindex commits a stale envelope after releasing the bundle lock by @danieljhkim in #2158
- Retired default routine
auto_task_scheduler.yamlemits a load error on every sweep/routine listin every upgraded workspace, andworkspace syncrefuses to retire it as "locally modified" although it is git-clean by @danieljhkim in #2159 - [BLOCKED] perf(core): TaskLockIndex and /api/tasks/locks hydrate the full store; build from envelopes instead by @danieljhkim in #2149
- perf(registry): parse workspaces.json once and thread the loaded registry + host identity through runtime open by @danieljhkim in #2160
- [BLOCKED] perf(search): lexical task search materialises every bundle, lowercases every field, and reads artifact blobs on miss by @danieljhkim in #2145
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-registry/src/workspace_registry/io.rs by @danieljhkim in #2161
- perf(core): state-routine member admission spawns 4–5 git subprocesses per task per member inside a loop by @danieljhkim in #2162
- perf(web): /api/tasks list rows carry full sidecars and issue 1–4 store calls per row (N+1) by @danieljhkim in #2163
- step_failure_recovery never fires for an agent-declared
failedenvelope; gate-red tasks go straight toblockedby @danieljhkim in #2164 - perf(core): backlog/drain snapshot full-hydrates, deep-clones every task, and does O(B×H) selector overlap with per-selector stats by @danieljhkim in #2165
- perf(mcp): every tool call rebuilds the entire builtin tool registry twice; tools/list regenerates every schema per request by @danieljhkim in #2166
- pr_conflict_recovery must resolve the conflict even when the base advanced past the recorded checkpoint or the local gate is red by @danieljhkim in #2167
- perf(store): every task index write scans the entire cross-workspace relation table and every binding row by @danieljhkim in #2168
- [BLOCKED] perf(search): chunker issues one token_count RPC per word at every chunk boundary by @danieljhkim in #2142
- style(store): rustfmt reindex.rs imports by @danieljhkim in #2171
- perf(core): replace full list_tasks() hydration with status/envelope projections where only one field is used by @danieljhkim in #2172
- chore(plugin): resync plugin/skills/orbit with core assets by @danieljhkim in #2174
- perf(core): every task write response runs a global status scan plus comment/history bundle reads by @danieljhkim in #2175
- fix(exec): SignalHandlerGuard fan-out can killpg an unrelated process group (PID registered as PGID + PID reuse) by @danieljhkim in #2176
- fix(gc): worktree_gc times out (30 s) removing worktrees that carry a multi-GB cargo target dir; 35 stale worktrees / 199 GB left behind by @danieljhkim in #2177
- perf(web): dashboard static assets served with no ETag/Cache-Control and no compression by @danieljhkim in #2178
- perf(web): /api/runs/:id/logs reads every stdout/stderr blob for the run before applying limit by @danieljhkim in #2179
- test: fix agent-main baseline (qa-full-sweep crew grok, batched embed fakes) by @danieljhkim in #2180
- perf(engine): CI sweep probes retired branches with one git ls-remote network round-trip per branch by @danieljhkim in #2181
- fix(core): skip non-task relation targets in task projection; align task.add schema test by @danieljhkim in #2182
- perf(engine): worktree GC re-lists and re-canonicalises all registered worktrees per candidate and stat-walks every eligible worktree even in dry-run by @danieljhkim in #2183
- perf(store): task listing never uses the SQL index filter and scans the whole registry status table (twice) per list by @danieljhkim in #2184
- perf(engine): captured stdout is JSON-parsed 4–6 times per invocation and the full 1 MiB capture is regex-redacted before truncating to a 64 KiB preview by @danieljhkim in #2185
- perf(engine): job executor clones the whole pi...
