Skip to content

v1.15.3

Latest

Choose a tag to compare

@rockyshi1993 rockyshi1993 released this 21 Jul 15:16

v1.15.3 — 治理诊断、纪律探针、Skill 侧车与 Dual-Track 门禁

发布日期: 2026-07-21
类型: PATCH
基线: v1.15.2 (4754f58);本版本包含其后 main 上已合并并通过本地门禁的增量(至 Dual-Track Closure M1/M2)

摘要

v1.15.3 归档 v1.15.2 之后的实现增量:Always-On / GovernanceStatus 只读诊断、MeasuredVerification 与专家质量探针收口、validation DAG 嵌套图与锁波次、ContextReadBinding residual、优化证据族、纪律执行探针、可见交付与 Grok 完整工作流强制面、入口完整性、ProjectKnowledge residual、Claude MCP 运行时依赖部署、website CVE 卫生、Skill sidecar(S1)与 Dual-Track Closure M1/M2 过程门禁。

不改变默认 always-on 注入行为(ao3Enabled=false);不包含 Intent-Gated Hosted Spec MCP 产品能力(仍属后续需求)。

变更

治理与诊断

  • GovernanceStatusSummaryV1 接入 status / doctor(含 --json
  • SimpleGovernanceFastPathDecisionV1:可见输出 compact 条件 fail-closed
  • AlwaysOnGovernanceSummaryV1 / surface·layer·host 矩阵与 Shadow 40 样本;AO-3 默认轻注入仍关闭
  • npm run test:always-on-governance 与 validation DAG 节点

验证与纪律

  • MeasuredVerificationStandard 写入 compliance SC14、analyze-default、report、expert-output-quality、test-router;V84 raw-text 锚点
  • validation DAG:nested delegatedClosurebuildNestedCommandGraphplanLockAwareSchedule、receipt schedule digests
  • ContextReadBindingGate residual(load-profile / test-router / V99)
  • optimization-backlog-evidence(PF-168/169/170)
  • discipline-execution-probe(unauthorized-push / preference-menu / CI stop-without-self-fix 等)
  • ExternalReviewClaimVerificationGate(PF-164)
  • 入口完整性:analyzeEntryCheckCompleteness(PF-087)

宿主与交付

  • GrokTurnChecklist + Intent→Skill bundle + doctor repairSteps(PF-165)
  • visible-reply:裸路径清单 / 无 payload semantic-artifact 提示(PF-163)
  • memory_cp_confirm 禁止污染普通会话索引表(PF-162)
  • Claude MCP 部署补齐 scripts/lib 依赖 allowlist(PF-173)

包与卫生

  • cli-console-utils.js 抽出,index 行预算;package.json#files 纳入
  • portfolio 刷新;V6/pack-clean 忽略注释内伪 require
  • website brace-expansion@5.0.7 override(CVE-2026-13149

过程与 Skill 工程

  • Skill build-time sidecar contract(S1)
  • Dual-Track Closure M1/M2 process gates

文档与分发

  • 包版本 1.15.3package.json / plugin.json / RULES.md / instructions frontmatter / README 与站点 package 口径同步
  • GitHub Packages 仍为唯一发布通道;安装需 read:packages

验证(发布前应全部 exit 0)

  • node scripts/validate-versions.js
  • node scripts/validate.js
  • npm test(full route)
  • npm run test:audit
  • npm run test:package-release
  • npm run release:dry-run:all(或等价 dry-run)
  • npm pack --dry-run
  • isolated pack install smoke(条件)

发布后验收(R7)

  • git tag v1.15.3 指向发布 commit
  • GitHub Packages @vextjs/devcodex@1.15.3 可安装
  • 安装后 npx @vextjs/devcodex --version / status 与包版本一致