Repository navigation
Releases: domehahn/skil
Releases · domehahn/skil
Release list
v0.6.0
What's Changed
Full Changelog: v0.5.0...v0.6.0
v0.5.0
What's Changed
Full Changelog: v0.4.0...v0.5.0
v0.4.0
What's Changed
- feat(ci): add git pre-push hook, update workflow pipelines, and optimize scanners by @domehahn in #68
- feat: Derived Security Views (Epic 1) by @domehahn in #75
- feat: --airgap mode for air-gapped environments by @domehahn in #76
- fix: semantic-provider fail-closed invariant (truncation/malformed -> UNKNOWN, not scan abort) by @domehahn in #77
- feat: extend Derived Security Views with 5 Unicode reconstruction classes + shell continuation joining by @domehahn in #78
- feat: deep .pyc analysis via a bounded marshal decoder (SKIL-PYC-DANGEROUS-SYMBOL) by @domehahn in #79
- feat: pinned + rolling benchmark modes with cryptographically-bound measurement evidence by @domehahn in #80
- feat: Evidence Graph + semantic exfiltration correlation (OBSERVED/INFERRED/VERIFIED) by @domehahn in #81
- feat: implement skill duplicate intelligence & registry admission control by @domehahn in #82
Full Changelog: v0.3.0...v0.4.0
v0.3.0
What's Changed
- fix: replace literal spaces with \s+ to prevent wide-whitespace mutation by @debanjan-bhuinya in #38
- fix: close the remaining wide-whitespace mutation bypasses in pattern.go by @domehahn in #44
- fix: SKIL-BOUNDARY-MCP-CONFIG false-positives on a skill's own manifest by @domehahn in #45
- feat(analyzer): charset-smuggling defense (P0) by @domehahn in #46
- feat: analyzability model, distinct from inspection completeness (P1) by @domehahn in #47
- feat: .pyc bytecode integrity — PEP 552 header + source correlation (P1) by @domehahn in #48
- feat: cross-skill capability composition — toxic flows (P1) by @domehahn in #49
- feat: Dynamic MCP Assurance (skil mcp assure) by @domehahn in #50
- feat: Deterministic Threat-Chain Correlation by @domehahn in #51
- feat: official GitHub Action and pre-commit integration by @domehahn in #52
- feat: local component discovery (skil discover) by @domehahn in #53
- feat: Semantic Multi-Run Consensus (--semantic-runs) by @domehahn in #54
- feat: Ruby AST analysis (builtin.ruby-ast) by @domehahn in #55
- feat: Nested Artifact Virtualization by @domehahn in #56
- feat: global AnalysisBudget with fail-closed partial coverage by @domehahn in #57
- feat: Transitive External Reference Scanning by @domehahn in #58
- feat: MCP Surface Lock v2 (SKIL-MCP-012) by @domehahn in #59
- feat: Multi-Skill Runtime Assurance (skil compose assure) by @domehahn in #60
- feat: extend skil discover to five more agent tools by @domehahn in #61
New Contributors
- @debanjan-bhuinya made their first contribution in #38
Full Changelog: v0.2.0...v0.3.0
v0.2.0
What's Changed
- Close scanner, linter, and runtime assurance gaps by @domehahn in #5
- Bump cryptography from 48.0.1 to 50.0.0 in /compat/external-scanner/fixtures/abandoned-dependency/negative by @dependabot[bot] in #16
- Bump actions/attest from 4.2.0 to 4.2.2 by @dependabot[bot] in #17
- Bump github.com/santhosh-tekuri/jsonschema/v6 from 6.0.2 to 6.0.3 by @dependabot[bot] in #19
- Bump github.com/aws/aws-sdk-go-v2/config from 1.32.32 to 1.32.37 by @dependabot[bot] in #22
- Bump github.com/aws/aws-sdk-go-v2/service/bedrockruntime from 1.56.1 to 1.57.3 by @dependabot[bot] in #23
- test: expand mutation robustness matrix by @reacher-z in #32
- feat(signing): canonicalize signed payloads for independent verification by @domehahn in #39
- chore(release): prepare 0.2.0 by @domehahn in #40
- fix(release): allow unprivileged user namespaces for the release assurance gate by @domehahn in #41
- fix: three real Windows-only bugs surfaced by the v0.2.0 release CI run by @domehahn in #42
- fix(release): checkout the repo in the publish job by @domehahn in #43
New Contributors
- @domehahn made their first contribution in #5
- @dependabot[bot] made their first contribution in #16
- @reacher-z made their first contribution in #32
Full Changelog: https://github.com/domehahn/skil/commits/v0.2.0