v0.3.0 — Strict Mode and Signal Reliability
Stable 0.3.0 release.
Highlights:
- strict mode approval flow fixed for C/D Bash with request-scoped approvals and one-time command grants
- structured signal parsing improved so the orchestrator reads result-level structured outputs reliably
- planner flow tightened: Agent A does one required self-review pass before handing the plan to B
- hook contract coverage and structured-signal regression tests added
- docs updated to match the current security model and pipeline behavior
This release improves practical safety and reliability, but the documented hook limitations still apply. Strong containment remains a v0.4+ sandboxing goal.