Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
117 commits
Select commit Hold shift + click to select a range
4867a12
docs: add public community and release guides
Obed0101 Jun 13, 2026
5436921
ci: harden release supply chain gates
Obed0101 Jun 13, 2026
2e0ae10
docs: expand MendCode customization guide (#69)
Obed0101 Jun 13, 2026
ad9d4cd
docs: show mascot only in README header (#71)
Obed0101 Jun 13, 2026
1758ed5
docs: remove README mascot header (#74)
Obed0101 Jun 13, 2026
6b0e0b8
fix: show MendCode version on welcome
Obed0101 Jun 13, 2026
5c5e907
fix: align MendCode version and CLI name (#76)
Obed0101 Jun 13, 2026
60ca445
chore: sync main back to dev (#79)
Obed0101 Jun 13, 2026
b1da5d7
docs: add MendCode release flow skill (#81)
Obed0101 Jun 13, 2026
120c218
Add Agent View welcome date context (#80)
Obed0101 Jun 13, 2026
bfa5fd4
[codex] Backport OpenCode terminal and SDK fixes (#83)
Obed0101 Jun 13, 2026
f319f37
fix: prepare v0.1.4 compaction and prompt fixes (#85)
Obed0101 Jun 13, 2026
a745852
Backport OpenCode runtime updates for v0.1.5 (#88)
Obed0101 Jun 13, 2026
4923808
fix: release v0.1.6 memory injection (#91)
Obed0101 Jun 14, 2026
f58608f
feat: add usage insights dashboard (#95)
Obed0101 Jun 14, 2026
2d06971
fix: release v0.1.7 setup memory UX (#98)
Obed0101 Jun 14, 2026
3026de0
fix: complete v0.1.7 memory and docs (#100)
Obed0101 Jun 14, 2026
da84090
fix: release v0.1.8 stats cache and installer
Obed0101 Jun 14, 2026
14ce846
fix: simplify public cli and compaction resume (#107)
Obed0101 Jun 14, 2026
0096300
docs: add v0.1.9 changelog (#110)
Obed0101 Jun 14, 2026
37fa1cc
feat: prepare v0.1.10 tui and memory updates (#112)
Obed0101 Jun 15, 2026
cb0d14b
fix: prepare v0.1.11 tui and mflow updates (#115)
Obed0101 Jun 15, 2026
8f50f67
feat: prepare v0.1.12 rendering and installer updates (#118)
Obed0101 Jun 16, 2026
81543d6
chore: unblock v0.1.12 release dependencies (#122)
Obed0101 Jun 16, 2026
5a64c04
feat: prepare v0.1.13 release
Obed0101 Jun 16, 2026
20c6c6c
fix: update hono for v0.1.13 release
Obed0101 Jun 16, 2026
3cf5668
feat: prepare v0.1.14 package registry release (#132)
Obed0101 Jun 17, 2026
fb18a00
fix: update protobufjs for v0.1.14 release (#136)
Obed0101 Jun 17, 2026
741eedc
release: prepare v0.1.15
Obed0101 Jun 20, 2026
ff6b51c
fix: sync release dependency gates to dev
Obed0101 Jun 20, 2026
6ef1f04
fix: sync final OSV versions to dev
Obed0101 Jun 20, 2026
e8e9a86
fix: allow urgent OSV release versions through age gate (#145) (#146)
Obed0101 Jun 20, 2026
1bde962
Add Usage Insights screenshot (#147)
Obed0101 Jun 20, 2026
1eb370a
docs: sync v0.1.15 summary to dev (#149)
Obed0101 Jun 20, 2026
9b495a0
docs: expand memory center side agent guidance (#150)
Obed0101 Jun 20, 2026
e184095
fix: apply dream schedule proposals (#152)
Obed0101 Jun 20, 2026
e842d8f
docs: update website domain (#155)
Obed0101 Jun 20, 2026
96cb067
docs: remove personal release examples (#158)
Obed0101 Jun 20, 2026
eb8cab2
feat: add loop workflows and changes review
Obed0101 Jun 23, 2026
4c9a564
docs: add workflow screenshots (#163)
Obed0101 Jun 23, 2026
09a9f8a
fix: harden loop workflows (#165)
Obed0101 Jun 23, 2026
825d9b3
fix: keep loops cursor out of detail rows (#168)
Obed0101 Jun 24, 2026
d8a3920
fix: remove loops dashboard cursor sink (#171)