v0.22.1
What's Changed
- feat(auto-tasks): attribute review and CI findings with regression_from by @orbit-agent-01 in #2090
- fix(make): install to ~/.orbit/bin, matching install.sh by @orbit-agent-01 in #2091
- [friction-curation] Name doc-duty template eligibility and generated INDEX.md in the auto-task prompt by @orbit-agent-01 in #2092
doctor_check_stalled_automationwas inserted insidedoctor_check_task_relations's doc comment, splitting both rustdocs by @orbit-agent-01 in #2093- [BLOCKED] [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #2094
- [BLOCKED] Repo-local
delivery-code-review.yamlnever received theregression_fromrules, so minted tasks still use the old template by @orbit-agent-01 in #2095 - Stop hard-failing on newer store schema/layout: forward-compatible open or auto-migrate by @orbit-agent-01 in #2097
- [BLOCKED] Add
orbit run task-pilotentrypoint for task_pilot_pipeline by @orbit-agent-01 in #2096 - Require agent_implement final file-scope reconciliation and cleanup before success by @orbit-agent-01 in #2098
- Allow delivery despite primary source dirt when remote integration is clean by @orbit-agent-01 in #2099
- Preserve managed worktree context when dispatching step_failure_recovery by @orbit-agent-01 in #2100
- Dashboard: let a human force any task status from any status (parity with CLI
--force) by @orbit-agent-01 in #2101 - Recover failed-job CI evidence when parent workflow logs are unavailable in progress by @orbit-agent-01 in #2102
- User-facing docs still omit orbit run task-pilot after PR #2096 by @orbit-agent-01 in #2103
- [security-review] Website checks gate is inert: setup-node is pinned to a nonexistent commit, so every run fails at job setup by @orbit-agent-01 in #2104
- [security-review] MCP callers authorization ceiling is seeded and loaded without ownership or permission validation by @orbit-agent-01 in #2105
- [security-review] Orbit state directories are created with the ambient umask, so 0600 stores inside them stay group-replaceable by @orbit-agent-01 in #2107
- [BLOCKED] [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @orbit-agent-01 in #2106
- Align positioning with current provider execution by @orbit-agent-01 in #2110
- Document dashboard inline task editing by @orbit-agent-01 in #2109
- Clarify the README first-task and review workflow by @orbit-agent-01 in #2108
- agent_implement: make the cleanup contract language-neutral; drop cargo clean and stop failing handoff on ignored build output by @orbit-agent-01 in #2111
- Assign explicit default complexity to shipped auto-task templates by @orbit-agent-01 in #2113
- Verify Linux step failure recovery with a real sandboxed subprocess by @orbit-agent-01 in #2115
- [code-scanning-sweep] Fix rust/cleartext-logging at 2 locations in crates/orbit-cli/src/command/mcp/callers.rs by @orbit-agent-01 in #2112
- Make doc-duty placeholder date selection deterministic by @orbit-agent-01 in #2114
- Expose auto-task definition provenance when inspecting linked worktrees by @orbit-agent-01 in #2116
- QA sign-off harness asserts stale
succeededrun state, failing legacy-logs-compatibility on a healthy candidate by @orbit-agent-01 in #2117 - macOS sandbox denies writes under $CARGO_HOME/registry, so any worker whose build needs an uncached crate fails
cargo testwith exit 101 (failed to open …/registry/cache/…/chunked_transfer-1.5.0.crate: Operation not permitted) by @orbit-agent-01 in #2118 - step_failure_recovery never starts when the original error is large: unbounded
error_message(2.5 MBprimary_checkout_driftdiagnostic) makes the codex prompt exceed 1,048,576 chars →input_too_large, exit 1 in 416 ms by @orbit-agent-01 in #2120 - macOS sandbox denies PTY allocation (
openptyreturns -1), so any repository whose test suite opens a pseudo-terminal cannot pass its full validation inside a worker and lands inblockedby @orbit-agent-01 in #2121 - feat(website): redesign the landing page around the CLI walkthrough by @danieljhkim in #2119
- [code-review] CI investigation treats a failed job-log fallback as a completed recovery, skipping the checkout-evidence read and mislabelling its scope by @orbit-agent-01 in #2122
- [qa-sweep] Add unit test coverage for
orbit mcp callers checkredaction by @orbit-agent-01 in #2123 - [code-review] Start-transition writes through
orbit.task.updateskip every field validationupdate_task_lockedowns by @orbit-agent-01 in #2124 - [ci-failure-sweep] Fix red CI: macOS Platform / macOS Sandbox / Run orbit-exec sandbox tests (real sandbox-exec) by @orbit-agent-01 in #2125
- [qa-sweep] orbit-core transitions.rs test hook (TRANSITION_READ_HOOK_STATUS) races across unrelated tests under
cargo testby @orbit-agent-01 in #2126 - Prepare v0.22.1 release by @orbit-agent-01 in #2127
Full Changelog: v0.22.0...v0.22.1
v0.22.0
What's Changed
- [qa-sweep] orbit mcp init/remove never name the checkout they wrote, so registry-resolved writes land silently elsewhere by @orbit-agent-01 in #1929
