Skip to content

Releases: revazi/pi-career

pi-career v0.2.0

Choose a tag to compare

@revazi revazi released this 10 Aug 03:46
6db5864

Published commit: 6db58644a6140202de2f2d661a740acd298c79b5
npm: pi-career@0.2.0
npm integrity: sha512-2V0z42oxsDHdE9a/UTskCzLY3inU0/DX30h2QhXse/Y3rAJpsaaNweqVhvZwZlMUovtyBu7pnGSpSo8CLhVOBg==
npm shasum: c182b09945eee8cd85d817b7ce4965784731fd49

This native-free pi-career package resolves the exact external @revazi/career@0.1.1 launcher. The reviewed native targets are darwin-arm64, darwin-x64, linux-x64-gnu, linux-arm64-gnu, linux-x64-musl, linux-arm64-musl, win32-x64-msvc, and win32-arm64-msvc.

Production and complete development/host-Pi audits passed at --audit-level=low. No crate was published, no signing or notarization claim is made, and this release has no custom asset.

Changelog

Added

  • Primary compact career_run tool with internal Career Core operation/schema discovery, ephemeral resume/result/review/variant handles, complete bounded in-memory results, compact analysis/match/review/materialization projections, and section/item detail hydration without nested input_json.
  • /career-tools keeps the three raw Career Core compatibility tools available for explicit advanced use while removing them from normal active model context.
  • Frozen synthetic o200k_base context benchmark: the active career_run contract is 302 tokens against the recorded 1,041-token prior raw-tool surface, with common synthetic managed results below 250 tokens.
  • Local searchable-PDF résumé ingestion through a bounded, network-disabled worker, with explicit library notices for encrypted, image-only, malformed, oversized, or otherwise unextractable PDFs.
  • /career-workbench prepares a bounded, visibly reviewable ordinary Pi editor prompt for complete score explanation, reviewed improvement suggestions, a question-led factual interview before reviewed replacements, direct reviewed exact replacements, or vacancy-specific variant review while keeping originals immutable. The command makes no provider/model call; only the user's later ordinary Pi submission invokes the selected provider. Non-PDF materialization requires explicit canonical change-ID selection in a later turn; PDFs stop at manual targeted changes.
  • /career-application adds branch-aware company/role/status identity, scopes vacancies and result cards by immutable application ID, and names otherwise unnamed Pi sessions without creating workspace files.
  • /career-analyze and /career-match expose complete successful Core results plus focused sections through a transient read-only pager, without storing or exporting full result JSON.
  • /career-setup records or derives a suggestion-only preferred resume-variation directory. Workbench prompts recommend that privacy-reduced destination first after a separate user request, while creating no directory or file and granting no automatic write authority.

Changed

  • Replaced package-owned native artifacts with a local-first external resolver: bounded absolute CAREER_CLI_PATH, PATH career, package-local @revazi/career, then bounded acquisition of exact @revazi/career@0.1.1 unless PI_OFFLINE=1.
  • Expanded the reviewed external runtime matrix to ARM64/x64 macOS, GNU and musl Linux, and MSVC Windows through the exact eight-target @revazi/career@0.1.1 launcher. Windows acquisition derives npm and its command shell from validated real installation/system paths, executes no PATH-selected shim, and cancels the detached npm process group.
  • Exact managed Core 0.1.1 operation-catalog/schema-bundle compatibility now completes before private stdin opens. The reviewed Career package launcher owns native target/libc/provenance/mode or Windows file invariant/size/format/SHA-256 verification; pi-career caches routes only in memory and never retries an already-started operation on another route.
  • Removed runtime/ from source/package artifacts and replaced bundled-runtime/package checks with runtime-resolution, exact Career package, offline failure, and native-free tarball coverage.
  • Workbench prompts now use career_run handles and native proposal payloads rather than model-visible schema discovery and manually reconstructed Core envelopes.
  • Setup and library flows now rescan immediately, display indexed PDFs and actionable scan notices, and explain the searchable PDF/Markdown/text success path instead of silently showing an empty library.
  • Reorganized the README around the recommended first-run flow, exact slash-command behavior, release-version boundaries, runtime acquisition, and privacy/persistence expectations.
  • Streamlined post-release documentation, added npm/CI/license badges, and recorded immutable v0.1.0 package coordinates.
  • Workbench review prompts now require verbatim preferably single-line source targets, avoid automatic discard-repair retries, reuse unchanged discovery/schema results, and keep prose concise instead of repeating complete review-embedded baselines.

pi-career v0.1.0

Choose a tag to compare

@revazi revazi released this 06 Aug 16:38
967da62

pi-career v0.1.0

First public release of the self-contained deterministic Career Core package for Pi.

Install

pi install npm:pi-career@0.1.0

Git installation remains available at the immutable release commit:

pi install git:github.com/revazi/pi-career@967da62503bc8a97c070946f6506ea3471baeb34

Included Pi surface

Native tools:

  • career_core_discover
  • career_core_resume
  • career_core_job

Deterministic slash commands:

  • /career-setup
  • /career-library
  • /career-vacancy
  • /career-match
  • /career-analyze

Coordinates and integrity

  • npm: pi-career@0.1.0
  • Git commit: 967da62503bc8a97c070946f6506ea3471baeb34
  • npm integrity: sha512-mmbDdWDyWz77f2uLzZECJT9E6w1ZRCJjYFrUnZd3ldoS6ehEa5DrCENIfavHR5xMOFi0of6AVQ35ZTxwpeDeAQ==
  • npm shasum: 4212cea50c08c98771df267361cee28070a15765

The published npm package was verified by an isolated Pi install/list/load/bundled-runtime/remove smoke.

Native targets and release boundary

Supported targets are exactly:

  • macOS Apple silicon (darwin-arm64)
  • Linux x64 glibc (linux-x64-gnu)

Both package-owned Career Core executables are unsigned and not notarized. They are pinned to Career Core commit a3cdb4c6d7f966397e93ea4664071975bca7228c with exact manifest, provenance, size, mode, hash, license, and bounded contract verification. No Cargo/Rust install-time build, runtime download, PATH fallback, crate publication, or custom GitHub Release asset is used.

The original CI artifacts were rechecked on 2026-08-06. The tracked binaries, per-target provenance, manifest, archive identities/hashes, public Core commit, and package verification were accepted as sufficient durable evidence after upstream artifact expiry.

Audit and license-review disclosure

At release:

  • package-owned production audit: zero vulnerabilities at explicit low threshold
  • complete development/host-Pi audit: zero vulnerabilities at explicit low threshold
  • native license inventory: 30 Cargo packages, Rust 1.97.1, and 11 exact license/notice files verified

Native-license evidence received documented sole-maintainer review by Revaz Zakalashvili. This was maintainer self-review, not independent legal review or legal advice.