Obed0101 Jun 24, 2026
650323f
feat(loop): add goal budgets and optimize release ci
Obed0101 Jun 24, 2026
58eadd8
release: prepare v0.1.19 (#176)
Obed0101 Jun 26, 2026
9f49990
release: prepare v0.1.20 (#179)
Obed0101 Jul 27, 2026
69b7761
docs(readme): move branding to top and bottom (#181)
Obed0101 Jul 27, 2026
d30f242
fix: harden release dependencies and binary patches (#184)
Obed0101 Jul 28, 2026
0f99ed8
fix: update release dependency pins (#187)
Obed0101 Jul 28, 2026
47f40d6
docs: sync v0.1.20 changelog metadata (#189)
Obed0101 Jul 28, 2026
c7b27e7
feat: consolidate v0.1.20 TUI and runtime updates
Obed0101 Jul 28, 2026
6ace97a
fix: prevent hidden prompt leakage during questions (#194)
Obed0101 Jul 28, 2026
963afc6
docs: refresh README screenshots
Obed0101 Jul 29, 2026
21ba618
release: prepare v0.1.21
Obed0101 Jul 30, 2026
4e9f59f
fix(upgrade): show patch update notifications by default (#205)
Obed0101 Jul 30, 2026
d4fcff5
sync: carry v0.1.22 release fixes back to dev (#209)
Obed0101 Jul 30, 2026
38d47b5
release: prepare v0.1.23 session reliability update (#210)
Obed0101 Jul 31, 2026
582b0e6
fix(release): validate public help output across platforms (#213)
Obed0101 Jul 31, 2026
0e3abe3
fix(release): make help smoke test platform-independent (#215)
Obed0101 Jul 31, 2026
472e889
fix: harden runtime cleanup and session state (#218)
Obed0101 Aug 1, 2026
3743231
fix: repair compacted session cancellation state (#221)
Obed0101 Aug 1, 2026
5a9c608
fix(upgrade): make in-app updates transport-independent (#224)
Obed0101 Aug 2, 2026
e978f36
release: prepare v0.1.27 TUI reliability update (#226)
Obed0101 Aug 2, 2026
42386a5
feat: add durable workflows and harden background lifecycle (#230)
Obed0101 Aug 4, 2026
1d84441
fix: patch vulnerable release dependencies (#232)
Obed0101 Aug 4, 2026
df86414
fix(installer): skip setup prompt without TTY (#235)
Obed0101 Aug 4, 2026
4135338
fix(installer): make Windows downloads resilient
Obed0101 Aug 4, 2026
18ce846
release: prepare v0.1.29 Windows installer fixes
Obed0101 Aug 4, 2026
005bedf
release: prepare v0.1.30 runtime reliability update (#241)
Obed0101 Aug 5, 2026
0cd8ecf
fix(release): build Windows assets on native architectures (#244)
Obed0101 Aug 5, 2026
2cca2e4
fix(release): harden Windows baseline and long-running TUI state (#246)
Obed0101 Aug 5, 2026
1c371c3
fix(release): finalize v0.1.30 TUI recovery and notes (#249)
Obed0101 Aug 5, 2026
1f3ea62
fix(runtime): harden session and workflow recovery (#252)
Obed0101 Aug 8, 2026
50effea
release: integrate v0.1.30 runtime and TUI improvements (#254)
Obed0101 Aug 18, 2026
fa70a2f
chore(deps): bump dompurify to 3.4.13 (#258)
Obed0101 Aug 18, 2026
a40ca02
fix(deps): synchronize DOMPurify lockfile (#259) (#260)
Obed0101 Aug 18, 2026
7d07d19
fix(deps): patch release dependency vulnerabilities (#261) (#262)
Obed0101 Aug 18, 2026
08a736c
fix: stabilize Mermaid interaction and test isolation (#264)
Obed0101 Aug 18, 2026
5d65f77
release: prepare v0.1.31 Loop and Workflow verification (#266)
Obed0101 Aug 19, 2026
d050452
fix: harden long-running session controls (#269)
Obed0101 Aug 20, 2026
65ee075
fix: ship v0.1.33 reliability hotfix (#271)
Obed0101 Aug 20, 2026
ebe810c
fix: size short reasoning blocks (#274)
Obed0101 Aug 21, 2026
b21289f
