Skip to content

v0.9.25

Choose a tag to compare

@github-actions github-actions released this 01 Oct 09:35
· 35 commits to main since this release

This release adds explicit sandbox controls and fixes recovery when installed programs are hidden from Linux subprocesses.

  • Add --no-sandbox to disable OS filesystem and network confinement for a launch, including new panels, subagents and update restarts. Permission modes and approval checks remain active.
  • Let exec and bash request a single command outside the sandbox using outside_sandbox: true and sandbox_reason. This requires human approval even in auto mode; Always applies only to the exact command for the current session.
  • Describe the actual backend and filesystem mounts in the model prompt, and diagnose programs that exist on the host but are hidden from the Linux sandbox. Recovery now points to a working approval path.

Child environments remain filtered when OS confinement is disabled or an outside-sandbox exception is approved.

Release artifacts

  • tina-v0.9.25-linux-x64.tar.gz
  • tina-v0.9.25-macos-arm64.tar.gz
  • tina-v0.9.25-linux-arm64.tar.gz