v4.9.0 - Native Computer Use, Desktop Buddy & Safe Conversation Cleanup #354
siddsachar
announced in
Announcements
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
v4.9.0 - Native Computer Use, Desktop Buddy & Safe Conversation Cleanup
This release builds on v4.8.0 with a rebuilt Browser and native Computer Use
boundary, a real Windows and macOS Buddy desktop overlay, centralized and
race-safe conversation cleanup, and live xAI image-generation capability
discovery. It makes visible automation faster and more truthful about what was
delivered or verified, lets Buddy operate the selected Chat, Developer, or
Designer thread without creating a second conversation, removes complete
thread-owned state without risking repositories or retained project artifacts,
and selects xAI image quality only from model-published combinations without
weakening local-first, approval, credential, screenshot, or typed-value
boundaries.
Managed Browser And Shared Automation Contracts
policy, history, runtime readiness, action dispatch, and recovery into
browser/, leaving the Browser tool as a provider-neutral adapter ratherthan the owner of one large mutable runtime.
handles behind task, context, page, navigation, and snapshot tokens; stale,
detached, drifted, cross-page, and cross-thread targets fail before an
action can be dispatched.
handles and 1 MiB before projecting at most 160 controls and 32 KiB, hides
input values, records received and retained counts, and disposes handles when
their snapshot expires.
non-navigating clicks, one observation for navigation, scrolling, and tab
changes, and no automatic screenshot, Vision call, fixed sleep, or general
networkidlewait after routine actions.risk, re-proves only that target after approval, completes the approved
submit in the same tool invocation, and never lets an approval authorize a
different element.
line, records its matching Chromium revision in an atomic manifest, installs
only through an explicit Browser install or repair action, validates an
offline page, and retains the prior known-good runtime for rollback.
conversation PDF export, and normal app launch perform read-only readiness
checks and never install or repair Chromium implicitly.
probe launches and, after one real selected-channel launch failure, falls
back once only to an already-ready version-matched managed Chromium.
invalidates every owned observation after context or browser loss, performs
one bounded restart without replaying an uncertain action, and cleans up
idle or terminal task pages without disturbing active work.
receipt, error, activity, and no-progress contracts shared by Browser and
Computer Use while keeping their processes, leases, targets, histories, and
persistence separate.
Native Computer Use Reliability And Safety
full Windows x86-64, Windows ARM64, and macOS universal archives, exact
executable candidates, and SHA-256 values; Windows uses
mcpwhile macOSpreserves and launches the packaged app with
mcp --direct.introduced after v4.8.0 before the upgraded driver can start. The reviewed
telemetry is limited to pseudonymous identifiers and bounded product,
platform, client, operation/outcome, duration/output, aggregate usage,
permission, and lifecycle categories; tagged event builders exclude prompts,
arguments/results, typed text, screenshots, accessibility trees, app/window
names, URLs, paths, raw configuration values, and raw errors.
for launch, capture, click, double-click, right-click, literal caret
type,exact whole-value
replace_text, key/hotkey, scroll, drag, menu invocation,state verification, and bounded wait behavior.
current token after explicit disabled, read-only, secure, protected, and
structural checks; combo boxes, grid/data cells, documents, and unknown
interactive roles can reach the reviewed driver without hidden selection,
clearing, clicking, or recapture steps.
supported and permits at most one same-action foreground attempt after an
explicit driver refusal, with no separate focus action, effect replay, or
silent switch to coordinates, Browser, shell, clipboard, or another engine.
12 KiB model envelope while preserving selected items and a bounded quota of
document, grid, and actionable controls that would otherwise be crowded out
by application chrome.
label, role, and value prefix without coordinate guessing, refuses ambiguous
matches, and keeps the full validated element set ephemeral and unavailable
to stale model tokens.
identities, prefers the unique active or visible matching window, preserves
genuine ambiguity, and keeps platform identifiers such as AUMIDs out of
model output, approvals, and logs.
change, and exact-value verification. An accepted but unverified action stays
useful and does not create a pending-mutation latch, completion ledger,
automatic replay, or final-answer override.
actions make no hidden capture; optional replacement readback or visual
checking uses at most one fresh capture and never treats a changed screen or
free-form Vision prose as proof of the requested outcome.
one same-action retry only when the structured receipt permits it, keeps
candidate lists current, handles scroll and drag foreground delivery, and
recommends Take over after the bounded route is exhausted.
explicit role or hijacking signals, reports only bounded advisory categories,
and does not turn ordinary UI text into an authorization decision or a hard
action failure.
Screen Recording to the packaged Row-Bot host, preserves the Cua app bundle,
links to the correct panes, and cleans up the private client and exclusive
lease on Stop, thread deletion, disablement, uninstall, and app shutdown.
for exact Browser-versus-Computer routing, current-generation targets,
same-family recovery, foreground escalation, non-replayable mutations, and
honest receipt interpretation.
Buddy Desktop Overlay
with a native Windows and macOS overlay that tears off from the sidebar,
stays on top, supports multi-monitor and negative-coordinate placement, and
can be repositioned by its header.
settings into docked or desktop placement plus visible and collapsed state,
keeps old mirrors compatible, and returns Buddy to the dock on a new app
launch without reviving a saved hidden preference.
