Skip to content

Releases: constellation-works/orbit

v0.25.0

Choose a tag to compare

@github-actions github-actions released this 28 Sep 06:53
ca096e8

What's Changed

  • [auto-task] Skill validation — review the shipped Orbit skills for drift by @orbit-agent-01 in #2541
  • [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #2542
  • [friction-curation] Note in CI that a failed guardrails step skips the sandbox gate by @orbit-agent-01 in #2543
  • Publish a privacy policy page on orbit-cli.com by @orbit-agent-01 in #2544
  • [friction-curation] Retry a task pilot once when only status drifted, and keep other drift rejected by @orbit-agent-01 in #2545
  • docs: Refresh README and remove stale product descriptions by @danieljhkim in #2547
  • [security-review] orbit mcp listen executes JSON-RPC lines from a browser-sent HTTP POST, so any web page can blind-write tasks while the listener runs by @orbit-agent-01 in #2548
  • Promote doc-duties to the embedded default auto-task catalog by @orbit-agent-01 in #2549
  • docs: Tighten RELEASING.md and CONFIG.md by @danieljhkim in #2550
  • Copilot terminal-status fixture intermittently fails to launch freshly written executable with ETXTBSY by @orbit-agent-01 in #2551
  • [code-scanning-sweep] Fix rust/command-line-injection in crates/orbit-core/src/application/job/pipeline/worker/scope.rs by @orbit-agent-01 in #2552
  • Full QA harness aborts in managed worktree when owner-only qa-full-sweep definition is absent by @orbit-agent-01 in #2554
  • [BLOCKED] [friction-curation] Require caller enumeration when a repair narrows a shared invariant by @orbit-agent-01 in #2546
  • Add a run-failure-patterns default auto-task that mines unfiled recurring run failures by @orbit-agent-01 in #2555
  • Add a report-only backlog-hygiene default auto-task for stuck and untriaged tasks by @orbit-agent-01 in #2556
  • Full QA definition-policy scenario never executes its required plugin command-group assertion by @orbit-agent-01 in #2557
  • Full QA workflow-process tests misidentify disposable non-Git fixtures inside managed worktree by @orbit-agent-01 in #2558
  • fix: Render worker scope memory limits from their integers (CodeQL #459) by @danieljhkim in #2553
  • [code-review] Run-failure scan read commands can mutate run state by @orbit-agent-01 in #2559
  • Task-pilot QA fixture tries to fetch through read-only shared Git metadata in managed worktree by @orbit-agent-01 in #2560
  • [code-review] Backlog-hygiene report reads runs through commands that finalize orphaned runs by @orbit-agent-01 in #2561
  • Codebase refinement: bug fixes, hardening, dead-code removal, dedupe by @danieljhkim in #2562
  • [auto-task] Skill validation — review the shipped Orbit skills for drift by @orbit-agent-01 in #2563
  • [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #2564
  • website: redesign the homepage and docs chrome, fix stale docs by @danieljhkim in #2565
  • [friction-curation] Update the host scheduler's auto-task definition from a sandboxed job run by @orbit-agent-01 in #2566
  • [code-org] Restructure orbit-cmd: registry/ and task/ modules, split doctor.rs into doctor/ by @orbit-agent-01 in #2567
  • [code-org] Restructure orbit-engine: activity_job workspace module layout, split ci/collect.rs and cli_runner orchestrator/spawn by @orbit-agent-01 in #2568
  • [code-org] Split orbit-exec linux_sandbox.rs into a linux_sandbox/ module by @orbit-agent-01 in #2569
  • [code-org] Restructure orbit-tools: split plugin backend/callback/loader and move logic out of builtin/github/mod.rs by @orbit-agent-01 in #2570
  • dashboard: redesign the chrome, Tasks, drain card, Runs and run detail by @danieljhkim in #2572
  • [code-org] Restructure orbit-core runtime/: plugin/, workspace/, audit/ modules and a declarations-only mod.rs by @orbit-agent-01 in #2571
  • [code-org] Restructure orbit-core application/: fold routine.rs into routines/, extract managed_assets, group health, split gate.rs and command dispatch by @orbit-agent-01 in #2573
  • [code-org] Restructure orbit-core engine_host: split runtime_host.rs and regroup v2_host into ci_failure/, pull/, admission/ by @orbit-agent-01 in #2574
  • [code-org] Restructure orbit-store: split migration steps, move logic out of fat mod.rs files, split task_registry/store.rs, group contracts by @orbit-agent-01 in #2575
  • dashboard: split the stylesheet per screen, organize assets into folders, tidy the top bar by @danieljhkim in #2576
  • Remove two unused imports in orbit-core left by recent refactors by @orbit-agent-01 in #2577
  • [code-review] Rule injection writes through agent-guide symlinks outside the workspace by @orbit-agent-01 in #2578
  • Explicit Ship is refused as a duplicate while a task-pilot preparation run lists the task by @orbit-agent-01 in #2579
  • Dashboard truncates a refused Ship/Approve error to one ellipsized line ("ship failed: tas…") by @orbit-agent-01 in #2580
  • [test-cleanup] Add a cli_runner test builder and file fixtures to collapse orchestrator.rs/spawn.rs setup boilerplate by @orbit-agent-01 in #2581
  • Make orbit job resume submit a detached worker by default (add --wait for the foreground path) by @orbit-agent-01 in #2582
  • [ci-failure-sweep] Fix red CI: CI / Coverage (informational) / Collect workspace coverage by @orbit-agent-01 in #2583
  • [code-org] Restructure orbit-web: split state.rs and slim lib.rs and api/mod.rs by @orbit-agent-01 in #2584
  • [friction-curation] Task-pilot apply fails whenever agent-main advances during the pilot ("state-trigger source changed") by @orbit-agent-01 in #2585
  • [code-org] Leftover splits: orbit-types task model and auto_task, orbit-config registry, orbit-cli operation, orbit-agent response layout by @orbit-agent-01 in #2586
  • [friction-curation] Stop the orbit-common generation admission test from failing after a dropped update by @orbit-agent-01 in #2587
  • Refuse a second live resume of the same source run (server-side dedup for submit_resume_run) by @orbit-agent-01 in #2588
  • [test-cleanup] Add a tool-call test helper to collapse task_tools.rs boilerplate by @orbit-agent-01 in #2589
  • [ci-failure-sweep] Fix red CI: macOS Platform / macOS Sandbox / Run orbit-core sandbox tests by @orbit-agent-01 in #2590
  • [test-cleanup] Add an initialized-MCP-client fixture to collapse mcp_roundtrip.rs handshake boilerplate by @orbit-agent-01 in #2591
  • Block tasks coupled to a run that is reconciled interrupted (system interruption) by @orbit-agent-01 in #2592
  • CI red: job_resume_detached fixture defines [crews.sol] without a default_crew on hosts with no agent CLIs by @orbit-agent-01 in #2593
  • [test-cleanup] Replace text-matching dashboard_assets tests with behavior tests, keeping only structural safety guards by @orbit-agent-01 in #2594
  • Hold new run admissions while a host shutdown/reboot is scheduled by @orbit-agent-01 in #2595
  • [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #2596
  • [test-cleanup] Review zero-unique tests in crates/orbit-cli/src/command/workspace/tests/init.rs by @orbit-agent-01 in #2597
  • [test-cleanup] Review zero-unique tests in crates/orbit-web/src/api/tests/tasks.rs by @orbit-agent-01 in #2598
  • [test-cleanup] Review zero-unique tests in crates/orbit-core/src/adapter/tool_h...
Read more

