clio-relay 1.4.20
clio-relay 1.4.20 fixes the released-wheel bootstrap bridge used to upgrade legacy Linux endpoint installations.
The pinned uv installer can emit uv_build.json for some valid Linux installation paths. Relay now recognizes the exact bounded uv 0.11.28 metadata set while still requiring the launcher, installer ownership, request marker, and exact wheel source record. Every generated RECORD member is hash- and size-verified; unknown names, malformed metadata, tampered files, and wheel-byte changes continue to fail closed before planning, promotion, service mutation, or scheduler activity.
This patch was reproduced from the 1.4.19 Ares failure and covered with focused Linux tests for variable metadata, metadata tampering, unknown members, wheel swapping, and provider-path replacement.