2026-05-17v0.9.7
F-12 P2 production fail-closed shipped
Eval-judge connectivity failures in production now fail closed rather than silently passing the turn. Codex full-architecture audit's P2 finding cleared. Every production turn either has a verdict or a deliberate exception.
ReliabilityAudit
2026-05-16v0.9.6
SQLCipher enterprise default landed
Encryption-at-rest for the local SQLite store via SQLCipher is now the default build path. Four-PR sequence verified, key-derivation hardened, and migration tooling carries existing tenants forward without dump-and-reload.
SecurityReliability
2026-05-15v0.9.5
Audit track 10 of 11 merged
Forensic-grade audit chain is now wired through ten of the eleven primitives — every action, every approval, every escalation lands in the chain with teammate, tenant, capability, cost, and latency attached. The eleventh (computer-use macOS) lands with the v1 demo cut.
AuditReliability
2026-05-14v0.9.4
Slack approval ship-gate smoke passing
End-to-end smoke test for the Slack approval flow now green in CI: teammate proposes → Slack message → human approves → action ships → audit row written. The full happy path runs in under twelve seconds on a cold start.
ConnectorsAuditDemo
2026-05-13v0.9.3
Mission claim 3 cost-tier proven
Cost-tier routing — cheap drafts on Haiku, escalate to Sonnet on hard turns, audit the cost delta — is now proven on a live mission. Median per-task cost dropped 38% with no measurable quality regression.
ReliabilityOps
2026-05-13v0.9.2
Kill-switch shipped
One-tap freeze for any teammate, cohort, or tenant. Stops all in-flight turns, halts approvals, and writes a kill row to the audit chain. The 'something is going wrong, stop everything' button is now real.
SecurityOpsAudit