Releases: sebastienrousseau/pain001.github.io
Release list
pain001.com 0.0.10
Highlights ⭐️
- What is pain.001?: A new reference page explains the ISO 20022 credit transfer message in all 35 languages: its structure, every version from .03 to .13, how it compares with pain.002, pain.008, pacs.008 and MT101, and a complete example that validates against the official XSD.
- Found by the people searching for it: Titles and descriptions now match how each market searches, version pages answer XSD and example searches, and the site fixes what Search Console flagged: a soft 404 and 1,931 stray files. Every deploy now notifies IndexNow.
- Built to be verified: Release archives are reproducible and each release rebuilds to prove it, the site's JavaScript is 99.8% covered, and every source file carries its licence. The site now holds the OpenSSF Best Practices passing badge.
- A reference that matches what ships: The technical reference and MCP page describe the released pain001 0.0.71, with 22 MCP tools, and label upcoming features as not yet released.
What's Changed
- feat: Best Practices silver and gold criteria by @sebastienrousseau in #48
- build: attest via actions/attest, link badge by @sebastienrousseau in #49
- docs: code-review standards, newcomer tasks by @sebastienrousseau in #55
- feat: pain.001 guide, SEO fixes, issues 51-54 by @sebastienrousseau in #56
- feat(seo): locale titles, IndexNow, scoreboard by @sebastienrousseau in #58
- docs: MCP and CLI reference, released vs upcoming by @sebastienrousseau in #57
- chore(release): v0.0.10 by @sebastienrousseau in #62
Checksums
3aefab16f07a7f3d3e996384e213564e0c490120ee6ba05d562815473e333dd7 ./pain001-site-v0.0.10.cdx.json
98f0f3e2210011ebb97121ef25fc1de3becbad71d5cff85c19bc4c7ca68b24b6 ./pain001-site-v0.0.10.tar.gz
Full Changelog: v0.0.9...v0.0.10
pain001.com 0.0.9
Highlights ⭐️
- pain001 0.0.71, kept current automatically: The site cites and the demo runs pain001 0.0.71. The site now checks PyPI every six hours and opens a pull request for each new library release, with the demo's wheel already pinned.
- A demo runtime you can verify: The demo's WebAssembly runtime and wheels are no longer stored in the repository. Each build downloads them and refuses any file whose SHA-256 differs from the pinned manifest.
- A tighter supply chain: Every dependency the workflows install is pinned by hash, and the demo's CSV handling is fuzzed on every push. The OpenSSF Scorecard alerts for binaries, pinning and fuzzing are closed.
- Every release, one format: All releases back to 0.0.1 now share one title style, Highlights, the generated change list and checksums, and each carries its site archive, SBOM and attestations.
What's Changed
- docs(roadmap): defer Phase C, record why by @sebastienrousseau in #43
- feat: Scorecard fixes, pain001 0.0.71, releases by @sebastienrousseau in #44
- fix: close the Scorecard Fuzzing and pin alerts by @sebastienrousseau in #45
- fix: regenerate on every library release by @sebastienrousseau in #46
- chore(release): v0.0.9 by @sebastienrousseau in #47
Checksums
966f7ace6774a7e0120bf4f4ed2c57dbf65c461550798ebb66a78457b6ee8115 ./pain001-site-v0.0.9.cdx.json
9cf641fa249f232eea7f7ebe7dca46b4f455ea001071b314400f4007d09160ff ./pain001-site-v0.0.9.tar.gz
Full Changelog: v0.0.8...v0.0.9
pain001.com 0.0.8
Highlights ⭐️
- Layered error reports: The report you download from the browser demo now opens with one row per validation layer and says what each concluded. Each finding names its layer, so a report handed to a colleague shows exactly what was checked and what was not.
- A demo that describes itself accurately: The explainer now says the demo runs the pain001 library itself, including the scheme rulebook you choose and the official XSD gate, in all 34 languages.
