Skip to content

v0.5.2

Choose a tag to compare

@tomkis tomkis released this 20 Jan 13:01
· 439 commits to main since this release

馃殌 Agent Stack version 0.5.2 has been released

This release brings a major TypeScript SDK restructuring, a new Canvas agent, comprehensive UI redesign, and significant improvements to authentication and CLI experience.

Major Changes

Breaking: TypeScript SDK Restructuring

The agentstack-sdk-ts has been completely refactored with a new modular architecture. The API client is now organized into dedicated modules (extensions, api, core) with proper Zod schemas and types for every extension and API method. A new buildApiClient core function with unwrapResult utility provides standardized response handling. Error handling is now structured with ApiErrorException and specific error types (Http, Network, Parse, Validation). All consumers of the TS SDK need to update imports and usage patterns.

New Canvas Agent

A new agent for multi-turn artifact editing is now available. Users can select and modify specific sections of text content, enabling precise iterative refinement of generated artifacts.

GUI Shell Redesign

The UI has been completely redesigned with a new navigation structure. New dedicated pages for agent details (showing description, docs, authors, contributors, tools) and agent-specific settings are now available.

SDK: User Approval Extension

New ApprovalExtensionServer and ApprovalExtensionClient enable explicit human-in-the-loop workflows. Agents can request user approval for critical actions using structured ApprovalRequest/ApprovalResponse models. The older ToolCallRequest and ToolCallExtensionServer are now deprecated.

Agent Authorization via Context Tokens

A significant security improvement to how agents authenticate and communicate:

  • Single token authentication: A2A clients can now use the platform context token directly in the Authorization header, eliminating the previous two-token approach (user OIDC token + context token in extension fulfillment)
  • Token exchange for agent-to-agent calls: When the A2A proxy forwards requests to agents, it performs token exchange - creating a new token with the same claims and expiration but with a specific aud (audience) claim targeting that
    agent's URL
  • Audience validation: Agents using PlatformAuthBackend validate that incoming tokens have the correct audience. This prevents tokens issued for one agent from being used to call other agents directly
  • Security fix: Closes a vulnerability where a malicious agent could bypass the proxy and directly call other agents, potentially accessing other users' data via task/list or task/get A2A methods
  • RSA signing: JWT signing upgraded from symmetric HS256 to asymmetric RS256. A new /.well-known/jwks endpoint exposes the public key for signature verification
  • Granular permissions: The a2a_proxy permission can now be scoped to specific provider UUIDs instead of just *

For SDK users: Add auth_backend=PlatformAuthBackend() when calling Server.serve() to enable platform authentication on managed agents. For Helm deployments: Configure jwt_private_key and jwt_public_key in auth settings
(auto-generated if not provided).

CLI Improvements

  • The agentstack remove command now features interactive multi-selection for agent deletion with a new --all flag for bulk removal.
  • Better error messages for 403 Forbidden responses guide users to contact administrators.
  • WSL2 mirrored networking mode is dropped in favor of NAT mode with dynamic host IP resolution and updated documentation for Ollama/local agent configuration.

API: Delete Messages Endpoint

New endpoint for deleting messages from a selected ID onward, enabling conversation history management.

What's changed