Skip to content

v0.1.219

Choose a tag to compare

@github-actions github-actions released this 09 Sep 03:10
· 1548 commits to main since this release
v0.1.219
646c35e

Alpha

OMG is alpha software: the CLI, flags, and on-disk formats can change without a compatibility guarantee.

Breaking changes

These CLI and release changes shipped in 0.1.215 and remain in later alphas.

omg license removed

Local features are no longer license-gated. Dashboard identity is optional.

# Removed
omg license
omg license check
omg license pricing

# Use instead
omg account status
omg account link <token>
omg account unlink

Team, Enterprise, and Fleet commands no longer require a paid JWT. Scripts that expected those commands to fail without a license will now succeed locally. Remote dashboard sync still needs a valid token from omg account link.

Installation

Quick Install (Linux/macOS):

curl -fsSL https://omg.olenlatham.dev/install.sh | bash

What's New in v0.1.219

Merged pull requests (since v0.1.218)

Package manager correctness and freshness:

  • #353 fix(debian): index freshness survives list removal
  • #355 fix(debian): installed state owns its dpkg-status source
  • #356 fix(debian): qualified name[:arch[:component]] lookups on mapped indexes
  • #357 fix(arch): source identity changes invalidate handles/workers/daemons by inequality
  • #359 fix(daemon): persisted status expires without renewing its memory TTL
  • #360 fix(aur): own and validate metadata index bytes before lookup
  • #361 fix(debian): validate FST mapping contents instead of generation sidecars
  • #362 fix(debian): one published snapshot for native and archived views
  • #363 fix(privilege): isolate elevated state instead of transferring ownership
  • #364 fix(arch): detect sync database changes hidden by maximum timestamps
  • #365 fix(arch): reject catalog loads tagged with a later source identity
  • #366 fix(daemon): publish package index and source identity together
  • #372 fix(arch): detect local package metadata changes (desc edits, symlinks)
  • #381 fix(arch): delete versioned source-identity caches on invalidate

CI, benchmarks and release tooling:

  • #374/#375/#382 duration-unit Clippy repairs and distinct QEMU concurrency groups
  • #377 integration of audit checkpoints with current main fixes
  • #379 run shared checks once and remove the redundant Arch lane
  • #380/#383/#384 QEMU transaction and benchmark fixture checkpoints
  • #378 align the enterprise policy fixture with the strict schema
  • #385 fix(bench): headline label resolution plus runtime mutation re-entrancy fix
  • #387 bench: refresh the performance baseline for the accepted metadata-scan cost

Docs and fixtures:

  • #371 docs: correct security claims and operational guidance
  • #373 fix(hooks): require exact generated content before uninstall
  • #386 chore(release): prepare v0.1.219

Performance note

Search benchmarks now measure the end-to-end CLI including the local metadata
observation introduced with #372 (user-selected tradeoff). The refreshed
baseline records 18.8ms search / 12.3x vs pacman on the CI runner. Moving the
catalog observation off the async request path remains a documented follow-up.

Known limitations at release

  • Docker E2E test_docker_update_check remains flaky (pre-existing).
  • QEMU arm64 guest legs intermittently land on runners without /dev/kvm.
  • Coverage-container fixture tests skip when elevated processes ignore caller
    path overrides; they retain non-root coverage in the portable job.