- The demo speaks your language throughout: Seven status strings that stayed in English on translated pages, including the scheme verdicts, are now translated.
What's Changed
- feat(try): layered error report, and demo accuracy fixes by @sebastienrousseau in #41
- chore(release): open v0.0.8 by @sebastienrousseau in #42
Checksums
43ba5ea179a02ea6b0943f839531ed118ac363fe6a38fdab2bb1da4570205dec ./pain001-site-v0.0.8.cdx.json
80f2184ccd8a5c7226f4facd704623f6bc918b4f1e720ce697fc6b67fa9555fa ./pain001-site-v0.0.8.tar.gz
Full Changelog: v0.0.7...v0.0.8
pain001.com 0.0.7
Highlights ⭐️
- Claims that match the site: The build page is now Made with ssg and lists every script the site runs. The accessibility statement describes the scan that actually runs: full axe and WAVE rules on every page, in both themes.
- No open security alerts: We removed pa11y-ci, the only route to
extract-zip, whose two high advisories have no fix. The site-wide scan already covered every page it sampled. - An accurate README: The logo and light and dark screenshots of the current design are served from pain001.com, so they render outside GitHub, and every claim was checked against the repository.
What's Changed
- build(deps): drop pa11y-ci and extract-zip by @sebastienrousseau in #37
- docs(readme): fix logo, screenshot and claims by @sebastienrousseau in #38
- docs: name the generator Static Site Generator (ssg) by @sebastienrousseau in #39
- chore(release): open v0.0.7 by @sebastienrousseau in #40
Checksums
3e2ba8a409d07438d6996e334838099e21b16bce7f086f506cc0519d3775dd6b ./pain001-site-v0.0.7.cdx.json
6bc710e8eba2a4133ad62bf259049d2a1e9fdb751749e7f1d9d68b1eb28548ec ./pain001-site-v0.0.7.tar.gz
Full Changelog: v0.0.6...v0.0.7
pain001.com 0.0.6
Highlights ⭐️
- Corrected ISO 20022 deadlines, in 35 languages: We corrected the homepage, the briefing, the roadmap, the executive brief and every translation after Swift deferred the November 2026 changes on 27 August 2026. The Fedwire release moved to November 2027, when CHAPS purpose codes also become mandatory.
- PRISM v2: We redesigned the site for institutional buyers with one typeface, a cobalt-on-warm-grey palette, distinct light and dark themes, and a photograph on every page. Reference pages gained a contents rail, and wide tables now scroll.
- Stricter gates: CI now checks the dated regulatory claims weekly, audits the reading measure at four widths, holds contrast at 7:1 in sRGB and Display P3, and requires Lighthouse 100 on 13 routes across five screen sizes.
- Search Console and CDN fixes: A real 404 page is served with a 404 status, duplicate and soft-404 URLs are fixed at their causes, and the edge now follows the origin's ten-minute cache so deploys show up.
What's Changed
- PRISM v2: redesign, photography and corrected ISO 20022 deadlines by @sebastienrousseau in #34
- perf(tags): lay the tag list out as a grid by @sebastienrousseau in #35
- chore(release): open v0.0.6 by @sebastienrousseau in #36
Checksums
ec93aec24862732b203e5df543b6da77da0b2d69fa6e1f5a634aa5a5c560c1f0 ./pain001-site-v0.0.6.cdx.json
98fc62b5370c25668be16f3a137891a35173f40d55ff55daf889650bd5a02df0 ./pain001-site-v0.0.6.tar.gz
Full Changelog: v0.0.5...v0.0.6
pain001.com 0.0.5
Highlights ⭐️
- Publishable SBOMs: We added
scripts/sbom_serial.py, which gives the generated SBOM theserialNumberthe attestation action requires. The serial is derived from the site's URL and version, so rebuilds of a version carry the same one. - A self-checking build: The script tests the exact condition the attestation action applies, so a later change cannot quietly make a release unpublishable again.