v0.24.0

Choose a tag to compare

@github-actions github-actions released this 23 Sep 07:18

What's Changed

  • fix(website): fix the hero session figure and refresh stale docs by @danieljhkim in #2259
  • fix(deps): bump rmcp to 2.2.0 (GHSA-9g45-5xwm-f3wc) by @danieljhkim in #2260
  • feat(website): lead the homepage with the agent-driven flow by @danieljhkim in #2262
  • chore(deps): bump devalue from 5.8.2 to 5.9.2 in /website in the npm_and_yarn group across 1 directory by @dependabot[bot] in #2261
  • fix(website): make the hero transcript readable by @danieljhkim in #2263
  • docs(readme): lead with the agent-driven loop by @danieljhkim in #2264
  • [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #2265
  • [ci-failure-sweep] Fix red CI: CI / Coverage (informational) / Collect workspace coverage by @orbit-agent-01 in #2266
  • [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #2267
  • Align final-QA crew contract test with authorized Opus configuration by @orbit-agent-01 in #2268
  • [code-review] Memoised bwrap probe pins a transient namespace failure for the process lifetime, permanently failing sandboxed dispatch by @orbit-agent-01 in #2269
  • [security-review] Dashboard never validates the Host header, so DNS rebinding lets any website read every API GET by @orbit-agent-01 in #2270
  • [qa-sweep] orbit auto-task list on a TTY hides the STATE column when every definition is disabled by @orbit-agent-01 in #2271
  • [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @orbit-agent-01 in #2272
  • [distributed-drain v1] Retire terminal failed-run triage while preserving authorized in-run recovery by @orbit-agent-01 in #2273
  • [distributed-drain v1] Preserve declared missing-file context through task storage, projections and locks by @orbit-agent-01 in #2274
  • [qa-sweep] GET /api/routines returns 500 when the systemd user bus is unavailable by @orbit-agent-01 in #2275
  • [security-review] Env-value redaction misses AUTHORIZATION / AUTHZ / OAUTH variables: only a standalone AUTH segment counts as sensitive by @orbit-agent-01 in #2276
  • [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @orbit-agent-01 in #2277
  • [qa-sweep] Make task-start provenance test deterministic under managed worker identity by @orbit-agent-01 in #2278
  • [distributed-drain v1] Retire epic execution with safe legacy migration and retained task hierarchy by @orbit-agent-01 in #2279
  • [code-review] Dashboard /healthz?detailed=true skips the Host gate, so DNS rebinding still reads workspace names and host paths by @orbit-agent-01 in #2280
  • [distributed-drain v1] Establish recoverable task/reservation commit boundary before admission by @orbit-agent-01 in #2281
  • [code-review] orbit-core sweep tests fail intermittently under full-suite parallelism with an empty SweepOutcome by @orbit-agent-01 in #2282
  • [code-review] task lint reports a non-existent gate: empty context_files is an error citing an admission refusal that never fires by @orbit-agent-01 in #2283
  • [friction-curation] Document that nested bwrap cannot create user namespaces inside agent-executor worktrees by @orbit-agent-01 in #2284
  • [friction-curation] Document the python workaround for reading website/dist when Claude Read/grep denies generated output by @orbit-agent-01 in #2285
  • [friction-curation] Document stage-attach-remove for QA evidence that lives outside workspace_root by @orbit-agent-01 in #2286
  • [code-review] Epic root with inherited-only context is admitted unserialized, contradicting the retirement's "not eligible until repaired" promise by @orbit-agent-01 in #2287
  • Keep persistent MCP clients usable across upgrades or refuse before schema changes strand them by @orbit-agent-01 in #2288
  • [code-review] v20's migration doc comment was orphaned onto apply_task_commit_journal, leaving v20 undocumented and v21 mis-described by @orbit-agent-01 in #2289
  • [code-review] show_workspace_claim mutates reservation rows outside the commit boundary by @orbit-agent-01 in #2290
  • Remove website validation guidance that routes around a file-read permission denial by @orbit-agent-01 in #2291
  • Add skill-validation auto-task: recurring review and repair of the shipped Orbit skills by @orbit-agent-01 in #2292
  • Resolve same-host cross-workspace dependencies consistently during task preparation and admission by @orbit-agent-01 in #2293
  • [qa-sweep] HEAD generation pin requires a writable global root, so --root scratch init fails with EROFS in agent-executor sandboxes by @orbit-agent-01 in #2294
  • ci-failure-sweep: bare head-SHA fingerprint lets any open task mentioning the commit suppress an unrelated CI failure by @orbit-agent-01 in #2296
  • [friction-curation] Teach agents to confirm orbit.task.add with a compact id projection, not truncated JSON by @orbit-agent-01 in #2297
  • [ci-failure-sweep] Fix red CI: CI / Coverage (informational) / Collect workspace coverage by @orbit-agent-01 in #2298
  • Restore macOS sandboxed nested Orbit calls under executable-generation admission by @orbit-agent-01 in #2299
  • Dashboard: Audit Summary 24h pane omits the tool call failure rate by @orbit-agent-01 in #2300
  • feat(dashboard): regroup the auto-drain pane around what an operator can act on by @danieljhkim in #2295
  • [distributed-drain v1] Add atomic distributed admission, durable claims and replayable receipts by @orbit-agent-01 in #2302
  • [code-scanning-sweep] Fix rust/path-injection at 3 locations in crates/orbit-common/src/fs/generation.rs by @orbit-agent-01 in #2303
  • orbit web connect: grant operator capability to the remote dashboard server by default by @orbit-agent-01 in #2304
  • [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @orbit-agent-01 in #2305
  • feat(dashboard): move Auto-drain under Work beside Tasks by @danieljhkim in #2301
  • feat(dashboard): one row vocabulary for Routines, Auto-tasks and a projected Jobs pane by @danieljhkim in #2306
  • [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @orbit-agent-01 in #2307
  • Federated MCP: orbit mcp serve --federated --operator propagates operator to every destination; remove destination-side caller authorization by @orbit-agent-01 in #2308
  • [distributed-drain v1] Fence claim writes and add idempotent settlement, inspection and deliberate recovery by @orbit-agent-01 in #2309
  • [code-scanning-sweep] Fix rust/path-injection at 4 locations in crates/orbit-common/src/fs/generation.rs by @orbit-agent-01 in #2310
  • Restore artifact provenance build after caller authorization removal by @orbit-agent-01 in #2311
  • [distributed-drain v1] Expose key-bound claim lifecycle APIs with read-only preflight and receipt lookup by @orbit-agent-01 in #2312
  • fix: Recover a pending task-commit marker on job resume instead of refusing [ORB-12575] by @orbit-agent-01 in #2313
  • [code-review] orbit update acquires generation admission on the host-global root while every client pins --root/ORBIT_ROOT, so an upgrade can replace the binary under live MCP clients by @orbit-agent-01 in #2314
  • docs(plugin): require search-before-add only for finding-driven filings by @danieljhkim in #2315
  • [distributed-drain v1] Ac...
Read more