fix: preserve v prefix in release names (#277)
Obed0101 Aug 21, 2026
2029d45
release: prepare v0.1.35 (#279)
Obed0101 Aug 22, 2026
d4b4cf1
release: prepare v0.1.36 (#281)
Obed0101 Aug 23, 2026
16e6bee
release: prepare v0.1.37
Obed0101 Aug 24, 2026
57a9f3a
release: prepare v0.1.38 (#288)
Obed0101 Aug 25, 2026
4bf92e3
docs: reorganize navigation and Mermaid fixtures
Obed0101 Aug 25, 2026
93bd6cd
release: prepare v0.1.39
Obed0101 Aug 26, 2026
741fcc2
release: prepare v0.1.40 (#297)
Obed0101 Aug 26, 2026
2cc07aa
🐛 fix(release): ship v0.1.41 session and branding hotfix (#299)
Obed0101 Aug 29, 2026
34129d6
🔒 fix(deps): upgrade pacote to 21.5.1 (#301)
Obed0101 Aug 29, 2026
412283c
fix: prevent deletion of unregistered worktree directories (#304)
Obed0101 Sep 3, 2026
354c63a
release: prepare v0.1.42 (#305)
Obed0101 Sep 3, 2026
f203832
fix: refresh release dependency security pins (#308)
Obed0101 Sep 3, 2026
d2f3899
fix: refresh toml security pin (#310)
Obed0101 Sep 3, 2026
cf6d689
fix: make v0.1.42 release installs reproducible (#311)
Obed0101 Sep 3, 2026
e87414c
fix: verify release attestations one artifact at a time
Obed0101 Sep 4, 2026
9a88189
release: prepare v0.1.43 (#315)
Obed0101 Sep 4, 2026
0d4535c
Prepare v0.1.44-beta.1: updater recovery, channels and opt-in continu…
Obed0101 Sep 5, 2026
baa46f1
fix: let backend database preparation finish before client readiness …
Obed0101 Sep 5, 2026
4d80b13
docs: reconcile stable recovery release with beta guidance (#322)
Obed0101 Sep 5, 2026
995a6a6
Add backend Smart Approval, context diagnostics and confined tool orc…
Obed0101 Sep 6, 2026
081ddb3
Integrate compaction and reliability for experimental beta.4 (#324)
Obed0101 Sep 7, 2026
f8a205b
Fix qs vulnerabilities blocking beta.4 release (#325)
Obed0101 Sep 7, 2026
4e3b991
fix: make repeated Esc cancellation terminal
Obed0101 Sep 9, 2026
4f8e510
fix: unblock beta.5 release dependency scan
Obed0101 Sep 9, 2026
ff31077
fix: unblock loop completion and queued prompt controls
Obed0101 Sep 10, 2026
c940e04
fix: preserve TUI transcript follow during reflow (#331)
Obed0101 Sep 10, 2026
40dc837
fix(installer): tolerate transient Windows executable locks (#333)
Obed0101 Sep 10, 2026
48c5dd0
feat: add passive prompt-cache controls
Obed0101 Sep 11, 2026
06217f8
Release v0.1.44-beta.14 reliability candidate (#336)
Obed0101 Sep 14, 2026
d080b73
Fix prerelease pnpm runtime (#337)
Obed0101 Sep 14, 2026
c9339c7
fix: restore beta database migration compatibility (#339)
Obed0101 Sep 14, 2026
544962f
feat: prepare beta16 memory and provider evolution (#340)
Obed0101 Sep 23, 2026
0d8008c
fix: preserve main schema guard during promotion (#341)
Obed0101 Sep 23, 2026
e3322e4
Merge remote-tracking branch 'origin/main' into codex/beta16-main-pro…
Obed0101 Sep 23, 2026
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
The table of contents is too big for display.
Diff view
Diff view
  •  
  •  
  •  
10 changes: 0 additions & 10 deletions .github/osv-release.toml
Original file line number Diff line number Diff line change
@@ -1,13 +1,3 @@
[[IgnoredVulns]]
id = "GHSA-j965-2qgj-vjmq"
reason = "aws-sdk v2 has no fixed version reported by OSV. It is retained only as a transitive package while release artifacts are built with scripts disabled, SBOM, and provenance attestations."

