v1.0.1
MCP Dev Runtime v1.0.1
Patch release focused on safer installation lifecycle, simpler configuration, and fail-closed tool exposure while preserving the existing six-tool contract.
Downloads / 下载
Choose the archive matching the computer where commands will run:
| Package | Native verification baseline |
|---|---|
mcp-dev-runtime-1.0.1-darwin-arm64.tar.gz |
Apple Silicon, macOS 14 |
mcp-dev-runtime-1.0.1-darwin-x64.tar.gz |
Intel Mac, macOS 15 |
mcp-dev-runtime-1.0.1-linux-x64-gnu.tar.gz |
Ubuntu 22.04 x64, glibc + GCC 12 libstdc++ |
mcp-dev-runtime-1.0.1-linux-arm64-gnu.tar.gz |
Ubuntu 22.04 ARM64, glibc + GCC 12 libstdc++ |
Each archive contains Node.js 24.21.0, the compiled application, production native dependencies, and tunnel-client-runtime from commit 70bb5a7e1305596f0216d7b18d0b7765d58576d5. SHA256SUMS covers the final archives, VERIFICATION.json records per-platform package checks, and GitHub build provenance is generated for each archive.
Publisher code signing and Apple notarization are deliberately skipped in v1.0.1. The release workflow keeps the signing boundary fail-closed for future integration; the installer does not bypass Gatekeeper or other OS security controls.
What's new
- Add a complete interactive
./uninstall.sh. It requires an explicity, safely stops the owned managed instance, removes MDR-owned program versions, commands, configuration/credentials, state/history, logs and cache, and never deletes a source Git checkout itself. - New installations use one non-secret
config.jsonplus privateruntime.env. Existing v1.0.0-stylelauncher.config.json + config.jsoninstallations remain supported aslegacy-splitand are not migrated automatically. - Add fail-closed
tools.allow. The same six stable MCP tools remain enabled by default; disabled tools are absent from MCP discovery and rejected again by Runtime before side effects. Unknown, duplicate and wildcard tool names are rejected. - Add
tunnel.enabled. When false, managed startup runs only the local MCP service without Tunnel credentials, Tunnel binary resolution or a Tunnel health listener. - Add
mdr config [--json]andmdr tools [--json]for read-only effective configuration/tool-policy inspection without exposingruntime.envcontents. - Preserve the existing tool contract at 3.1 and keep all six established tool schemas unchanged.
Compatibility
v1.0.1 is designed as a compatible patch upgrade from v1.0.0. Existing split configuration is honored without automatic rewriting. New unified configuration is used only for new installs or when explicitly selected. The pinned upstream Tunnel commit and tool contract are unchanged.
Stop the selected managed instance and review active tasks before switching versions. The versioned installer preserves existing configuration and previous installed versions so rollback remains available.
Installation
Download the matching archive and SHA256SUMS, verify the full hash, extract the archive, then run:
./install.shFill your own Tunnel ID/API key in the generated private runtime.env, then use mdr up --background, mdr doctor and mdr smoke. For local-only operation, set tunnel.enabled to false in the unified config.
English installation guide · 中文安装指南
Validation summary
Release preparation passed the full source regression suite, CLI verification, static release checks, local benchmark, secret scan, and an Apple Silicon package acceptance run. The native release workflow independently rebuilds and verifies all four platform archives before the draft can be published. Package verification includes real execution of all six MCP tools, HTTP/stdio, PTY, images, patching, history, upgrade/rollback and complete uninstall behavior.
Windows, Alpine/musl, publisher signing/notarization, automatic OS boot services and multi-user isolation remain outside this release. CI uses mock/isolated Tunnel lifecycle checks and does not claim a real ChatGPT/WAN round trip on every platform.
中文摘要
v1.0.1 重点完善安装与配置体验:新增完整 uninstall.sh;新安装统一为一份非敏感 config.json 加私有 runtime.env;加入 fail-closed 的 tools.allow,默认仍只暴露现有 6 个稳定工具;支持 tunnel.enabled=false 的纯本地 MCP 模式;新增 mdr config / mdr tools 查看实际配置与工具策略。v1.0.0 的旧 split 配置继续兼容,不会自动迁移。
本版工具契约仍为 3.1,固定 Tunnel commit 不变。发布者签名和 Apple 公证仍按计划暂时跳过。正式发布附件由四个平台原生 Runner 分别构建和验收后汇总。