v0.23.0

Choose a tag to compare

@github-actions github-actions released this 17 Sep 04:54
dfd5fdb

What's Changed

  • fix(website): correct --complete and approval semantics on the home page by @danieljhkim in #2128
  • perf(common): PatternRedactor::with_argv_secrets() compiles ~36 Unicode regexes per call, bypassing the OnceLock cache by @danieljhkim in #2129
  • perf(store): child-run admission scans a job's entire run history and parses input_json per row inside the writer transaction by @danieljhkim in #2130
  • test: worktree_gc_routing sleeps until the next wall-clock minute (2–62 s), twice, inside the serialized test group by @danieljhkim in #2131
  • perf(store): run listing always hydrates steps with agent_response_json; sweep/summary/gc callers fetch every run unfiltered by @danieljhkim in #2132
  • perf(cli): logging subscriber reads config.toml, walks the log dir, and opens the JSONL log on every invocation (even --help) by @danieljhkim in #2133
  • perf(store): TaskRegistryStore has no read pool; every registry read serialises behind the writer mutex by @danieljhkim in #2134
  • fix(engine): drop needless borrows of the static argv redactor (unbreaks CI clippy) by @danieljhkim in #2135
  • perf(web): handlers run store/filesystem work directly on tokio workers instead of via blocking() by @danieljhkim in #2136
  • perf(mcp): every workspace tool call opens a brand-new OrbitRuntime (registry parse, host.toml ×2, SQLite opens) by @danieljhkim in #2137
  • launchd clock health reports HEALTHY while the unit's program is missing and launchd has it in the penalty box (exit 78) by @danieljhkim in #2139
  • perf(store): reindex/import/renumber commit one IMMEDIATE transaction + FULL fsync per task by @danieljhkim in #2140
  • Seeded delivery-qa / delivery-code-review hardcode branch: agent-main; on a main-based workspace every tick fails with an opaque automation_deferred: evidence_unavailable by @danieljhkim in #2141
  • fix(registry): read a missing global root as an empty registry by @danieljhkim in #2144
  • MCP orbit.task.update start from proposed records started from_status: proposed after an implicit approval to backlog, and drops planned_by for the plan supplied on that write by @danieljhkim in #2146
  • perf(core): update_task with dependencies hydrates the entire store to run a cycle check by @danieljhkim in #2147
  • perf(core): CI-failure filing re-hydrates every task and reads every open task's comments once per failure cluster by @danieljhkim in #2148
  • ci: make the ci-fast guard self-tests pass on macOS by @danieljhkim in #2150
  • [BLOCKED] build: tiktoken-rs is a hard dependency of orbit-engine but only used in orbit-agent tests; jsonschema in orbit-engine is test-only by @danieljhkim in #2138
  • [BLOCKED] Installer / orbit update leaves the launchd clock unit pointing at the previous binary path; sweeps die silently until someone runs orbit doctor by @danieljhkim in #2143
  • perf(search): federated search loads the registry once, fans out concurrently, shares the query embedder by @danieljhkim in #2151
  • perf(web): every API request re-reads and re-validates the workspace registry under a global lock by @danieljhkim in #2152
  • perf(search): cosine scan allocates per row, recomputes norms, re-sorts top-k per insert under the store mutex by @danieljhkim in #2154
  • [BLOCKED] perf(search): batch embeds across fields/sources and commit reindex in few transactions by @danieljhkim in #2153
  • perf(exec): Linux bwrap compile walks the worktree once per deny rule (×2), recompiles glob regexes per rule, and re-probes bwrap every spawn by @danieljhkim in #2156
  • [code-review] reindex commits a stale envelope after releasing the bundle lock by @danieljhkim in #2158
  • Retired default routine auto_task_scheduler.yaml emits a load error on every sweep/routine list in every upgraded workspace, and workspace sync refuses to retire it as "locally modified" although it is git-clean by @danieljhkim in #2159
  • [BLOCKED] perf(core): TaskLockIndex and /api/tasks/locks hydrate the full store; build from envelopes instead by @danieljhkim in #2149
  • perf(registry): parse workspaces.json once and thread the loaded registry + host identity through runtime open by @danieljhkim in #2160
  • [BLOCKED] perf(search): lexical task search materialises every bundle, lowercases every field, and reads artifact blobs on miss by @danieljhkim in #2145
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-registry/src/workspace_registry/io.rs by @danieljhkim in #2161
  • perf(core): state-routine member admission spawns 4–5 git subprocesses per task per member inside a loop by @danieljhkim in #2162
  • perf(web): /api/tasks list rows carry full sidecars and issue 1–4 store calls per row (N+1) by @danieljhkim in #2163
  • step_failure_recovery never fires for an agent-declared failed envelope; gate-red tasks go straight to blocked by @danieljhkim in #2164
  • perf(core): backlog/drain snapshot full-hydrates, deep-clones every task, and does O(B×H) selector overlap with per-selector stats by @danieljhkim in #2165
  • perf(mcp): every tool call rebuilds the entire builtin tool registry twice; tools/list regenerates every schema per request by @danieljhkim in #2166
  • pr_conflict_recovery must resolve the conflict even when the base advanced past the recorded checkpoint or the local gate is red by @danieljhkim in #2167
  • perf(store): every task index write scans the entire cross-workspace relation table and every binding row by @danieljhkim in #2168
  • [BLOCKED] perf(search): chunker issues one token_count RPC per word at every chunk boundary by @danieljhkim in #2142
  • style(store): rustfmt reindex.rs imports by @danieljhkim in #2171
  • perf(core): replace full list_tasks() hydration with status/envelope projections where only one field is used by @danieljhkim in #2172
  • chore(plugin): resync plugin/skills/orbit with core assets by @danieljhkim in #2174
  • perf(core): every task write response runs a global status scan plus comment/history bundle reads by @danieljhkim in #2175
  • fix(exec): SignalHandlerGuard fan-out can killpg an unrelated process group (PID registered as PGID + PID reuse) by @danieljhkim in #2176
  • fix(gc): worktree_gc times out (30 s) removing worktrees that carry a multi-GB cargo target dir; 35 stale worktrees / 199 GB left behind by @danieljhkim in #2177
  • perf(web): dashboard static assets served with no ETag/Cache-Control and no compression by @danieljhkim in #2178
  • perf(web): /api/runs/:id/logs reads every stdout/stderr blob for the run before applying limit by @danieljhkim in #2179
  • test: fix agent-main baseline (qa-full-sweep crew grok, batched embed fakes) by @danieljhkim in #2180
  • perf(engine): CI sweep probes retired branches with one git ls-remote network round-trip per branch by @danieljhkim in #2181
  • fix(core): skip non-task relation targets in task projection; align task.add schema test by @danieljhkim in #2182
  • perf(engine): worktree GC re-lists and re-canonicalises all registered worktrees per candidate and stat-walks every eligible worktree even in dry-run by @danieljhkim in #2183
  • perf(store): task listing never uses the SQL index filter and scans the whole registry status table (twice) per list by @danieljhkim in #2184
  • perf(engine): captured stdout is JSON-parsed 4–6 times per invocation and the full 1 MiB capture is regex-redacted before truncating to a 64 KiB preview by @danieljhkim in #2185
  • perf(engine): job executor clones the whole pi...
Read more