- [qa-sweep] orbit run ship TASK-ID reports success when the named task is excluded, and no human-readable surface says why by @orbit-agent-01 in #1930
- [qa-sweep] task export/import/reindex --workspace cannot name a task-registry workspace id, so the documented import recipe lands tasks the target host cannot read by @orbit-agent-01 in #1931
- [code-review] the GitShim child-process fixture passes vacuously when its hand-written test-name literal goes stale by @orbit-agent-01 in #1932
- [code-review] tool enable/disable now refuses every registry-inactive builtin, stranding an already-disabled one and breaking its CLI wrapper with no recovery by @orbit-agent-01 in #1933
- [qa-sweep] doctor's missing-task-registry guard never fires, so --fix-orphan-task-stores still deletes live task bundles by @orbit-agent-01 in #1934
- [code-review] orbit mcp init/remove let the current directory outrank an explicit --root, silently writing MCP config into the wrong checkout by @orbit-agent-01 in #1935
- [code-review] doctor's orphan-task-store check treats a stale task-registry binding as a claim, so it never reports the leftovers it exists for by @orbit-agent-01 in #1936
- Owner-wins cross-host task sync: import policy that overwrites only foreign-prefix bundles by @orbit-agent-01 in #1937
- [code-review] the new mcp init/remove summary names the checkout even under --scope home, where nothing is written there by @orbit-agent-01 in #1939
- [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #1940
- [code-review] orbit mcp init/remove refuse a shared Orbit root outright, so a multi-checkout --root layout can no longer register MCP at all by @orbit-agent-01 in #1938
- Delivered task worktrees (≈13 GB each with target/) linger up to 2 h after done+merged; reclaim them at delivery instead of relying on hourly GC by @orbit-agent-01 in #1941
- orbit-search install test fixture accepts exactly one connection, so companion_install_streams_a_slow_one_mebibyte_download flakes under load by @orbit-agent-01 in #1942
- [code-review] owner-wins sync wedges permanently if a mirror's bundle directory is missing: every later run fails and lands nothing by @orbit-agent-01 in #1943
- [code-review] doctor deletes a populated task-store partition whenever the bound checkout is momentarily unreachable, destroying its task bundles by @orbit-agent-01 in #1944
- Auto-task SkipIfOpen dedupe counts a 'someday' instance as open, silently blocking every later mint of that auto-task by @orbit-agent-01 in #1945
- [code-review] the orphan-task-store repair still reports "empty" partitions after it started deleting populated ones by @orbit-agent-01 in #1946
- Fix red CI on agent-main: worktree_gc_routing test still expects the pre-ORB-12140 'older_than_hours: 24' seeded default by @orbit-agent-01 in #1947
- [code-review] a workspace registered without a checkout (every cross-host import mirror) lost its partition claim, so doctor warns about it forever by @orbit-agent-01 in #1948
- [qa-sweep] orbit mcp init --claude writes config paths Claude Code does not read, so the Orbit MCP server is never registered by @orbit-agent-01 in #1949
- [qa-sweep] after task-index loss in the external-root layout, the checkout's own tasks vanish silently and
orbit task reindexrefuses to rebuild them by @orbit-agent-01 in #1950 - [qa-sweep] owner-wins import fails with a raw "task bundle already exists" error when the task index is lost, and the failed run still leaves the source workspace registered by @orbit-agent-01 in #1951
- [qa-sweep] a checkout deleted without teardown is undiagnosable and unreclaimable: doctor calls its task partition claimed and workspace remove refuses every selector by @orbit-agent-01 in #1952
- [friction-curation] Honor an explicit workspace selector in migrate --dry-run by @orbit-agent-01 in #1953
- [code-review] epic_pipeline worktrees are never reclaimed: delivery cleanup and the (now 1 h) GC backstop cannot derive an epic worktree's path by @orbit-agent-01 in #1954
- [code-review] dashboard still counts a
somedayauto-task instance as an open duplicate, contradicting the scheduler's skip_if_open rule by @orbit-agent-01 in #1955 - Fix red CI on agent-main: init_report::requested_mcp_records_none_detected_when_no_providers_exist returns 'configured' on every push since 5d821d0 by @orbit-agent-01 in #1956
- ci-failure-sweep files duplicate repairs: it ignores an existing repair task for the same failing runs unless it filed it, and files one task per failing job for a single failing test by @orbit-agent-01 in #1957
- [code-review] owner-wins import overwrites a local-prefix task whose registry binding is missing by @orbit-agent-01 in #1958
- [qa-sweep] Flaky under load:
update::tests::stage::rollback_replaces_a_running_executable_atomicallyspawns a freshly copied executable without the ETXTBSY retry ORB-11340 added elsewhere by @orbit-agent-01 in #1959 - [qa-sweep]
orbit workspace removestill refuses a deleted checkout: its positional collides with the global--workspacearg, so the runtime binds to the workspace being removed by @orbit-agent-01 in #1960 - [code-review]
