Guild v2.7.0
This promotes the exact reviewed next channel to stable through the repository's direct release path.
Highlights
- converges multi-host runtime dispatch, receipts, projections, and protected configuration across supported host packages
- hardens lifecycle recovery, migration evidence, native channel identity, and stable update detection
- restores and documents the single
next → mainrelease path with an ancestry-preserving merge requirement - adds a version-pinned, fail-closed v2.7.0 provenance release gate with exact GitHub OIDC attestation verification
Release evidence
- reviewed source:
c283029ef8a74999f3b60c90bff5bf4807c7b657 - final evidence tip:
37a042e3b1693ae45f508ec36398fef0c58665d5 - Claude Opus 5 / Claude Code external review: satisfied, no blocking findings
- GitHub OIDC evidence attestation: successful workflow run
Explicit limits and follow-ups
v2.7.0 is published under a bounded provenance-only basis. Cryptographic conformance authority is not established, this release does not promote a conformant status, and migration windows remain post_release_observe. PCL-FU-04 (independent custody/root rotation) and PCL-FU-06 (migration observation windows) remain open follow-ups.
This PR must be merged with GitHub's Create a merge commit method; squash and rebase are invalid for the evidence ancestry gate.
Full Changelog: v2.6.0...v2.7.0