v0.22.1

Choose a tag to compare

@github-actions github-actions released this 14 Sep 04:49
95d6ed9

What's Changed

  • feat(auto-tasks): attribute review and CI findings with regression_from by @orbit-agent-01 in #2090
  • fix(make): install to ~/.orbit/bin, matching install.sh by @orbit-agent-01 in #2091
  • [friction-curation] Name doc-duty template eligibility and generated INDEX.md in the auto-task prompt by @orbit-agent-01 in #2092
  • doctor_check_stalled_automation was inserted inside doctor_check_task_relations's doc comment, splitting both rustdocs by @orbit-agent-01 in #2093
  • [BLOCKED] [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #2094
  • [BLOCKED] Repo-local delivery-code-review.yaml never received the regression_from rules, so minted tasks still use the old template by @orbit-agent-01 in #2095
  • Stop hard-failing on newer store schema/layout: forward-compatible open or auto-migrate by @orbit-agent-01 in #2097
  • [BLOCKED] Add orbit run task-pilot entrypoint for task_pilot_pipeline by @orbit-agent-01 in #2096
  • Require agent_implement final file-scope reconciliation and cleanup before success by @orbit-agent-01 in #2098
  • Allow delivery despite primary source dirt when remote integration is clean by @orbit-agent-01 in #2099
  • Preserve managed worktree context when dispatching step_failure_recovery by @orbit-agent-01 in #2100
  • Dashboard: let a human force any task status from any status (parity with CLI --force) by @orbit-agent-01 in #2101
  • Recover failed-job CI evidence when parent workflow logs are unavailable in progress by @orbit-agent-01 in #2102
  • User-facing docs still omit orbit run task-pilot after PR #2096 by @orbit-agent-01 in #2103
  • [security-review] Website checks gate is inert: setup-node is pinned to a nonexistent commit, so every run fails at job setup by @orbit-agent-01 in #2104
  • [security-review] MCP callers authorization ceiling is seeded and loaded without ownership or permission validation by @orbit-agent-01 in #2105
  • [security-review] Orbit state directories are created with the ambient umask, so 0600 stores inside them stay group-replaceable by @orbit-agent-01 in #2107
  • [BLOCKED] [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @orbit-agent-01 in #2106
  • Align positioning with current provider execution by @orbit-agent-01 in #2110
  • Document dashboard inline task editing by @orbit-agent-01 in #2109
  • Clarify the README first-task and review workflow by @orbit-agent-01 in #2108
  • agent_implement: make the cleanup contract language-neutral; drop cargo clean and stop failing handoff on ignored build output by @orbit-agent-01 in #2111
  • Assign explicit default complexity to shipped auto-task templates by @orbit-agent-01 in #2113
  • Verify Linux step failure recovery with a real sandboxed subprocess by @orbit-agent-01 in #2115
  • [code-scanning-sweep] Fix rust/cleartext-logging at 2 locations in crates/orbit-cli/src/command/mcp/callers.rs by @orbit-agent-01 in #2112
  • Make doc-duty placeholder date selection deterministic by @orbit-agent-01 in #2114
  • Expose auto-task definition provenance when inspecting linked worktrees by @orbit-agent-01 in #2116
  • QA sign-off harness asserts stale succeeded run state, failing legacy-logs-compatibility on a healthy candidate by @orbit-agent-01 in #2117
  • macOS sandbox denies writes under $CARGO_HOME/registry, so any worker whose build needs an uncached crate fails cargo test with exit 101 (failed to open …/registry/cache/…/chunked_transfer-1.5.0.crate: Operation not permitted) by @orbit-agent-01 in #2118
  • step_failure_recovery never starts when the original error is large: unbounded error_message (2.5 MB primary_checkout_drift diagnostic) makes the codex prompt exceed 1,048,576 chars → input_too_large, exit 1 in 416 ms by @orbit-agent-01 in #2120
  • macOS sandbox denies PTY allocation (openpty returns -1), so any repository whose test suite opens a pseudo-terminal cannot pass its full validation inside a worker and lands in blocked by @orbit-agent-01 in #2121
  • feat(website): redesign the landing page around the CLI walkthrough by @danieljhkim in #2119
  • [code-review] CI investigation treats a failed job-log fallback as a completed recovery, skipping the checkout-evidence read and mislabelling its scope by @orbit-agent-01 in #2122
  • [qa-sweep] Add unit test coverage for orbit mcp callers check redaction by @orbit-agent-01 in #2123
  • [code-review] Start-transition writes through orbit.task.update skip every field validation update_task_locked owns by @orbit-agent-01 in #2124
  • [ci-failure-sweep] Fix red CI: macOS Platform / macOS Sandbox / Run orbit-exec sandbox tests (real sandbox-exec) by @orbit-agent-01 in #2125
  • [qa-sweep] orbit-core transitions.rs test hook (TRANSITION_READ_HOOK_STATUS) races across unrelated tests under cargo test by @orbit-agent-01 in #2126
  • Prepare v0.22.1 release by @orbit-agent-01 in #2127