Designer conversation with its existing model, tools, approval mode, and
surface context; sending with no selected thread creates one normal Chat
conversation.
full composer, captures the selected thread and surface when Send is pressed,
never retargets an in-flight request after a UI selection change, and never
adds implicit screenshots or attachments.
the latest plain-text answer afterward, and sanitized errors without starting
another turn; Stop cancels only the active generation for the selected
thread.
the overlay, routes complex or incomplete approvals to the full thread, and
synchronizes pending approval dialogs between Buddy and the main UI without
permitting a stale or cross-thread decision.
excludes Row-Bot windows, restores a minimized window once when needed, and
makes one non-retrying activation attempt before the overlay sends.
while Buddy is torn off, exposes Open full thread, Collapse or Expand, Dock,
and Hide actions, and adds tray recovery for both the overlay and the main
window.
direct action buttons plus a menu, stable flex sizing, compact status bubbles,
softened approval motion, state crossfades, and quieter idle-video replay.
stale dock geometry, and window-local drag coordinates from turning one
docked drag into duplicate, cancelled, or wrongly positioned gestures.
Conversation Cleanup And Bulk Selection
one idempotent service for Chat, Designer, Developer, workflow, channel, and
Agent-owned state, including metadata, checkpoints, writes, drafts, media,
summaries, activation state, approvals, notifications, and cached UI state.
stops generation and active child Agents, blocks late checkpoint, event,
media, draft, summary, and child-start writes, and keeps the guard until any
in-flight producer has finalized.
approvals, events, edges, locks, and runs while preventing a child-creation
race from recreating state after its parent is gone.
state while retaining workflow and run audit records with deleted thread,
approval, message, and channel links scrubbed.
retaining the design; deleting the design removes its assets, history,
published copy, cached session, and every linked conversation.
folder, removes only safe clean managed worktrees, and retains dirty
worktrees or sandboxes with unimported changes as explicit recovery
workspaces.
deletion, removes only provable idle orphan artifacts and stale temporary
files, and performs thresholded SQLite compaction when meaningful space can
be reclaimed.
the obsolete Agents filter, assigns each user-managed conversation to one of
Chat, Designer, Code, or Workflow, and reconciles visible counts from the
same canonical dataset.
filter without disturbing selections from another filter, keeps checkbox and
destructive-target state synchronized, and includes collapsed Code rows
while excluding hidden children.
offloading cleanup from the UI event loop, awaits asynchronous confirmation
callbacks, always removes progress on failure, and reports retained recovery
workspaces or partial failures.
xAI Image Capability Discovery
/image-generation-modelscatalog alongside its general and language catalogs for both API-key and xAI
OAuth providers, allowing newly advertised media models to enter the normal
provider catalog without a model-name-only guess.
resolution options, defaults, and valid combinations into the shared model
capability snapshot and preserves them through OAuth and catalog caches.
when the selected model published a complete valid combination, chooses the
highest supported tier for a High request, and otherwise uses provider
defaults with a clear result note instead of inventing an unsupported pair.
generation-read, and download-read timeouts, gives image generation up to ten
minutes, refreshes OAuth once after a 401, and never retries an uncertain
timed-out generation request.
resolution, media-model classification, API-key discovery, OAuth cache
restoration, generation, editing, timeout, and download tests for the new
metadata path.
Cross-Surface Reliability, Documentation And Validation
approvals, stops generation-linked child Agents, cancels Browser, Computer,
shell, and Buddy activity for the selected generation, and prevents a stale
approval callback from resuming work after Stop.
from Buddy, hands modal ownership between connected local UI clients, and
keeps unrelated thread or generation approvals isolated.
Unicode and Markdown-aware conversation PDFs plus Designer PDF, PNG, and PPTX
rendering, with deterministic load completion instead of an unbounded
network-idle wait.
failure even when a later statement succeeds, retains native nonzero exit
codes, preserves successful warnings and persistent working directories, and
releases shell locks after cancellation or detached launch.
tool set, injects them into a stable prompt section for provider cache reuse,
and preserves the compact custom-endpoint policy that omits all skills and
guides at context windows of 32,768 tokens or less.
exposing private JSON, renders structured failures truthfully, settles
automatic skill loads into bounded plain labels, and keeps transcript export
free of hidden activation metadata.
authorized real-data screenshot capture, refreshes Buddy and Computer Use
public guides and screenshots, and republishes generated reference and
searchable site artifacts.
branch changes, current working-tree edits, and untracked files so local and
CI changed-source selection cannot silently omit new release work.
managed Browser subsystem tests, extensive Computer Use action, privacy,
targeting, focus, performance, and driver-verdict coverage, Buddy overlay
and drag fixtures, thread cleanup and bulk-selection coverage, export and
cancellation tests, and updated source-to-test ownership.
Breaking Changes And Caveats
v4.9.0. Legacy Buddy settings migrate in place, and existing conversations,
designs, repositories, workflows, and provider credentials remain local.
version-1 disclosure. They must install or repair the reviewed 0.20.0 full
archive and accept the expanded version-2 disclosure before Computer Use can
start; no driver download occurs during ordinary startup or readiness checks.
Playwright 1.62.x package. A mismatched or missing managed runtime fails
closed and must be installed or repaired explicitly; an already installed
supported Chrome or Edge channel can still be selected.
Dirty Developer worktrees, real repositories, selected source folders, and
sandboxes with unimported changes are retained rather than deleted; workflow
audit rows remain with sensitive live links removed.
server/browser mode, compact mobile presentation, and remote browsers keep
Buddy docked inside Row-Bot.
unavailable to schedules, channels, background workflows, child Agents,
plugins, external MCP callers, mobile clients, and headless/server sessions.
Browser and Computer remain separate engines and never silently substitute
for one another after a structured refusal.
This discussion was created from the release v4.9.0 - Native Computer Use, Desktop Buddy & Safe Conversation Cleanup.
All reactions