[[IgnoredVulns]]
id = "GHSA-4mjr-xmp4-gh2g"
ignoreUntil = 2026-09-07
reason = "qs 6.16.0 is the first fixed version but remains inside the enforced seven-day minimum release-age window. Revisit immediately after the hold expires."

[[IgnoredVulns]]
id = "GHSA-x5fp-wj9c-mxmx"
ignoreUntil = 2026-09-07
reason = "qs 6.16.0 is the first fixed version but remains inside the enforced seven-day minimum release-age window. Revisit immediately after the hold expires."
7 changes: 7 additions & 0 deletions .github/workflows/codeql.yml
Original file line number Diff line number Diff line change
Expand Up @@ -48,6 +48,13 @@ jobs:
name: Analyze JavaScript and TypeScript
runs-on: blacksmith-4vcpu-ubuntu-2404
timeout-minutes: 20
# Reuse main's CodeQL database for pull requests and analyze the diff with
# the existing code as context. CodeQL falls back to a full scan when the
# base database, diff ranges, or runner requirements are unavailable.
env:
CODEQL_ACTION_OVERLAY_ANALYSIS: "true"
CODEQL_ACTION_OVERLAY_ANALYSIS_CODE_SCANNING_JAVASCRIPT: "true"
CODEQL_ACTION_DIFF_INFORMED_QUERIES: "true"
steps:
- name: Checkout repository
uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10
Expand Down
74 changes: 74 additions & 0 deletions .github/workflows/runtime-recovery.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,74 @@
name: Runtime and recovery tests