Full Changelog: v0.22.0...v0.22.1

v0.22.0

Choose a tag to compare

@github-actions github-actions released this 13 Sep 00:09
df9873e

What's Changed

  • [qa-sweep] orbit mcp init/remove never name the checkout they wrote, so registry-resolved writes land silently elsewhere by @orbit-agent-01 in #1929
  • [qa-sweep] orbit run ship TASK-ID reports success when the named task is excluded, and no human-readable surface says why by @orbit-agent-01 in #1930
  • [qa-sweep] task export/import/reindex --workspace cannot name a task-registry workspace id, so the documented import recipe lands tasks the target host cannot read by @orbit-agent-01 in #1931
  • [code-review] the GitShim child-process fixture passes vacuously when its hand-written test-name literal goes stale by @orbit-agent-01 in #1932
  • [code-review] tool enable/disable now refuses every registry-inactive builtin, stranding an already-disabled one and breaking its CLI wrapper with no recovery by @orbit-agent-01 in #1933
  • [qa-sweep] doctor's missing-task-registry guard never fires, so --fix-orphan-task-stores still deletes live task bundles by @orbit-agent-01 in #1934
  • [code-review] orbit mcp init/remove let the current directory outrank an explicit --root, silently writing MCP config into the wrong checkout by @orbit-agent-01 in #1935
  • [code-review] doctor's orphan-task-store check treats a stale task-registry binding as a claim, so it never reports the leftovers it exists for by @orbit-agent-01 in #1936
  • Owner-wins cross-host task sync: import policy that overwrites only foreign-prefix bundles by @orbit-agent-01 in #1937
  • [code-review] the new mcp init/remove summary names the checkout even under --scope home, where nothing is written there by @orbit-agent-01 in #1939
  • [auto-task] Doc duties — validate the least-recently-validated docs by @orbit-agent-01 in #1940
  • [code-review] orbit mcp init/remove refuse a shared Orbit root outright, so a multi-checkout --root layout can no longer register MCP at all by @orbit-agent-01 in #1938
  • Delivered task worktrees (≈13 GB each with target/) linger up to 2 h after done+merged; reclaim them at delivery instead of relying on hourly GC by @orbit-agent-01 in #1941
  • orbit-search install test fixture accepts exactly one connection, so companion_install_streams_a_slow_one_mebibyte_download flakes under load by @orbit-agent-01 in #1942
  • [code-review] owner-wins sync wedges permanently if a mirror's bundle directory is missing: every later run fails and lands nothing by @orbit-agent-01 in #1943
  • [code-review] doctor deletes a populated task-store partition whenever the bound checkout is momentarily unreachable, destroying its task bundles by @orbit-agent-01 in #1944
  • Auto-task SkipIfOpen dedupe counts a 'someday' instance as open, silently blocking every later mint of that auto-task by @orbit-agent-01 in #1945
  • [code-review] the orphan-task-store repair still reports "empty" partitions after it started deleting populated ones by @orbit-agent-01 in #1946
  • Fix red CI on agent-main: worktree_gc_routing test still expects the pre-ORB-12140 'older_than_hours: 24' seeded default by @orbit-agent-01 in #1947
  • [code-review] a workspace registered without a checkout (every cross-host import mirror) lost its partition claim, so doctor warns about it forever by @orbit-agent-01 in #1948
  • [qa-sweep] orbit mcp init --claude writes config paths Claude Code does not read, so the Orbit MCP server is never registered by @orbit-agent-01 in #1949
  • [qa-sweep] after task-index loss in the external-root layout, the checkout's own tasks vanish silently and orbit task reindex refuses to rebuild them by @orbit-agent-01 in #1950
  • [qa-sweep] owner-wins import fails with a raw "task bundle already exists" error when the task index is lost, and the failed run still leaves the source workspace registered by @orbit-agent-01 in #1951
  • [qa-sweep] a checkout deleted without teardown is undiagnosable and unreclaimable: doctor calls its task partition claimed and workspace remove refuses every selector by @orbit-agent-01 in #1952
  • [friction-curation] Honor an explicit workspace selector in migrate --dry-run by @orbit-agent-01 in #1953
  • [code-review] epic_pipeline worktrees are never reclaimed: delivery cleanup and the (now 1 h) GC backstop cannot derive an epic worktree's path by @orbit-agent-01 in #1954
  • [code-review] dashboard still counts a someday auto-task instance as an open duplicate, contradicting the scheduler's skip_if_open rule by @orbit-agent-01 in #1955
  • Fix red CI on agent-main: init_report::requested_mcp_records_none_detected_when_no_providers_exist returns 'configured' on every push since 5d821d0 by @orbit-agent-01 in #1956
  • ci-failure-sweep files duplicate repairs: it ignores an existing repair task for the same failing runs unless it filed it, and files one task per failing job for a single failing test by @orbit-agent-01 in #1957
  • [code-review] owner-wins import overwrites a local-prefix task whose registry binding is missing by @orbit-agent-01 in #1958
  • [qa-sweep] Flaky under load: update::tests::stage::rollback_replaces_a_running_executable_atomically spawns a freshly copied executable without the ETXTBSY retry ORB-11340 added elsewhere by @orbit-agent-01 in #1959
  • [qa-sweep] orbit workspace remove still refuses a deleted checkout: its positional collides with the global --workspace arg, so the runtime binds to the workspace being removed by @orbit-agent-01 in #1960
  • [code-review] orbit mcp init/remove --claude --scope home rewrites all of ~/.claude.json with an unlocked, non-atomic write by @orbit-agent-01 in #1961
  • [qa-sweep] orbit doctor --fix-orphan-task-stores help still promises "partitions that still hold task bundles are never deleted" while the repair deletes them by @orbit-agent-01 in #1962
  • [qa-sweep] make test fails at HEAD: the ORB-12158 dashboard assertion looks for "Open duplicate No" but the harness DOM renders "Open duplicateNo" by @orbit-agent-01 in #1964
  • [qa-sweep] orbit task list reports a lost task index as invalid_input, rendering "invalid input:" inside the recovery sentence by @orbit-agent-01 in #1965
  • [qa-sweep] In the shared external-root layout a deleted checkout's task partition is claimed forever: workspace init writes no checkout binding, so doctor can never classify it stale by @orbit-agent-01 in #1966
  • [code-review] the repo's tracked .claude.json is dead after the MCP path revert, and orbit mcp init --claude now deletes it by @orbit-agent-01 in #1967
  • task.update --context accepts file: selectors that do not exist in the checkout, so a typo silently ships a task with dead context by @orbit-agent-01 in #1968
  • orbit task list silently truncates at --limit (default 50) with no notice or total, hiding older open tasks by @orbit-agent-01 in #1969
  • [code-review] ORB-12170 left two orbit_dir descriptions of the task-partition evidence rule stale, one of them inside the runbook it updated by @orbit-agent-01 in #1970
  • [code-review] ci-failure-sweep: a completed repair silently suppresses a later recurrence of the same named test for 30 days by @orbit-agent-01 in #1971
  • [code-review] orbit mcp init/remove --claude --scope home locks ~/..claude.json.lock, not Claude Code's ~/.claude.json.lock, so the ORB-12165 lock excludes nothing by @orbit-agent-01 in #1972
  • CI push runs check out the branch tip (github.ref_name) instead of github.sha, so queued runs test a different commit than the one they report on by @orbit-agent-01 in #1973
  • Fix red CI on agent-main: ORB-12168 context-selector validation runs inside core add_task/update_task and breaks 5 orbit-core tests that seed fixture tasks by @orbit-agent-01 in #1974
  • [code-review] orbit task list --json silently changed from a bare array to an object envelope, breaking the frozen per-command --json byte contract by @orbit-agent-01 in https://github.com/constella...
Read more