orbit mcp init/remove --claude --scope homerewrites all of~/.claude.jsonwith an unlocked, non-atomic write by @orbit-agent-01 in #1961 - [qa-sweep]
orbit doctor --fix-orphan-task-storeshelp still promises "partitions that still hold task bundles are never deleted" while the repair deletes them by @orbit-agent-01 in #1962 - [qa-sweep]
make testfails at HEAD: the ORB-12158 dashboard assertion looks for "Open duplicate No" but the harness DOM renders "Open duplicateNo" by @orbit-agent-01 in #1964 - [qa-sweep]
orbit task listreports a lost task index asinvalid_input, rendering "invalid input:" inside the recovery sentence by @orbit-agent-01 in #1965 - [qa-sweep] In the shared external-root layout a deleted checkout's task partition is claimed forever:
workspace initwrites no checkout binding, so doctor can never classify it stale by @orbit-agent-01 in #1966 - [code-review] the repo's tracked
.claude.jsonis dead after the MCP path revert, andorbit mcp init --claudenow deletes it by @orbit-agent-01 in #1967 - task.update --context accepts file: selectors that do not exist in the checkout, so a typo silently ships a task with dead context by @orbit-agent-01 in #1968
- orbit task list silently truncates at --limit (default 50) with no notice or total, hiding older open tasks by @orbit-agent-01 in #1969
- [code-review] ORB-12170 left two
orbit_dirdescriptions of the task-partition evidence rule stale, one of them inside the runbook it updated by @orbit-agent-01 in #1970 - [code-review] ci-failure-sweep: a completed repair silently suppresses a later recurrence of the same named test for 30 days by @orbit-agent-01 in #1971
- [code-review]
orbit mcp init/remove --claude --scope homelocks~/..claude.json.lock, not Claude Code's~/.claude.json.lock, so the ORB-12165 lock excludes nothing by @orbit-agent-01 in #1972 - CI push runs check out the branch tip (github.ref_name) instead of github.sha, so queued runs test a different commit than the one they report on by @orbit-agent-01 in #1973
- Fix red CI on agent-main: ORB-12168 context-selector validation runs inside core add_task/update_task and breaks 5 orbit-core tests that seed fixture tasks by @orbit-agent-01 in #1974
- [code-review]
orbit task list --jsonsilently changed from a bare array to an object envelope, breaking the frozen per-command--jsonbyte contract by @orbit-agent-01 in https://github.com/constella...
v0.21.0
What's Changed
- ci: move code scanning to advanced setup and exclude test noise by @danieljhkim in #1734
- [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1735
- [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @danieljhkim in #1736
- [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-agent/src/providers/antigravity/antigravity_cli.rs by @danieljhkim in #1737
- [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1738
- [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/run/reconcile.rs by @danieljhkim in #1739
- [auto-task] Doc duties — validate the least-recently-validated docs by @danieljhkim in #1740
- [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1741
- [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-agent/src/providers/gemini_http/transport.rs by @danieljhkim in #1742
- [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1743
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/docs/config.rs by @danieljhkim in #1744
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/routines/clock.rs by @danieljhkim in #1745
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-registry/src/workspace_registry/io.rs by @danieljhkim in #1746
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-registry/src/host_identity.rs by @danieljhkim in #1747
- [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1748
- [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-agent/src/providers/gemini_http/transport.rs by @danieljhkim in #1749
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-store/src/driver/file/workspace_binding.rs by @danieljhkim in #1750
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-store/src/driver/file/scoreboard/scoreboard_summary/mod.rs by @danieljhkim in #1751
- [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1752
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/fs/io.rs by @danieljhkim in #1753
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/job/pipeline.rs by @danieljhkim in #1754
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-store/src/driver/file/scoreboard/scoreboard_summary/mod.rs by @danieljhkim in #1755
- [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-agent/src/providers/gemini_http/transport.rs by @danieljhkim in #1756
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/fs/io.rs by @danieljhkim in #1757
- [auto-task] Remediate current GitHub Actions failures by @danieljhkim in #1759
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/job/pipeline.rs by @danieljhkim in #1760
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/routines/clock.rs by @danieljhkim in #1762
