v1.0.8
CodeLeveler v1.0.8
English
This patch release improves long-running task convergence, background-task
control, and command safety.
Installed stable builds can update automatically, or use leveler update
or /update.
Changed
- Pasted file references take less space in the TUI composer.
- The agent runtime no longer imposes a host-owned verification gate on task completion.
Fixed
- Running background tasks now have visible Stop buttons in the TUI list and
detail view. Stopping one task does not cancel the whole session. Closing a
TUI attached to a daemon still leaves its background tasks running. - CLI approval prompts show the operation and reason carried in the request
description, with terminal control characters sanitized. - The shell preflight treats comments as ending at the newline. Valid multiline
scripts are no longer rejected because of commands on later lines, and
later background commands and sensitive paths remain checked. - Goal-mode runs receive one runtime-owned delivery reminder after an initial
read-only round, preventing repeated self-audits from starving requested
workspace edits. - Redirects to
/dev/null,/dev/stdout, and/dev/stderrno longer request
unnecessary write elevation. Other absolute device paths remain protected. - Repository metadata writes can be persistently approved without granting
unrestricted filesystem access, so local Git commits work in assisted mode
while writes outside the workspace remain confined. - Background-task output identifies each retained stdout and stderr chunk,
preserving the source of interleaved logs.
Known limits
- Prebuilt binaries are not Apple- or Microsoft-signed. macOS or Windows may
block the first run until you allow it - Windows cannot deny network access per command. A command that requires that
isolation is refused rather than run with the network open - Windows has no local daemon socket. Sessions and
resumestill work - A confined Windows
!commandprints its output when it finishes, not while
it runs
Install and usage: README.
Updates: README § Updates.
How the system is layered: Architecture.
中文
这一补丁版本改进长任务收敛、后台任务控制和命令检查。已安装的稳定版可以
自动更新,也可以执行 leveler update 或 /update。
变更
- TUI 中粘贴的文件引用占用更少空间。
- Agent 运行时不再由宿主维护任务完成时的验证闸门。
修复
- TUI 后台任务列表和详情页为运行中的任务显示停止按钮,可单独停止任务,
不会取消整个会话。连接 daemon 时,关闭 TUI 仍不会停止后台任务。 - CLI 审批提示展示请求中的操作与原因,并清理终端控制字符。
- Shell 预检将注释范围限定在当前行:正常的多行脚本不再因后续命令被误拒,
后续行的后台启动和敏感路径也会继续检查。 - Goal 模式首轮只读后由运行时注入一次交付提醒,避免反复自检导致用户要求的
工作区修改长期得不到执行。 - 重定向到
/dev/null、/dev/stdout和/dev/stderr不再请求不必要的写权限;
其他绝对设备路径仍受保护。 - 仓库元数据写入可以单独持久授权,无需开放整个文件系统;assisted 模式可
完成本地 Git 提交,同时仍禁止写出工作区。 - 后台任务保留的 stdout、stderr 日志块会标明来源,交错输出不再丢失流信息。
已知限制
- 预编译包没有苹果或微软的官方签名。macOS 或 Windows 第一次运行时可能
会拦截,需要你允许一次 - Windows 还不能按命令断开网络。需要断网隔离的命令会被拒绝,而不会在
网络仍开放时继续跑 - Windows 没有本地 daemon 套接字。会话和
resume仍然可用 - Windows 上受隔离的
!command结束后才打印输出,不会边跑边刷
安装与使用见 README。
更新见 README · 更新。
系统怎么分层见 架构说明。