v0.21.0

Choose a tag to compare

@github-actions github-actions released this 11 Sep 06:12
62f4f14

What's Changed

  • ci: move code scanning to advanced setup and exclude test noise by @danieljhkim in #1734
  • [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1735
  • [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @danieljhkim in #1736
  • [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-agent/src/providers/antigravity/antigravity_cli.rs by @danieljhkim in #1737
  • [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1738
  • [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/run/reconcile.rs by @danieljhkim in #1739
  • [auto-task] Doc duties — validate the least-recently-validated docs by @danieljhkim in #1740
  • [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1741
  • [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-agent/src/providers/gemini_http/transport.rs by @danieljhkim in #1742
  • [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1743
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/docs/config.rs by @danieljhkim in #1744
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/routines/clock.rs by @danieljhkim in #1745
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-registry/src/workspace_registry/io.rs by @danieljhkim in #1746
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-registry/src/host_identity.rs by @danieljhkim in #1747
  • [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1748
  • [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-agent/src/providers/gemini_http/transport.rs by @danieljhkim in #1749
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-store/src/driver/file/workspace_binding.rs by @danieljhkim in #1750
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-store/src/driver/file/scoreboard/scoreboard_summary/mod.rs by @danieljhkim in #1751
  • [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1752
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/fs/io.rs by @danieljhkim in #1753
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/job/pipeline.rs by @danieljhkim in #1754
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-store/src/driver/file/scoreboard/scoreboard_summary/mod.rs by @danieljhkim in #1755
  • [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-agent/src/providers/gemini_http/transport.rs by @danieljhkim in #1756
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/fs/io.rs by @danieljhkim in #1757
  • [auto-task] Remediate current GitHub Actions failures by @danieljhkim in #1759
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/job/pipeline.rs by @danieljhkim in #1760
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/routines/clock.rs by @danieljhkim in #1762
  • [dependabot-sweep] Update astro in website/package-lock.json by @danieljhkim in #1763
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-store/src/driver/file/workspace_binding.rs by @danieljhkim in #1764
  • [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1765
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/job/pipeline.rs by @danieljhkim in #1766
  • [dependabot-sweep] Update js-yaml in website/package-lock.json by @danieljhkim in #1767
  • [ci-failure-sweep] Fix red CI: CI / Coverage (informational) / Collect workspace coverage by @danieljhkim in #1768
  • [code-review] Activity-scoped external tools inherit Landlock confinement and fail outright off Linux by @danieljhkim in #1769
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/fs/io.rs by @danieljhkim in #1770
  • [dependabot-sweep] Update svgo in website/package-lock.json by @danieljhkim in #1771
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/storage/sqlite.rs by @danieljhkim in #1772
  • [code-scanning-sweep] Fix rust/cleartext-logging in crates/orbit-core/src/bootstrap/activity.rs by @danieljhkim in #1773
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/docs/config.rs by @danieljhkim in #1774
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-registry/src/workspace_registry/io.rs by @danieljhkim in #1775
  • [ci-failure-sweep] Fix red CI: CI / Coverage (informational) / Collect workspace coverage by @danieljhkim in #1777
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/job/pipeline.rs by @danieljhkim in #1778
  • [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @danieljhkim in #1779
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/routines/clock.rs by @danieljhkim in #1780
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-store/src/driver/file/skill_store/mod.rs by @danieljhkim in #1783
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/routines/clock.rs by @danieljhkim in #1784
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/fs/io.rs by @danieljhkim in #1786
  • [BLOCKED] [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/storage/sqlite.rs by @danieljhkim in #1781
  • [BLOCKED] [code-scanning-sweep] Fix rust/path-injection in crates/orbit-common/src/fs/io.rs by @danieljhkim in #1782
  • chore(deps): bump github/codeql-action from 3 to 4 by @dependabot[bot] in #1789
  • chore(deps): bump actions/checkout from 4 to 7 by @dependabot[bot] in #1790
  • [BLOCKED] [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/job/pipeline.rs by @danieljhkim in #1785
  • [code-scanning-sweep] Fix rust/path-injection in crates/orbit-core/src/application/docs/walk.rs by @danieljhkim in #1788
  • [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-search/src/embedder.rs by @danieljhkim in #1791
  • [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/run/reconcile.rs by @danieljhkim in #1792
  • [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-store/src/driver/sqlite/job_run_store/back… by @danieljhkim in #1793
  • [code-scanning-sweep] Fix rust/command-line-injection in crates/orbit-core/src/application/docs/walk.rs by @danieljhkim in #1794
  • [code-scanning-sweep] Fix rust/command-line-injection in crates/orbit-core/src/runtime/tool_exec.rs by @danieljhkim in #1795
  • [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-search/src/companion.rs by @DanielJH...
Read more