- [dependabot-sweep] Update astro in website/package-lock.json by @danieljhkim in #1763
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-store/src/driver/file/workspace_binding.rs by @danieljhkim in #1764
- [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1765
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/job/pipeline.rs by @danieljhkim in #1766
- [dependabot-sweep] Update js-yaml in website/package-lock.json by @danieljhkim in #1767
- [ci-failure-sweep] Fix red CI: CI / Coverage (informational) / Collect workspace coverage by @danieljhkim in #1768
- [code-review] Activity-scoped external tools inherit Landlock confinement and fail outright off Linux by @danieljhkim in #1769
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/fs/io.rs by @danieljhkim in #1770
- [dependabot-sweep] Update svgo in website/package-lock.json by @danieljhkim in #1771
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/storage/sqlite.rs by @danieljhkim in #1772
- [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1773
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/docs/config.rs by @danieljhkim in #1774
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-registry/src/workspace_registry/io.rs by @danieljhkim in #1775
- [ci-failure-sweep] Fix red CI: CI / Coverage (informational) / Collect workspace coverage by @danieljhkim in #1777
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/job/pipeline.rs by @danieljhkim in #1778
- [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @danieljhkim in #1779
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/routines/clock.rs by @danieljhkim in #1780
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-store/src/driver/file/skill_store/mod.rs by @danieljhkim in #1783
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/routines/clock.rs by @danieljhkim in #1784
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/fs/io.rs by @danieljhkim in #1786
- [BLOCKED] [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/storage/sqlite.rs by @danieljhkim in #1781
- [BLOCKED] [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/fs/io.rs by @danieljhkim in #1782
- chore(deps): bump github/codeql-action from 3 to 4 by @dependabot[bot] in #1789
- chore(deps): bump actions/checkout from 4 to 7 by @dependabot[bot] in #1790
- [BLOCKED] [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/job/pipeline.rs by @danieljhkim in #1785
- [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/docs/walk.rs by @danieljhkim in #1788
- [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-search/src/embedder.rs by @danieljhkim in #1791
- [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/run/reconcile.rs by @danieljhkim in #1792
- [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-store/src/driver/sqlite/job_run_store/back… by @danieljhkim in #1793
- [code-scanning-sweep] Fix rust/command-line-injection in crates/orbit-core/src/application/docs/walk.rs by @danieljhkim in #1794
- [code-scanning-sweep] Fix rust/command-line-injection in crates/orbit-core/src/runtime/tool_exec.rs by @danieljhkim in #1795
- [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-search/src/companion.rs by @DanielJH...
v0.20.0
What's Changed
- Prevent configured sweep cadence from silently skipping enabled cron routines by @danieljhkim in #1485
- Enable and verify HSTS for orbit-cli.com by @danieljhkim in #1486
- Allow flexible audited task status changes, including reopening done tasks by @danieljhkim in #1487
- Publish a maintained security.txt for orbit-cli.com by @danieljhkim in #1488
- Repair conflict-recovery launch failure and preserve its diagnostic by @danieljhkim in #1489
- Recover published task PRs when the landing base advances before completion by @danieljhkim in #1490
- Allow explicitly authorized Mac operators to invoke agents on the owning Linux host by @danieljhkim in #1491
- Include model-aware Orchestrated-By attribution in task commit trailers by @danieljhkim in #1492
- Expose bounded recovery-attempt diagnostics through authoritative workflow run show by @danieljhkim in #1493
- Refresh stale delivery checkpoints when resuming a preserved PR candidate by @danieljhkim in #1494
- Keep task creator model separate from Orchestrated-By identity by @danieljhkim in #1495
- Support an explicit cooperative SSH operator grant for remote agent invocation by @danieljhkim in #1496
- Scope remote agent invocation independently of ordinary caller access by @danieljhkim in #1497
- Complete recovered rebases without granting agents broad Git metadata writes by @danieljhkim in #1498
- Implement independent review policy, direct repairs, and delivery coverage by @danieljhkim in #1499
- Use concrete failure diagnostics for stable CI sweep signatures by @danieljhkim in #1500
- Withhold release-publication work from automatic CI repair admission by @danieljhkim in #1501
- Fix website Pages deployment failing on missing Wrangler project name by @danieljhkim in #1502
- [code-review] Reviewer scope check rejects canonical symbol selectors by @danieljhkim in #1503