on:
pull_request:
paths:
- "src/mendcode/**"
- ".github/workflows/runtime-recovery.yml"
workflow_dispatch:

permissions:
contents: read

concurrency:
group: runtime-recovery-${{ github.ref }}
cancel-in-progress: true

jobs:
contracts:
name: Linux runtime and recovery contracts
runs-on: ubuntu-latest
timeout-minutes: 20
steps:
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10
with:
persist-credentials: false
- name: Setup pnpm
uses: pnpm/action-setup@b906affcce14559ad1aafd4ab0e942779e9f58b1
with:
version: 11.0.9
- name: Setup Bun
uses: oven-sh/setup-bun@0c5077e51419868618aeaa5fe8019c62421857d6
with:
bun-version-file: src/mendcode/package.json
- name: Install frozen dependencies
working-directory: src/mendcode
run: pnpm --pm-on-fail=ignore install --frozen-lockfile --ignore-scripts
- name: Prepare deterministic test runtime
working-directory: src/mendcode/packages/opencode
run: |
bun run script/fix-node-pty.ts
MODELS_DEV_API_JSON="$PWD/test/tool/fixtures/models-api.json" bun run script/generate.ts
- name: Typecheck
working-directory: src/mendcode
run: bun run --cwd packages/opencode typecheck
- name: Release index contracts
working-directory: src/mendcode
run: node --test script/release-index.test.mjs
- name: Runtime and updater regressions
working-directory: src/mendcode/packages/opencode
shell: bash
run: |
set -euo pipefail
# Some suites replace Bun modules globally. Separate processes keep
# those mocks and the test/preload.ts database roots isolated.
run_test() {
bash -c 'export MENDCODE_DB="${TMPDIR:-/tmp}/opencode-test-data-$$/share/contracts.db"; exec bun test --timeout 30000 "$@"' bash "$@"
}
for test_file in \
test/installation/*.test.ts \
test/storage/compatibility.test.ts test/storage/writer-lease.test.ts test/storage/sql-identifiers.test.ts \
test/mend/code-mode.test.ts test/session/context-profile.test.ts test/session/tool-discovery.test.ts \
test/mend/smart-context.test.ts test/mend/smart-service.test.ts test/mend/smart-approval.test.ts \
test/permission/next.test.ts test/tool/shell-analysis.test.ts \
test/cli/run-attach.test.ts test/cli/upgrade-channel.test.ts test/cli/upgrade-readonly.test.ts \
test/cli/tui/shared-server.test.ts test/cli/tui/thread.test.ts \
test/cli/tui/widgets-runtime.test.tsx test/cli/tui/widgets-tray.test.tsx \
test/cli/tui/agent-command-panel.test.tsx \
test/mend/concurrent-model-policy.test.ts \
test/plugin/auth-override.test.ts \
test/session/continuity.test.ts test/session/session-notes.test.ts test/session/llm.test.ts \
test/server/usage.test.ts test/server/release-channel.test.ts test/server/upgrade-progress.test.ts; do
run_test "$test_file"
done
run_test test/session/prompt.test.ts --test-name-pattern "wakes an async parent by default for a background task"
2 changes: 1 addition & 1 deletion .github/workflows/stable-startup.yml
Original file line number Diff line number Diff line change
Expand Up @@ -33,6 +33,6 @@ jobs:
working-directory: src/mendcode/packages/opencode
run: |
bun run typecheck
for test_file in test/installation/backend-startup.test.ts test/installation/recorded-schema.test.ts test/cli/tui/thread.test.ts test/plugin/auth-override.test.ts; do
for test_file in test/installation/backend-startup.test.ts test/storage/compatibility.test.ts test/cli/tui/thread.test.ts test/plugin/auth-override.test.ts; do
bash -c 'export MENDCODE_DB="${TMPDIR:-/tmp}/opencode-test-data-$$/share/contracts.db"; exec bun test --timeout 30000 "$@"' bash "$test_file"
done
49 changes: 49 additions & 0 deletions .github/workflows/windows-installer.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,49 @@
name: Windows installer contracts

on:
pull_request:
paths:
- "src/mendcode/install.ps1"
- "src/mendcode/script/windows-installer-smoke.ts"
- ".github/workflows/windows-installer.yml"
workflow_dispatch:

permissions:
contents: read

concurrency:
group: windows-installer-${{ github.ref }}
cancel-in-progress: true

jobs:
installer:
runs-on: windows-latest
timeout-minutes: 10
steps:
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10
with:
persist-credentials: false
- uses: oven-sh/setup-bun@0c5077e51419868618aeaa5fe8019c62421857d6
with:
bun-version-file: src/mendcode/package.json
- name: Verify published executable fixture
shell: pwsh
env:
GH_TOKEN: ${{ github.token }}
run: |
$ErrorActionPreference = "Stop"
$fixture = Join-Path $env:RUNNER_TEMP "mendcode-fixture"
gh release download v0.1.43 --repo MendCode/MendCode --pattern mendcode-windows-x64.zip --pattern SHA256SUMS --dir $fixture
if ($LASTEXITCODE -ne 0) { throw "Fixture download failed" }
$archive = Join-Path $fixture "mendcode-windows-x64.zip"
gh attestation verify $archive --repo MendCode/MendCode --signer-workflow MendCode/MendCode/.github/workflows/release.yml --deny-self-hosted-runners
if ($LASTEXITCODE -ne 0) { throw "Fixture provenance failed" }
Expand-Archive -LiteralPath $archive -DestinationPath (Join-Path $fixture "bin")
"MENDCODE_INSTALLER_TEST_BINARY=$(Join-Path $fixture 'bin/mendcode.exe')" >> $env:GITHUB_ENV
"MENDCODE_VERSION=0.1.43" >> $env:GITHUB_ENV
- name: Exercise current installer with verified fixture
working-directory: src/mendcode
shell: pwsh
run: |
bun run script/windows-installer-smoke.ts
if ($LASTEXITCODE -ne 0) { throw "Windows installer contract failed" }
Loading
Loading