v0.20.0

Choose a tag to compare

@github-actions github-actions released this 08 Sep 06:34
66a6179

What's Changed

  • Prevent configured sweep cadence from silently skipping enabled cron routines by @danieljhkim in #1485
  • Enable and verify HSTS for orbit-cli.com by @danieljhkim in #1486
  • Allow flexible audited task status changes, including reopening done tasks by @danieljhkim in #1487
  • Publish a maintained security.txt for orbit-cli.com by @danieljhkim in #1488
  • Repair conflict-recovery launch failure and preserve its diagnostic by @danieljhkim in #1489
  • Recover published task PRs when the landing base advances before completion by @danieljhkim in #1490
  • Allow explicitly authorized Mac operators to invoke agents on the owning Linux host by @danieljhkim in #1491
  • Include model-aware Orchestrated-By attribution in task commit trailers by @danieljhkim in #1492
  • Expose bounded recovery-attempt diagnostics through authoritative workflow run show by @danieljhkim in #1493
  • Refresh stale delivery checkpoints when resuming a preserved PR candidate by @danieljhkim in #1494
  • Keep task creator model separate from Orchestrated-By identity by @danieljhkim in #1495
  • Support an explicit cooperative SSH operator grant for remote agent invocation by @danieljhkim in #1496
  • Scope remote agent invocation independently of ordinary caller access by @danieljhkim in #1497
  • Complete recovered rebases without granting agents broad Git metadata writes by @danieljhkim in #1498
  • Implement independent review policy, direct repairs, and delivery coverage by @danieljhkim in #1499
  • Use concrete failure diagnostics for stable CI sweep signatures by @danieljhkim in #1500
  • Withhold release-publication work from automatic CI repair admission by @danieljhkim in #1501
  • Fix website Pages deployment failing on missing Wrangler project name by @danieljhkim in #1502
  • [code-review] Reviewer scope check rejects canonical symbol selectors by @danieljhkim in #1503
  • [code-review] Before-PR policy rejects the local child pipelines needed to assemble an epic by @danieljhkim in #1504
  • Bind CI failure signatures and excerpts to the actual failing job by @danieljhkim in #1505
  • [code-review] Covered-only delivery prefixes eventually stall observation permanently by @danieljhkim in #1506
  • [code-review] Managed PR merge does not atomically pin the reviewed head by @danieljhkim in #1507
  • [auto-task] Doc duties — validate the least-recently-validated docs by @danieljhkim in #1508
  • Migrate existing task registries before delivery automation reserves task action keys by @danieljhkim in #1509
  • Recognize manually authored covering repairs in CI sweep deduplication by @danieljhkim in #1510
  • [code-review] Operation explain omits the active grant policy snapshot by @danieljhkim in #1511
  • [code-review] Epic review gate looks up the stable worktree ID instead of its admitted run by @danieljhkim in #1512
  • [security-review] Pin and verify the MCP publisher used by npm smoke CI by @danieljhkim in #1513
  • Distinguish required candidate validation from expected failures and scope exclusions in review settlement by @danieljhkim in #1514
  • fix: derive delivery automation ownership from the workspace registry [ORB-11530] by @danieljhkim in #1515
  • Preserve the authoritative integration branch throughout scheduled CI sweep admission by @danieljhkim in #1516
  • Restore additive task-registry compatibility and automatically recover registries marked v6 by @danieljhkim in #1517
  • [code-review] Review wall-time budget loses interrupted work and does not bound the current attempt by @danieljhkim in #1518
  • Support validated crew effort configuration and include effort in effective config output by @danieljhkim in #1519
  • [ci-failure-sweep] Fix red CI: macOS Platform / macOS Sandbox / Run orbit-core sandbox tests by @danieljhkim in #1520
  • [code-review] Review-gate failure handoff cannot push a rewritten candidate by @danieljhkim in #1522
  • [qa-sweep] Fresh orbit init still tells operators before-pr is not yet supported by @danieljhkim in #1523
  • Bind superseded review validation to the check that actually replaces it by @danieljhkim in #1524
  • [auto-task] Doc duties — validate the least-recently-validated docs by @danieljhkim in #1525
  • [BLOCKED] Prove live filesystem enforcement for ORB-11514 without breaking recovery tools by @danieljhkim in #1521
  • Collect complete diagnostic units from long CI logs without permanent truncation deferral by @danieljhkim in #1526
  • [friction-curation] Make agent_implement cleanup compatible with Codex denied rm commands by @danieljhkim in #1527
  • [friction-curation] Say when a task-pilot apply applied zero partitions in the stale-skip diagnostic by @danieljhkim in #1528
  • [code-review] Host-registry design docs still assign identity DTOs to orbit-common after path retarget by @danieljhkim in #1529
  • Preserve successful rebase recovery provenance through settlement and resume by @danieljhkim in #1530
  • [friction-curation] Preserve run attribution on dashboard process error rows by @danieljhkim in #1531
  • Fix global task jump reporting an existing task as not found by @danieljhkim in #1532
  • [qa-sweep] auto-task list and dashboard show Debug coverage names that add rejects by @danieljhkim in #1533
  • [BLOCKED] Keep explicit review check identities distinct from fallback command identities by @danieljhkim in #1534
  • [ci-failure-sweep] Fix red CI: macOS Platform / macOS Sandbox / Run orbit-core sandbox tests by @danieljhkim in #1535
  • [friction-curation] Make empty multi-term friction and task search distinguishable from a clean group by @danieljhkim in #1536
  • [friction-curation] Stop orbit-web unidentified-caller routine toggle from flaking under parallel tests by @danieljhkim in #1537
  • [friction-curation] Document git archive and git-show workarounds for a read-only managed .git by @danieljhkim in #1538
  • [qa-sweep] workspace init --root still tells operators to commit checkout .orbit files that were not written by @danieljhkim in #1539
  • [friction-curation] Derive frozen MCP surface length assertions from one canonical list by @danieljhkim in #1540
  • [auto-task] Doc duties — validate the least-recently-validated docs by @danieljhkim in #1541
  • Reconcile failed-run filtering with dashboard failure counts by @danieljhkim in #1542
  • Make website First Task onboarding a complete executable sequence by @danieljhkim in #1544
  • Persist an explicit sandbox-off operator choice across executor seeding by @danieljhkim in #1545
  • Select crews randomly from configurable task-complexity pools in auto dispatch by @danieljhkim in #1546
  • Fix CI diagnostic selection and cross-job compiler deduplication [ORB-11582] by @danieljhkim in #1543
  • Make Operations mint and toggle controls usable in authorized dashboard sessions by @danieljhkim in #1547
  • Add discoverable public documentation for the Orbit dashboard by @danieljhkim in #1549
  • [ci-failure-sweep] Fix red CI...
Read more

v0.19.2

Choose a tag to compare

@github-actions github-actions released this 07 Sep 04:35
b7099a8

What's Changed

  • Implement operation-mode policy, scoped automation, and bounded recovery by @danieljhkim in #1473
  • [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/tests/exec.rs by @danieljhkim in #1474
  • [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/tests/task_pilot_… by @danieljhkim in #1475
  • [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/tests/task_pilot_… by @danieljhkim in #1476
  • [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/tests/exec.rs by @danieljhkim in #1477
  • [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/tests/task_pilot_… by @danieljhkim in #1479
  • [code-scanning-sweep] Fix rust/hard-coded-cryptographic-value in crates/orbit-core/src/application/job/tests/workspace_a… by @danieljhkim in #1480
  • Revise CONTRIBUTING.md: Orbit does not accept external pull requests by @danieljhkim in #1484
  • Bump release metadata to 0.19.2 without tagging or publishing by @danieljhkim in #1483

Full Changelog: v0.19.1...v0.19.2

v0.19.1

Choose a tag to compare

@github-actions github-actions released this 07 Sep 02:10
89768fa

What's Changed

  • chore: back-merge main into agent-main after v0.14.0 by @danieljhkim in #1124
  • chore: agent-main release to main by @danieljhkim in #1136
  • chore: promote agent-main to main by @danieljhkim in #1157
  • chore(release): merge agent-main to main by @danieljhkim in #1226
  • chore(release): v0.17.1 release agent-main to main by @danieljhkim in #1250
  • chore(release): v0.18.0 merge agent-main to main by @danieljhkim in #1294
  • release: v0.19.0 by @danieljhkim in #1450
  • Add manual MCP Registry publication using dedicated Actions PAT by @danieljhkim in #1451
  • Fix MCP Registry owner preflight to accept GitHub admin role by @danieljhkim in #1452
  • [qa-sweep] Explicit --root cannot override managed ORBIT_WORKSPACE for scratch task commands by @danieljhkim in #1455
  • Report PR failure handoffs without inventing conflict recovery attempts by @danieljhkim in #1456
  • Preserve declared agent failure codes and explanations in pipeline diagnostics by @danieljhkim in #1457
  • [code-review] Execution-failed automation can starve behind stale incident members by @danieljhkim in #1458
  • Route routine Dependabot Actions updates to agent-main by @danieljhkim in #1459
  • Preserve valid task ownership through resumed PR failure handoff by @danieljhkim in #1460
  • Fix public connect rustdoc linking to private reject_root_override by @danieljhkim in #1461
  • Update GitHub Actions dependencies with current runner compatibility by @danieljhkim in #1462
  • [BLOCKED] Repair macOS public CA explicit-deny regression test after ORB-11406 by @danieljhkim in #1454
  • Expose CI sweep pilot failures and release-only repairs without false success or repeat implementation by @danieljhkim in #1464
  • Parse Grok completion from final response text rather than unrelated wrapper fields by @danieljhkim in #1465
  • Recover bounded CI evidence from job logs when gh run logs return empty success by @danieljhkim in #1466
  • Lock Cursor plugin distribution to releases and require a visible marketplace follow-up by @danieljhkim in #1467
  • Reconcile failure-handoff commits with resumed implementation checkpoints by @danieljhkim in #1470
  • Replace yanked der 0.8.0 in the Cargo lockfile by @danieljhkim in #1471