- [code-review] Before-PR policy rejects the local child pipelines needed to assemble an epic by @danieljhkim in #1504
- Bind CI failure signatures and excerpts to the actual failing job by @danieljhkim in #1505
- [code-review] Covered-only delivery prefixes eventually stall observation permanently by @danieljhkim in #1506
- [code-review] Managed PR merge does not atomically pin the reviewed head by @danieljhkim in #1507
- [auto-task] Doc duties — validate the least-recently-validated docs by @danieljhkim in #1508
- Migrate existing task registries before delivery automation reserves task action keys by @danieljhkim in #1509
- Recognize manually authored covering repairs in CI sweep deduplication by @danieljhkim in #1510
- [code-review] Operation explain omits the active grant policy snapshot by @danieljhkim in #1511
- [code-review] Epic review gate looks up the stable worktree ID instead of its admitted run by @danieljhkim in #1512
- [security-review] Pin and verify the MCP publisher used by npm smoke CI by @danieljhkim in #1513
- Distinguish required candidate validation from expected failures and scope exclusions in review settlement by @danieljhkim in #1514
- fix: derive delivery automation ownership from the workspace registry [ORB-11530] by @danieljhkim in #1515
- Preserve the authoritative integration branch throughout scheduled CI sweep admission by @danieljhkim in #1516
- Restore additive task-registry compatibility and automatically recover registries marked v6 by @danieljhkim in #1517
- [code-review] Review wall-time budget loses interrupted work and does not bound the current attempt by @danieljhkim in #1518
- Support validated crew effort configuration and include effort in effective config output by @danieljhkim in #1519
- [ci-failure-sweep] Fix red CI: macOS Platform / macOS Sandbox / Run orbit-core sandbox tests by @danieljhkim in #1520
- [code-review] Review-gate failure handoff cannot push a rewritten candidate by @danieljhkim in #1522
- [qa-sweep] Fresh orbit init still tells operators before-pr is not yet supported by @danieljhkim in #1523
- Bind superseded review validation to the check that actually replaces it by @danieljhkim in #1524
- [auto-task] Doc duties — validate the least-recently-validated docs by @danieljhkim in #1525
- [BLOCKED] Prove live filesystem enforcement for ORB-11514 without breaking recovery tools by @danieljhkim in #1521
- Collect complete diagnostic units from long CI logs without permanent truncation deferral by @danieljhkim in #1526
- [friction-curation] Make agent_implement cleanup compatible with Codex denied rm commands by @danieljhkim in #1527
- [friction-curation] Say when a task-pilot apply applied zero partitions in the stale-skip diagnostic by @danieljhkim in #1528
- [code-review] Host-registry design docs still assign identity DTOs to orbit-common after path retarget by @danieljhkim in #1529
- Preserve successful rebase recovery provenance through settlement and resume by @danieljhkim in #1530
- [friction-curation] Preserve run attribution on dashboard process error rows by @danieljhkim in #1531
- Fix global task jump reporting an existing task as not found by @danieljhkim in #1532
- [qa-sweep] auto-task list and dashboard show Debug coverage names that add rejects by @danieljhkim in #1533
- [BLOCKED] Keep explicit review check identities distinct from fallback command identities by @danieljhkim in #1534
- [ci-failure-sweep] Fix red CI: macOS Platform / macOS Sandbox / Run orbit-core sandbox tests by @danieljhkim in #1535
- [friction-curation] Make empty multi-term friction and task search distinguishable from a clean group by @danieljhkim in #1536
- [friction-curation] Stop orbit-web unidentified-caller routine toggle from flaking under parallel tests by @danieljhkim in #1537
- [friction-curation] Document git archive and git-show workarounds for a read-only managed .git by @danieljhkim in #1538
- [qa-sweep] workspace init --root still tells operators to commit checkout .orbit files that were not written by @danieljhkim in #1539
- [friction-curation] Derive frozen MCP surface length assertions from one canonical list by @danieljhkim in #1540
- [auto-task] Doc duties — validate the least-recently-validated docs by @danieljhkim in #1541
- Reconcile failed-run filtering with dashboard failure counts by @danieljhkim in #1542
- Make website First Task onboarding a complete executable sequence by @danieljhkim in #1544
- Persist an explicit sandbox-off operator choice across executor seeding by @danieljhkim in #1545
- Select crews randomly from configurable task-complexity pools in auto dispatch by @danieljhkim in #1546
- Fix CI diagnostic selection and cross-job compiler deduplication [ORB-11582] by @danieljhkim in #1543
- Make Operations mint and toggle controls usable in authorized dashboard sessions by @danieljhkim in #1547
- Add discoverable public documentation for the Orbit dashboard by @danieljhkim in #1549
- [ci-failure-sweep] Fix red CI...