- The first complete release since v0.0.2: The site is unchanged since v0.0.3, and this release publishes it with its archive, checksums, SBOM and attestations.
What's Changed
- fix(release): give the SBOM a serialNumber by @sebastienrousseau in #33
Checksums
7ce437776c0dfcbd7178c353700e8d12ce6be30e2aef79329e3cb8929f6238ed ./pain001-site-v0.0.5.cdx.json
3c35e49f795af637454d7b3ab90cb3df942233ecc787a98ff95a9f45a62f7d1b ./pain001-site-v0.0.5.tar.gz
Full Changelog: v0.0.4...v0.0.5
pain001.com 0.0.4
Highlights ⭐️
- SBOM attestation paths: We fixed the release workflow that stopped v0.0.3 from publishing.
actions/attest-sbomexpands globs insubject-pathbut not insbom-path, so the SBOM was "not found". Both paths are now spelled out in full. - Same site as v0.0.3: The website is unchanged. This release exists to carry the v0.0.3 content to a published release; the v0.0.3 tag was left where it was, because tags are never moved.
The release run for this tag then failed on the SBOM format, fixed in v0.0.5, so its assets were added later from the same tag.
What's Changed
- fix(release): name SBOM paths, not globs by @sebastienrousseau in #32
Checksums
ef1147b5b509f9c8c6226b7d45d93de853ca71b06232e29f9c47fe29f6a81f5c ./pain001-site-v0.0.4.cdx.json
c1b422cac4ec4347f664102587ad1a33aaf6f56b546393d3331a7013a2c80e44 ./pain001-site-v0.0.4.tar.gz
Full Changelog: v0.0.3...v0.0.4
pain001.com 0.0.3
Highlights ⭐️
- The PRISM theme: We moved the whole site to the PRISM financial-infrastructure theme and Skeletonic CSS v3.0.0, with a system, light and dark colour control, and kept the browser validator and documentation corpus intact.
- A demo that runs the real library: The browser demo now runs the pain001 library itself, and every corpus scenario has its own page with downloadable pain.001 and pain.008 files.
- Accessibility and performance gates: Every build must pass WCAG 2.2 AAA with zero browser accessibility findings, and Lighthouse on mobile and desktop, before it ships.
- Signed, attested releases: Tags are signed, and each release carries the site archive, checksums, a CycloneDX SBOM and GitHub attestations. See
docs/migrations/v0.0.3.mdfor contributor and colour-mode changes.
The release run for this tag failed at the SBOM attestation, so its assets were added later from the same tag.
What's Changed
- Link the copyright byline; gate layout and print regressions in CI by @sebastienrousseau in #3
- Re-order the roadmap by what unblocks the most by @sebastienrousseau in #4
- chore(license): ship Apache-2.0 OR MIT by @sebastienrousseau in #5
- fix(license): restore LICENSE as a pointer to the dual grant by @sebastienrousseau in #6
- feat: example-corpus page with downloadable pain.001 and pain.008 files by @sebastienrousseau in #8
- chore(w0): current versions, cited deadline, logo alt, version gate by @sebastienrousseau in #9
- feat(w1): first-party, cookieless measurement of five interactions by @sebastienrousseau in #11
- feat(w2): the browser demo runs the pain001 library itself by @sebastienrousseau in #12
- feat(w3): one page per corpus scenario, with Dataset markup by @sebastienrousseau in #13
- feat(w4): agent-first distribution: corpus index, twin schemas, llms.txt, MCP blocks by @sebastienrousseau in #14
- feat(w5): the buyer's path, disclosed: enterprise page, trust artefacts, three copy changes by @sebastienrousseau in #15
- feat(w6,w8): performance budgets in CI, release-triggered regeneration, footer version stamp by @sebastienrousseau in #16
- feat(w1,w7): GoatCounter measurement, corpus scenario pages in five locales by @sebastienrousseau in #17