Full Changelog: v0.19.0...v0.19.1

v0.19.0

Choose a tag to compare

@github-actions github-actions released this 06 Sep 19:52
56cd39d

What's Changed

  • [code-review] Make log-follow tests synchronize readiness and terminate their workers by @danieljhkim in #1295
  • [code-review] Replace dashboard behavioral source-string assertions with executable tests by @danieljhkim in #1296
  • [code-review] Consolidate duplicated CLI and web job-run JSON projections by @danieljhkim in #1297
  • [code-review] Bound initial log-tail buffering by the requested matching window by @danieljhkim in #1298
  • [code-review] Apply the scoreboard time window to retries and duration metrics by @danieljhkim in #1299
  • [auto-task] Doc duties — validate the least-recently-validated docs by @danieljhkim in #1300
  • Onboard gpt-6-astra and gemini-3.8-flash in Orbit by @danieljhkim in #1301
  • Prevent Dependabot and CI sweeps from filing duplicate tasks by @danieljhkim in #1302
  • [code-review] Distinguish unavailable scoreboard side metrics from real zero counts by @danieljhkim in #1303
  • Add orbit host show for local host identity by @danieljhkim in #1304
  • Add opt-in completion policy to orbit run ship and run auto by @danieljhkim in #1305
  • [code-review] orbit task flow counts a done-then-archived task as two outflow events by @danieljhkim in #1306
  • Prevent task_trimmed_surface tests from writing fixtures to the live Orbit workspace by @danieljhkim in #1307
  • [code-review] Epic PR-mode --complete fails on an empty-delivery epic because pr_complete demands the no-diff-expected tag by @danieljhkim in #1310
  • [ci-failure-sweep] Fix red CI: CI / Check / Clippy / Test / Run CI guardrails by @danieljhkim in #1309
  • [code-review] Dashboard scoreboard renders unavailable failure-incident metrics as a measured zero by @danieljhkim in #1308
  • Bound task-list bundle hydration and eliminate repeated dashboard reads by @danieljhkim in #1311
  • Remove retired ADR authority from task-pilot instructions while preserving compatibility by @danieljhkim in #1312
  • Explain why auto-drain leaves backlog tasks waiting by @danieljhkim in #1313
  • Correct non-runnable Orbit skill examples for pilot inputs and activity inspection by @danieljhkim in #1314
  • Extract CI checkout identity before truncating human log excerpts by @danieljhkim in #1315
  • Make targeted run cancellation race safely with worker terminalization by @danieljhkim in #1316
  • Show actual activity model selection alongside the requested workflow crew by @danieljhkim in #1317
  • Pilot and revalidate CI-sweep findings before exposing them to auto-drain by @danieljhkim in #1318
  • Show workspace-attributed runs in the dashboard All workspaces view by @danieljhkim in #1319
  • Refresh CLI tool-list goldens for streaming GitHub log evidence by @danieljhkim in #1320
  • Respect repository merge methods in --complete and preserve completion failure semantics by @danieljhkim in #1321
  • Synchronize escaped-pipe-holder test before the parent exits by @danieljhkim in #1322
  • Add a website guide for preparing and operating continuous delivery by @danieljhkim in #1323
  • Keep overlapping pilot preparation from discarding unrelated valid partitions by @danieljhkim in #1324
  • Isolate output golden tests from inherited live workspace authority by @danieljhkim in #1325
  • Continue --complete polling when repository auto-merge is disabled by @danieljhkim in #1326
  • [code-review] CI-failure sweep files nothing when checkout-evidence hits any bound, including display caps by @danieljhkim in #1327
  • Make dashboard shutdown finish promptly during a live service restart by @danieljhkim in #1328
  • Include required complexity in auto-task finding examples by @danieljhkim in #1329
  • Prepare pilot context against a consistent current landing-branch snapshot by @danieljhkim in #1330
  • Update completion pipeline fixture for required auto-merge capability by @danieljhkim in #1332
  • Start a bounded auto-delivery window from the Orbit dashboard by @danieljhkim in #1333
  • Select recent dashboard runs before applying per-workspace limits by @danieljhkim in #1334
  • Allow an auto-drain to exclude unavailable crews for its run window by @danieljhkim in #1335
  • Start the dashboard drain timeout only after shutdown is requested by @danieljhkim in #1336
  • Bound task-pilot discovery evidence as workspace history grows by @danieljhkim in #1337
  • Run failed-task triage with an enforceable Linux filesystem policy by @danieljhkim in #1338
  • Ship orbit-orchestrate skill for continuous task preparation, delivery, and recovery by @danieljhkim in #1339
  • Restore dashboard compilation after auto-drain crew allowlist API change by @danieljhkim in #1340
  • Make task-pilot advisory field types explicit in its response schema by @danieljhkim in #1341
  • Regenerate the skill-list golden after orbit-orchestrate registration by @danieljhkim in #1342
  • Reduce repeated Rust dependency compilation across Orbit worker worktrees by @danieljhkim in #1343
  • [BLOCKED] Adjust an active auto-drain worker limit without replacing its coordinator by @danieljhkim in #1344
  • docs: clarify Orbit orchestration completion and recovery guidance by @danieljhkim in #1345
  • Make crew selection on run job discoverable and correct invalid-flag guidance by @danieljhkim in #1346
  • [code-review] sync-plugin-skills.sh --check does not detect orphaned plugin/skills directories after a skill is removed or renamed by @danieljhkim in #1347
  • [code-review] task_auto_pipeline's list_backlog step does not forward allowed_crews, so crew-excluded tasks pass discovery and only fail at the final gate by @danieljhkim in #1348
  • [code-review] task_pilot's align_clean_primary fast-forwards the shared primary checkout without serialization, racing under the job's own concurrency limit by @danieljhkim in #1349
  • [auto-task] Doc duties — validate the least-recently-validated docs by @danieljhkim in #1350
  • Pilot from an immutable source snapshot while preserving a dirty primary checkout by @danieljhkim in #1351
  • [ci-failure-sweep] Fix red CI: CI / Coverage (informational) / Collect workspace coverage by @danieljhkim in #1352
  • [ci-failure-sweep] Fix red CI: macOS Platform / macOS Sandbox / Run orbit-core sandbox tests by @danieljhkim in #1353
  • [code-review] Compiler-cache guardrail test uses shared /tmp stable mounts and flakes under concurrent runs by @danieljhkim in #1354
  • [code-review] Readiness ignores string concurrency submitted through run job by @danieljhkim in #1355
  • Ship Linux sandbox prerequisites in the installed Orbit setup skill by @danieljhkim in #1356
  • Refresh CLI tool-list goldens for the live worker-control tool surface by @danieljhkim in #1357
  • Add validated per-crew effort levels to config.toml and executor dispatch by @danieljhkim in #1358
  • Detect actionable CI failures while newer workflows or sibling checks are still running by @danieljhkim in #1359
  • Correlate parallel provider completion events by invocation identity by @dan...
Read more