v0.19.2
What's Changed
- Implement operation-mode policy, scoped automation, and bounded recovery by @danieljhkim in #1473
- [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/tests/exec.rs by @danieljhkim in #1474
- [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/tests/task_pilot_… by @danieljhkim in #1475
- [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/tests/task_pilot_… by @danieljhkim in #1476
- [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/tests/exec.rs by @danieljhkim in #1477
- [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/tests/task_pilot_… by @danieljhkim in #1479
- [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/tests/workspace_a… by @danieljhkim in #1480
- Revise CONTRIBUTING.md: Orbit does not accept external pull requests by @danieljhkim in #1484
- Bump release metadata to 0.19.2 without tagging or publishing by @danieljhkim in #1483
Full Changelog: v0.19.1...v0.19.2
v0.19.1
What's Changed
- chore: back-merge main into agent-main after v0.14.0 by @danieljhkim in #1124
- chore: agent-main release to main by @danieljhkim in #1136
- chore: promote agent-main to main by @danieljhkim in #1157
- chore(release): merge agent-main to main by @danieljhkim in #1226
- chore(release): v0.17.1 release agent-main to main by @danieljhkim in #1250
- chore(release): v0.18.0 merge agent-main to main by @danieljhkim in #1294
- release: v0.19.0 by @danieljhkim in #1450
- Add manual MCP Registry publication using dedicated Actions PAT by @danieljhkim in #1451
- Fix MCP Registry owner preflight to accept GitHub admin role by @danieljhkim in #1452
- [qa-sweep] Explicit --root cannot override managed ORBIT_WORKSPACE for scratch task commands by @danieljhkim in #1455
- Report PR failure handoffs without inventing conflict recovery attempts by @danieljhkim in #1456
- Preserve declared agent failure codes and explanations in pipeline diagnostics by @danieljhkim in #1457
- [code-review] Execution-failed automation can starve behind stale incident members by @danieljhkim in #1458
- Route routine Dependabot Actions updates to agent-main by @danieljhkim in #1459
- Preserve valid task ownership through resumed PR failure handoff by @danieljhkim in #1460
- Fix public connect rustdoc linking to private reject_root_override by @danieljhkim in #1461
- Update GitHub Actions dependencies with current runner compatibility by @danieljhkim in #1462
- [BLOCKED] Repair macOS public CA explicit-deny regression test after ORB-11406 by @danieljhkim in #1454
- Expose CI sweep pilot failures and release-only repairs without false success or repeat implementation by @danieljhkim in #1464
- Parse Grok completion from final response text rather than unrelated wrapper fields by @danieljhkim in #1465
- Recover bounded CI evidence from job logs when gh run logs return empty success by @danieljhkim in #1466
- Lock Cursor plugin distribution to releases and require a visible marketplace follow-up by @danieljhkim in #1467
- Reconcile failure-handoff commits with resumed implementation checkpoints by @danieljhkim in #1470
- Replace yanked der 0.8.0 in the Cargo lockfile by @danieljhkim in #1471
Full Changelog: v0.19.0...v0.19.1
v0.19.0
What's Changed
- [code-review] Make log-follow tests synchronize readiness and terminate their workers by @danieljhkim in #1295
- [code-review] Replace dashboard behavioral source-string assertions with executable tests by @danieljhkim in #1296
- [code-review] Consolidate duplicated CLI and web job-run JSON projections by @danieljhkim in #1297
- [code-review] Bound initial log-tail buffering by the requested matching window by @danieljhkim in #1298
- [code-review] Apply the scoreboard time window to retries and duration metrics by @danieljhkim in #1299
- [auto-task] Doc duties — validate the least-recently-validated docs by @danieljhkim in #1300
- Onboard gpt-6-astra and gemini-3.8-flash in Orbit by @danieljhkim in #1301
- Prevent Dependabot and CI sweeps from filing duplicate tasks by @danieljhkim in #1302
- [code-review] Distinguish unavailable scoreboard side metrics from real zero counts by @danieljhkim in #1303
- Add
orbit host showfor local host identity by @danieljhkim in #1304 - Add opt-in completion policy to orbit run ship and run auto by @danieljhkim in #1305
- [code-review]
orbit task flowcounts a done-then-archived task as two outflow events by @danieljhkim in #1306 - Prevent task_trimmed_surface tests from writing fixtures to the live Orbit workspace by @danieljhkim in #1307
- [code-review] Epic PR-mode
--completefails on an empty-delivery epic becausepr_completedemands theno-diff-expectedtag by @danieljhkim in #1310 - [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @danieljhkim in #1309
- [code-review] Dashboard scoreboard renders unavailable failure-incident metrics as a measured zero by @danieljhkim in #1308
- Bound task-list bundle hydration and eliminate repeated dashboard reads by @danieljhkim in #1311
- Remove retired ADR authority from task-pilot instructions while preserving compatibility by @danieljhkim in #1312
- Explain why auto-drain leaves backlog tasks waiting by @danieljhkim in #1313
- Correct non-runnable Orbit skill examples for pilot inputs and activity inspection by @danieljhkim in #1314
- Extract CI checkout identity before truncating human log excerpts by @danieljhkim in #1315
- Make targeted run cancellation race safely with worker terminalization by @danieljhkim in #1316
- Show actual activity model selection alongside the requested workflow crew by @danieljhkim in #1317
- Pilot and revalidate CI-sweep findings before exposing them to auto-drain by @danieljhkim in #1318
- Show workspace-attributed runs in the dashboard All workspaces view by @danieljhkim in #1319
- Refresh CLI tool-list goldens for streaming GitHub log evidence by @danieljhkim in #1320
- Respect repository merge methods in --complete and preserve completion failure semantics by @danieljhkim in #1321
- Synchronize escaped-pipe-holder test before the parent exits by @danieljhkim in #1322
- Add a website guide for preparing and operating continuous delivery by @danieljhkim in #1323
- Keep overlapping pilot preparation from discarding unrelated valid partitions by @danieljhkim in #1324
- Isolate output golden tests from inherited live workspace authority by @danieljhkim in #1325
- Continue --complete polling when repository auto-merge is disabled by @danieljhkim in #1326
- [code-review] CI-failure sweep files nothing when checkout-evidence hits any bound, including display caps by @danieljhkim in #1327
- Make dashboard shutdown finish promptly during a live service restart by @danieljhkim in #1328
- Include required complexity in auto-task finding examples by @danieljhkim in #1329
- Prepare pilot context against a consistent current landing-branch snapshot by @danieljhkim in #1330
- Update completion pipeline fixture for required auto-merge capability by @danieljhkim in #1332
- Start a bounded auto-delivery window from the Orbit dashboard by @danieljhkim in #1333
- Select recent dashboard runs before applying per-workspace limits by @danieljhkim in #1334
- Allow an auto-drain to exclude unavailable crews for its run window by @danieljhkim in #1335
- Start the dashboard drain timeout only after shutdown is requested by @danieljhkim in #1336
- Bound task-pilot discovery evidence as workspace history grows by @danieljhkim in #1337
- Run failed-task triage with an enforceable Linux filesystem policy by @danieljhkim in #1338
- Ship orbit-orchestrate skill for continuous task preparation, delivery, and recovery by @danieljhkim in #1339
- Restore dashboard compilation after auto-drain crew allowlist API change by @danieljhkim in #1340
- Make task-pilot advisory field types explicit in its response schema by @danieljhkim in #1341
- Regenerate the skill-list golden after orbit-orchestrate registration by @danieljhkim in #1342
- Reduce repeated Rust dependency compilation across Orbit worker worktrees by @danieljhkim in #1343
- [BLOCKED] Adjust an active auto-drain worker limit without replacing its coordinator by @danieljhkim in #1344
- docs: clarify Orbit orchestration completion and recovery guidance by @danieljhkim in #1345
- Make crew selection on run job discoverable and correct invalid-flag guidance by @danieljhkim in #1346
- [code-review] sync-plugin-skills.sh --check does not detect orphaned plugin/skills directories after a skill is removed or renamed by @danieljhkim in #1347
- [code-review] task_auto_pipeline's list_backlog step does not forward allowed_crews, so crew-excluded tasks pass discovery and only fail at the final gate by @danieljhkim in #1348
- [code-review] task_pilot's align_clean_primary fast-forwards the shared primary checkout without serialization, racing under the job's own concurrency limit by @danieljhkim in #1349
- [auto-task] Doc duties — validate the least-recently-validated docs by @danieljhkim in #1350
- Pilot from an immutable source snapshot while preserving a dirty primary checkout by @danieljhkim in #1351
- [ci-failure-sweep] Fix red CI: CI / Coverage (informational) / Collect workspace coverage by @danieljhkim in #1352
- [ci-failure-sweep] Fix red CI: macOS Platform / macOS Sandbox / Run orbit-core sandbox tests by @danieljhkim in #1353
- [code-review] Compiler-cache guardrail test uses shared /tmp stable mounts and flakes under concurrent runs by @danieljhkim in #1354
- [code-review] Readiness ignores string concurrency submitted through run job by @danieljhkim in #1355
- Ship Linux sandbox prerequisites in the installed Orbit setup skill by @danieljhkim in #1356
- Refresh CLI tool-list goldens for the live worker-control tool surface by @danieljhkim in #1357
- Add validated per-crew effort levels to config.toml and executor dispatch by @danieljhkim in #1358
- Detect actionable CI failures while newer workflows or sibling checks are still running by @danieljhkim in #1359
- Correlate parallel provider completion events by invocation identity by @dan...