NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Go modules · #831 by repository stars
Last release 7 days ago
01 Oct 2026
Ships fairly regularly
a new release about every 2 weeks
Rarely documented
notes for 13 of 55 stable releases
Nothing withdrawn
no release was ever pulled
6 months old
65 releases · first in 2026
One column per month.
bd1a325 fix(docs): vulnerability disclosure reporting
aadf416 to 2d984a1 (#393)# Verify checksum (portable across macOS and Linux)
shasum -a 256 --ignore-missing -c checksums.txt
# Verify signature (requires cosign v2+)
cosign verify-blob \
--bundle checksums.txt.sig \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
checksums.txt
# Verify Docker image signature (requires cosign)
cosign verify infisical/agent-vault:0.40.0 \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com"Nothing published for this version
e9515fe chore(web): patch nanoid advisory and split framework into vendor chunks
# Verify checksum (portable across macOS and Linux)
shasum -a 256 --ignore-missing -c checksums.txt
# Verify signature (requires cosign v2+)
cosign verify-blob \
--bundle checksums.txt.sig \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
checksums.txt
# Verify Docker image signature (requires cosign)
cosign verify infisical/agent-vault:0.39.3 \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com"c856888 chore(ci): correct golangci-lint-action version comment
e88a35b to aadf416 (#369)# Verify checksum (portable across macOS and Linux)
shasum -a 256 --ignore-missing -c checksums.txt
# Verify signature (requires cosign v2+)
cosign verify-blob \
--bundle checksums.txt.sig \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
checksums.txt
# Verify Docker image signature (requires cosign)
cosign verify infisical/agent-vault:0.39.2 \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com"795e19a Fix punctuation in master password documentation
3ad34ca to e88a35b (#280)# Verify checksum (portable across macOS and Linux)
shasum -a 256 --ignore-missing -c checksums.txt
# Verify signature (requires cosign v2+)
cosign verify-blob \
--bundle checksums.txt.sig \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
checksums.txt
# Verify Docker image signature (requires cosign)
cosign verify infisical/agent-vault:0.39.1 \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com"Nothing published for this version
Nothing published for this version
3bd0c1e feat: add Pi, Devin, Windsurf, Cline, and Roo Code to knownAgents
# Verify checksum (portable across macOS and Linux)
shasum -a 256 --ignore-missing -c checksums.txt
# Verify signature (requires cosign v2+)
cosign verify-blob \
--bundle checksums.txt.sig \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
checksums.txt
# Verify Docker image signature (requires cosign)
cosign verify infisical/agent-vault:0.39.0 \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com"3e4f57d feat: allow users to remove themselves from a vault
# Verify checksum (portable across macOS and Linux)
shasum -a 256 --ignore-missing -c checksums.txt
# Verify signature (requires cosign v2+)
cosign verify-blob \
--bundle checksums.txt.sig \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
checksums.txt
# Verify Docker image signature (requires cosign)
cosign verify infisical/agent-vault:0.38.0 \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com"Nothing published for this version
102206d feat: add database_backend to server-start telemetry
# Verify checksum (portable across macOS and Linux)
shasum -a 256 --ignore-missing -c checksums.txt
# Verify signature (requires cosign v2+)
cosign verify-blob \
--bundle checksums.txt.sig \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
checksums.txt
# Verify Docker image signature (requires cosign)
cosign verify infisical/agent-vault:0.37.1 \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com"cedd958 docs(slack-template): add slack agent template example
# Verify checksum (portable across macOS and Linux)
shasum -a 256 --ignore-missing -c checksums.txt
# Verify signature (requires cosign v2+)
cosign verify-blob \
--bundle checksums.txt.sig \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
checksums.txt
# Verify Docker image signature (requires cosign)
cosign verify infisical/agent-vault:0.37.0 \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com"1a44036 fix: include substitution keys in credential-usage checks
# Verify checksum (portable across macOS and Linux)
shasum -a 256 --ignore-missing -c checksums.txt
# Verify signature (requires cosign v2+)
cosign verify-blob \
--bundle checksums.txt.sig \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
checksums.txt
# Verify Docker image signature (requires cosign)
cosign verify infisical/agent-vault:0.36.1 \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com"c17d1a1 feat: add anonymous usage telemetry
# Verify checksum (portable across macOS and Linux)
shasum -a 256 --ignore-missing -c checksums.txt
# Verify signature (requires cosign v2+)
cosign verify-blob \
--bundle checksums.txt.sig \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
checksums.txt
# Verify Docker image signature (requires cosign)
cosign verify infisical/agent-vault:0.36.0 \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com"30ff25c fix(broker): resolve dynamic secrets through the MITM proxy
# Verify checksum (portable across macOS and Linux)
shasum -a 256 --ignore-missing -c checksums.txt
# Verify signature (requires cosign v2+)
cosign verify-blob \
--bundle checksums.txt.sig \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
checksums.txt
# Verify Docker image signature (requires cosign)
cosign verify infisical/agent-vault:0.35.1 \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com"8f0d57f deps: bump @tanstack/react-router from 1.170.10 to 1.170.15 in /web
144769e to 3ad34ca (#264)79723b4 to 3fe807a in /internal/isolation/assets (#261)7c6af15 to 144769e (#241)e89172f to 79723b4 in /internal/isolation/assets (#239)# Verify checksum (portable across macOS and Linux)
shasum -a 256 --ignore-missing -c checksums.txt
# Verify signature (requires cosign v2+)
cosign verify-blob \
--bundle checksums.txt.sig \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
checksums.txt
# Verify Docker image signature (requires cosign)
cosign verify infisical/agent-vault:0.35.0 \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com"543bb06 feat(web): move vault settings editing into a side drawer
# Verify checksum (portable across macOS and Linux)
shasum -a 256 --ignore-missing -c checksums.txt
# Verify signature (requires cosign v2+)
cosign verify-blob \
--bundle checksums.txt.sig \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
checksums.txt
# Verify Docker image signature (requires cosign)
cosign verify infisical/agent-vault:0.34.0 \
--certificate-identity-regexp "^https://github\.com/Infisical/agent-vault/\.github/workflows/release\.yml@refs/tags/" \
--certificate-oidc-issuer "https://token.actions.githubusercontent.com"Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →