Commit Graph

  • 2a11c09a8d fix: harden iMessage echo dedupe and reasoning suppression (#25897) Peter Steinberger 2026-02-25 00:43:44 +00:00
  • a9ce6bd79b refactor: dedupe exec wrapper denial plan and test setup Peter Steinberger 2026-02-25 00:43:19 +00:00
  • 943b8f171a fix: align windows safe-open file identity checks Peter Steinberger 2026-02-25 00:32:30 +00:00
  • 7455ceecf8 fix(windows): skip unreliable dev comparison in fs-safe openVerifiedLocalFile shenghui kevin 2026-02-24 10:58:39 -08:00
  • 3c95f89662 refactor(exec): split system.run phases and align ts/swift validator contracts Peter Steinberger 2026-02-25 00:29:43 +00:00
  • b0f392580b docs(changelog): remove next-release shipping sentence Peter Steinberger 2026-02-25 00:10:29 +00:00
  • a1a6235c66 test: bridge discord voice private casts via unknown Peter Steinberger 2026-02-25 00:31:17 +00:00
  • ee6fec36eb docs(discord): document DAVE defaults and decrypt recovery Peter Steinberger 2026-02-25 00:28:02 +00:00
  • ce1dbeb986 fix(macos): clean warnings and harden gateway/talk config parsing Peter Steinberger 2026-02-25 00:27:31 +00:00
  • 9cd50c51b0 fix(discord): harden voice DAVE receive reliability (#25861) Peter Steinberger 2026-02-25 00:19:36 +00:00
  • 1839ba8ccb Changelog: note allowlist stale-catalog model selection fix Vincent Koc 2026-02-24 19:08:15 -05:00
  • 5509bf2c75 Gateway tests: include synthetic allowlist models in models.list Vincent Koc 2026-02-24 19:08:09 -05:00
  • f7cf3d0dad Gateway tests: accept allowlisted refs absent from catalog Vincent Koc 2026-02-24 19:08:04 -05:00
  • f34325ec01 Tests: cover allowlist refs missing from catalog Vincent Koc 2026-02-24 19:07:56 -05:00
  • e9068e2571 Agents: trust explicit allowlist refs beyond catalog Vincent Koc 2026-02-24 19:07:51 -05:00
  • 16b228e4a6 fix(macos): resolve webchat panel corner clipping (#22458) Peter Steinberger 2026-02-25 00:14:51 +00:00
  • 57c9a18180 fix(security): block env depth-overflow approval bypass Peter Steinberger 2026-02-25 00:13:33 +00:00
  • 1970a1e9e5 fix(macos): keep Return for IME marked text commit (#25178) Peter Steinberger 2026-02-25 00:14:00 +00:00
  • 11a0495d5f fix(macos): default voice wake forwarding to webchat (#25440) Peter Steinberger 2026-02-25 00:12:39 +00:00
  • 30082c9af1 Update CHANGELOG.md Vincent Koc 2026-02-24 19:11:47 -05:00
  • 99dd3448e8 Changelog: remove unrelated session entries from PR Vincent Koc 2026-02-24 18:53:19 -05:00
  • 1cb14fcf1c Changelog: note OpenRouter cooldown bypass Vincent Koc 2026-02-24 18:47:15 -05:00
  • aee38c42d3 Tests: preserve OpenRouter explicit auth order under cooldown fields Vincent Koc 2026-02-24 18:46:04 -05:00
  • 06f0b4a193 Tests: keep OpenRouter runnable with legacy cooldown markers Vincent Koc 2026-02-24 18:45:57 -05:00
  • ebc8c4b609 Tests: skip OpenRouter failure cooldown persistence Vincent Koc 2026-02-24 18:45:53 -05:00
  • 5de04960a0 Tests: cover OpenRouter cooldown display bypass Vincent Koc 2026-02-24 18:45:45 -05:00
  • f1d5c1a31f Auth: use cooldown helper in explicit profile order Vincent Koc 2026-02-24 18:45:38 -05:00
  • daa4f34ce8 Auth: bypass cooldown tracking for OpenRouter Vincent Koc 2026-02-24 18:45:29 -05:00
  • 31e6d18538 fix(macos): prefer openclaw binary while keeping pnpm fallback (#25512) Peter Steinberger 2026-02-25 00:11:53 +00:00
  • 236b22b6a2 fix(macos): guard voice audio paths with no input device (#25817) Peter Steinberger 2026-02-25 00:09:57 +00:00
  • e11e510f5b docs(changelog): add reporter credit for exec companion hardening Peter Steinberger 2026-02-25 00:06:07 +00:00
  • 97e56cb73c fix(discord): land proxy/media/reaction/model-picker regressions Peter Steinberger 2026-02-25 00:03:21 +00:00
  • 55cf92578d fix(security): harden system.run companion command binding Peter Steinberger 2026-02-25 00:01:53 +00:00
  • 8680240f7e docs(changelog): backfill landed fix PR entries Peter Steinberger 2026-02-24 23:58:53 +00:00
  • b7deb062ea fix: normalize "bedrock" provider ID to "amazon-bedrock" Fred White 2026-02-24 00:03:00 -05:00
  • b3e6653503 fix(onboard): avoid false 'telegram plugin not available' block suko 2026-02-24 21:56:49 +01:00
  • b0bb3cca8a test(types): fix ts narrowing regressions in followup and matrix queue tests Peter Steinberger 2026-02-24 23:54:45 +00:00
  • e22a2d77ba fix(whatsapp): stop retry loop on non-retryable 440 close Mark Musson 2026-02-24 19:28:47 +00:00
  • def993dbd8 refactor(tmp): harden temp boundary guardrails Peter Steinberger 2026-02-24 23:51:01 +00:00
  • de586373e0 Changelog: note exact do not do that stop trigger Vincent Koc 2026-02-24 18:49:37 -05:00
  • cc386f4962 Telegram tests: route exact do not do that to control lane Vincent Koc 2026-02-24 18:49:29 -05:00
  • 83f586b93b Gateway tests: cover exact do not do that stop matching Vincent Koc 2026-02-24 18:49:20 -05:00
  • 91391bbe01 Auto-reply tests: assert exact do not do that behavior Vincent Koc 2026-02-24 18:49:11 -05:00
  • 7bb08ba945 Auto-reply: add exact stop trigger for do not do that Vincent Koc 2026-02-24 18:49:03 -05:00
  • a3c4f56b0b security(voice-call): detect Telnyx webhook replay Brian Mendonca 2026-02-24 14:42:00 -07:00
  • 53f9b7d4e7 fix(automation): harden announce delivery + cron coding profile (#25813 #25821 #25822) Peter Steinberger 2026-02-24 23:48:49 +00:00
  • 36d1e1dcff refactor(telegram): simplify DM media auth precheck flow Peter Steinberger 2026-02-24 23:49:05 +00:00
  • 316fad13aa refactor(outbound): unify attachment hydration flow Peter Steinberger 2026-02-24 23:48:31 +00:00
  • 9924f7c84e fix(security): classify hook sessions case-insensitively Brian Mendonca 2026-02-24 12:33:35 -07:00
  • 43a3ff3beb Changelog: add entry for exec env sanitization Brian Mendonca 2026-02-24 12:11:16 -07:00
  • 48b052322b Security: sanitize inherited host exec env Brian Mendonca 2026-02-24 12:09:42 -07:00
  • 9514201fb9 fix(telegram): block unauthorized DM media downloads Peter Steinberger 2026-02-24 23:43:37 +00:00
  • 5a64f6d766 Gateway/Security: protect /api/channels plugin root Brian Mendonca 2026-02-24 12:14:35 -07:00
  • 453664f09d refactor(zalo): split monitor access and webhook logic Peter Steinberger 2026-02-24 23:40:21 +00:00
  • 58309fd8d9 refactor(matrix,tests): extract helpers and inject send-queue timing Peter Steinberger 2026-02-24 23:37:45 +00:00
  • a2529c25ff test(matrix,discord,sandbox): expand breakage regression coverage Peter Steinberger 2026-02-24 23:33:02 +00:00
  • 13a1c46396 fix(web-search): reduce provider auto-detect log noise Peter Steinberger 2026-02-24 23:32:13 +00:00
  • 79a7b3d22e test(line): align tmp-root expectation after sandbox hardening Peter Steinberger 2026-02-24 23:31:15 +00:00
  • 79e2328935 docs: update changelog for safe-bin hardening Peter Steinberger 2026-02-24 23:30:43 +00:00
  • b4010a0b62 fix(zalo): enforce group sender policy in groups Peter Steinberger 2026-02-24 23:30:05 +00:00
  • 4355e08262 refactor: harden safe-bin trusted dir diagnostics Peter Steinberger 2026-02-24 23:29:12 +00:00
  • 5c2a483375 refactor(outbound): centralize attachment media policy Peter Steinberger 2026-02-24 23:28:46 +00:00
  • 54648a9cf1 refactor: centralize followup origin routing helpers Peter Steinberger 2026-02-24 23:28:26 +00:00
  • 9b53102100 test: add routing/session isolation edge-case regressions Peter Steinberger 2026-02-24 23:24:51 +00:00
  • 9fccf60733 refactor(synology-chat): centralize DM auth and fail fast startup Peter Steinberger 2026-02-24 23:28:24 +00:00
  • e7a5f9f4d8 fix(channels,sandbox): land hard breakage cluster from reviewed PR bases Peter Steinberger 2026-02-24 23:27:12 +00:00
