immybot-v0.1.3
·
18 commits
to main
since this release
Immutable
release. Only release title and notes can be modified.
Fixed
recallandplaybook listno longer claim to be read-only. Both open the writable
learn store and record a row, but were annotatedmcp:read-only=true- and that annotation
is what an MCP host reads to decide what to auto-approve without asking you. They are now
mcp:local-write, a tier this engine already defines and already uses forteach: writes
land only in the CLI's own local store, never in external state and never in a user-visible
file. Measured at the live MCP server, both tools moved fromreadOnlyHint=true, openWorldHint=truetoreadOnlyHint=false, destructiveHint=false, openWorldHint=false.
No behaviour changed - both commands write exactly what they wrote before. The promise was
the defect, not the write.
Added
IMMYBOT_NO_CONFIG_WRITE=1keeps every credential off disk. Set it and the CLI mints a token per
invocation instead of caching one inconfig.toml. The MCP server honours the same switch,
which it previously could not: it resolved its own config path and ignored--config
entirely, so a Claude Desktop setup kept a plaintext token cache even when the CLI had been
told not to write one.auth logoutstill clears a config that already exists - the switch
suppresses credential writes, not the erase.
Changed
- Install and remote-agent documentation corrected against the shipped binaries. The remote
section namedmcp-remote, which bridges the opposite direction and cannot publish a local
stdio server at all; connectors that parse--transport httpnow point at the native flag
and the rest atsupergateway. The HTTP endpoint is/mcp, not the bare root the docs gave.
The Windows install path and a fallback paragraph describing annpxinstall that is not
offered were both wrong and are gone. A newcheck_install_docsgate holds these claims
against the binaries and installers so they cannot drift again.