v0.9.25
This release adds explicit sandbox controls and fixes recovery when installed programs are hidden from Linux subprocesses.
- Add
--no-sandboxto disable OS filesystem and network confinement for a launch, including new panels, subagents and update restarts. Permission modes and approval checks remain active. - Let
execandbashrequest a single command outside the sandbox usingoutside_sandbox: trueandsandbox_reason. This requires human approval even in auto mode; Always applies only to the exact command for the current session. - Describe the actual backend and filesystem mounts in the model prompt, and diagnose programs that exist on the host but are hidden from the Linux sandbox. Recovery now points to a working approval path.
Child environments remain filtered when OS confinement is disabled or an outside-sandbox exception is approved.
Release artifacts
- tina-v0.9.25-linux-x64.tar.gz
- tina-v0.9.25-macos-arm64.tar.gz
- tina-v0.9.25-linux-arm64.tar.gz