  • 5552f9073f refactor(sandbox): centralize network mode policy helpers Peter Steinberger 2026-02-24 23:26:46 +00:00
  • 14b6eea6e3 feat(sandbox): block container namespace joins by default Peter Steinberger 2026-02-24 23:19:48 +00:00
  • ccbeb332e0 fix: harden routing/session isolation for followups and heartbeat Peter Steinberger 2026-02-24 23:13:51 +00:00
  • 7655c0cb3a docs(changelog): add synology-chat allowlist fail-closed note Peter Steinberger 2026-02-24 23:17:58 +00:00
  • 0ee30361b8 fix(synology-chat): fail closed empty allowlist Peter Steinberger 2026-02-24 22:55:03 +00:00
  • 270ab03e37 fix: enforce local media root checks for attachment hydration Peter Steinberger 2026-02-24 23:16:59 +00:00
  • b67e600bff fix(security): restrict default safe-bin trusted dirs Peter Steinberger 2026-02-24 23:12:52 +00:00
  • 2d159e5e87 docs(security): document openclaw temp-folder boundary Peter Steinberger 2026-02-24 23:11:19 +00:00
  • d3da67c7a9 fix(security): lock sandbox tmp media paths to openclaw roots Peter Steinberger 2026-02-24 23:09:34 +00:00
  • bf8ca07deb fix(config): soften antigravity removal fallout (#25538) Peter Steinberger 2026-02-24 23:02:45 +00:00
  • 039ae0b77c chore: refresh lockfile after plugin devDependency cleanup Shakker 2026-02-24 22:50:47 +00:00
  • 955cc9029f chore: sync plugin versions to 2026.2.24 Shakker 2026-02-24 22:44:57 +00:00
  • f4e6f87303 refactor(ios): drop legacy talk payload and keychain fallbacks Peter Steinberger 2026-02-24 22:38:47 +00:00
  • 853f75592f changelog: include #25847 in chat image safety entry (#25847) (thanks @shakkernerd) Shakker 2026-02-24 22:17:34 +00:00
  • 30cb849b10 test(ui): reject base64 SVG data URLs Shakker 2026-02-24 22:00:56 +00:00
  • e7298b844f changelog: credit both chat-image fix contributors Shakker 2026-02-24 21:45:53 +00:00
  • e9750104b2 ui: block svg data image opens and harden tests Shakker 2026-02-24 14:50:04 +00:00
  • 9ef0fc2ff8 fix(sandbox): block @-prefixed workspace path bypass Peter Steinberger 2026-02-24 17:22:46 +00:00
  • f154926cc0 fix: land telegram empty-html fallback hardening (#25096) (thanks @Glucksberg) Ayaan Zaidi 2026-02-24 22:33:08 +05:30
  • 6e31bca198 fix(telegram): fail loud on empty text fallback Ayaan Zaidi 2026-02-24 22:23:17 +05:30
  • 566a8e7137 chore(telegram): suppress handled empty-text retry logs Glucksberg 2026-02-24 05:49:19 +00:00
  • 51b3e23680 fix(telegram): fallback to plain text when threaded markdown renders empty Glucksberg 2026-02-15 00:45:49 +00:00
  • 00de3ca833 fix: widen external link rel token set type Ayaan Zaidi 2026-02-24 22:15:42 +05:30
  • 8892a1cd45 refactor(android-ui): unify gateway config resolution paths Ayaan Zaidi 2026-02-24 22:11:11 +05:30
  • 7a74cf34ba fix(android-security): remove token-derived logging from prefs Ayaan Zaidi 2026-02-24 22:11:07 +05:30
  • 8b24830e07 fix(android-gateway): avoid token clear on transient connect failure Ayaan Zaidi 2026-02-24 22:11:04 +05:30
  • e11e329238 refactor(android-chat): move thread selector above composer Ayaan Zaidi 2026-02-24 21:57:58 +05:30
  • 75f145ebcc docs(android): document alpha rebuild status and feature checklist Ayaan Zaidi 2026-02-24 21:53:27 +05:30
  • baf98a87f6 refactor(android-settings): remove gateway controls duplicated in connect Ayaan Zaidi 2026-02-24 21:43:59 +05:30
  • bb27884474 feat(android-tabs): add coming-soon voice and screen tabs Ayaan Zaidi 2026-02-24 21:43:56 +05:30
  • 94f426b29e fix(android-nav): hide tab bar while keyboard is open Ayaan Zaidi 2026-02-24 21:36:58 +05:30
  • 577c554150 style(android-chat): redesign composer controls and actions Ayaan Zaidi 2026-02-24 21:34:15 +05:30
  • 81ff074a51 style(android-chat): align bubbles and markdown with RN Ayaan Zaidi 2026-02-24 21:34:12 +05:30
  • b658000bf7 style(android-chat): refine thread shell and empty states Ayaan Zaidi 2026-02-24 21:34:08 +05:30