- fix(build): pin ssg once and locate the pain001 checkout relatively by @sebastienrousseau in #7
- feat(w1): count page views with Cloudflare Web Analytics, beacon served from this origin by @sebastienrousseau in #18
- chore(ci): pin every action by SHA and let Dependabot keep the pins current by @sebastienrousseau in #19
- feat(w9): MT101 migration and Excel on-ramp pages, MT101 page truth fixes, wider version gate by @sebastienrousseau in #20
- chore(site): README around the pipeline and gates, dated changelog, tag-page icons, lower layout cost on long tables by @sebastienrousseau in #22
- docs(readme): list the post-build passes and what each repairs by @sebastienrousseau in #23
- build: deploy the site from CI as a Pages artifact; stop committing docs/; CodeQL by @sebastienrousseau in #24
- ci: OpenSSF Scorecard and DCO check, as every other repository in the suite by @sebastienrousseau in #25
- ci: read-only token at the top of every workflow; write scopes on the job that needs them by @sebastienrousseau in #26
- docs(mcp): name the registry entry, the Glama listing and the image on the MCP page and in llms.txt by @sebastienrousseau in #28
- feat: adopt PRISM theme and release v0.0.3 by @sebastienrousseau in #30
Checksums
fc0bf629c784cb9d43e8aaabcd822f00c6f31a49b6b5f8943826c694102a0384 ./pain001-site-v0.0.3.cdx.json
abd8f726d9a84ffc82d548148f10a75107cb11308b335a044e82e5317359ddcf ./pain001-site-v0.0.3.tar.gz
Full Changelog: v0.0.2...v0.0.3
pain001.com 0.0.2
Highlights ⭐️
- Production fixes: We fixed the deployed site, which showed raw HTML as text, shipped an empty
sitemap.xmland a malformedCNAME, and carried placeholder structured data.build.shandscripts/postbuild_fix.pynow guard all four. - Every page rewritten: We rewrote and fact-checked all 33 pages against pain001 v0.0.56 and primary sources: CLI flags, REST endpoints, the 17 MCP tool names, pain.008 scope and the MT101 field mapping. A plain-English glossary is new.
- Editorial design at WCAG 2.2 AAA: We redesigned the site with serif display type, contents blocks with heading anchors and a CSS-only mobile menu, and annotated every colour token with its measured contrast of at least 7:1 in both themes.
- Machine-readable surfaces: Every page carries unique metadata, JSON-LD and a Content Security Policy, and the site publishes
llms.txt, feeds, an SBOM andsecurity.txt.
This release cited the November 2026 structured-address and MT101-relay deadlines. Swift deferred them on 27 August 2026, and v0.0.6 corrected the site.
What's Changed
- feat: v0.0.2 — editorial redesign, research-backed content, repaired build pipeline by @sebastienrousseau in #2
Checksums
a030588bac8e9b7462705574167eee82e80c9e59c218523b7e1be295d2c453e5 ./pain001-site-v0.0.2.cdx.json
e1af4c732a52d3376e515c5ec060b68c1c4d706dca984eed2e436635b9e36521 ./pain001-site-v0.0.2.tar.gz
Full Changelog: v0.0.1...v0.0.2
pain001.com 0.0.1
Highlights ⭐️
- The first public site: We published pain001.com, the documentation site for the pain001 ISO 20022 payment-file library, built with the Static Site Generator (ssg) and served by GitHub Pages.
- Start here: The site introduces the project, shows how to install the library, and links to its source and licence.
What's Changed
- Initial commit by @sebastienrousseau in 67d32fa
- feat(pain001.com): initial commit by @sebastienrousseau in 522aa6b
Checksums
13a7b3ee6dded5c8441844167104300e1b051d4d8c5bb95facb3c36a17e84d62 ./pain001-site-v0.0.1.cdx.json
460f39a8876a81ac56b3c0be8688be1dd2d3e7a6a66a126cd6fe15f5e3cb574d ./pain001-site-v0.0.1.tar.gz
Full Changelog: https://github.com/sebastienrousseau/pain001.github.io/commits/v0.0.1