team 0.1.1
A safety release: 0.1.0 could type into a Codex permission dialog, and could read a quota figure a
seat wrote itself. Upgrade.
Security
- In 0.1.0,
teamcould answer a Codex permission dialog. With the status line pinned below
the dialog, the screen read as unsent text, so rules delivery and the watch's nudge typed their
text and Enter into it, accepting its first choice. The dialog is now read as the dialog: the
safety floor's markers match without regard to case, and a rule's footer may sit above a
status-lastcomposer's pinned line. The dialog is reported and never answered, and rules
delivery and the watch type nothing into it. - In 0.1.0, a seat could set its own quota figure by printing or typing a line shaped like one,
which could keep a launch from being refused. Quota figures are now read only from the status
line's own row of a composer screen: a line printed into the transcript or typed into the input
box is not read as one, a CLI whose composer shows no status line reads no figures at all, and a
dialog, a question, a trust or an unknown screen reads none. A pane's owner can still draw a whole
fake composer; a freshcheckreading stays first, and a wrong figure can only refuse a launch or
produce a report.
Added
- A spend account's
floorrefuses a launch: the watch keeps the money each spend check reads in the
state, andupandaddrefuse a seat whose account is at or below its floor. A reading that is
missing, stale or in another currency than the floor's reads unknown, is said, and never refuses.
Changed
bun run buildemptiesdist/first, so a file left by an older build can no longer end up in a
packed or globally installed tarball.