NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Go modules · #82 by repository stars
Last release 2 days ago
30 Sep 2026
Ships on a steady schedule
a new release about every 8 days
Most releases are documented
notes for 36 of 42 stable releases
Nothing withdrawn
no release was ever pulled
1 years old
1554 releases · first in 2025
One column per month.
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
fix(tenant): clear stale home tenant after member removal by @jiahao6635 in #2589
Note truncated.
shell_exec, file read/write/edit, attachment staging, and generated-file collection all landing in the same workspace. Three backends share one RemoteSandboxClient protocol: Docker (single-host / self-hosted, talking to the Engine API rather than docker run --rm), E2B (cloud or any E2B-compatible control plane, including self-hosted), and CubeSandbox. Per-workspace configs cover image, CPU/memory, TTL, DNS, templates and snapshots (migrations 000082_tenant_sandbox_config, 000083_session_sandbox_config). Admins can set a network policy per config (default-deny egress, allow/deny lists, Cube L7 rules, E2B host rules) (#2995). The old Local host-process backend is removed. The Docker backend is opt-in (WEKNORA_SANDBOX_DOCKER_ENABLED or System Settings → Network Security) because a mounted docker.sock is host root (#2936). See Sandbox deployment and troubleshooting.000086_tenant_skills, 000087_skill_install_transcript, 000088_skill_snapshot_planned_name, 000090_skill_catalog). Install from ClawHub, SkillHub / skills.sh, GitHub/GitLab URLs, or a zip upload; each install is a snapshot on the chosen sandbox config, with live circular progress, install transcripts, stop/reinstall, and uninstall that keeps catalog archives. Browse and edit installed skill files from Settings; agents get write_skill_file / edit_skill_file plus shell_exec that no longer requires a skill to be installed. Personal and workspace skill env vars inject at execution without ever being read back (migration 000089_env_vars). @mention no longer silently shrinks the skill whitelist.000084_memory), independent of the Neo4j conversation-memory that 0.7.1 removed. Workspaces opt in; each user can further turn it off. Memories are typed (profile / preference / fact / task / interest), written either explicitly or by a background extractor, and inferred items stay pending until the user confirms. Resident profile/preference blocks ride in every turn; situational facts are recalled lexically and (optionally) semantically; search_memory looks up on demand. Document affinity conditions retrieval toward sources the user keeps citing. Settings, items, topics, document affinity, confirm/reject, export and forced consolidation are exposed as /api/v1/memory/* (full-access API keys only; the subject is always the caller).third_party/anydoc-go, without a round-trip to docreader. When the binding is linked, anydoc is preferred for every type it converts; PPT/PPTX still default to MarkItDown when no engine rule is set. The app image links anydoc by default.@wxg-prc-cpg/dsh-weknora exposes four read-only tools (weknora_search, weknora_read_document, weknora_ask, weknora_list_knowledge_bases) so a DeepSeek Harness coding agent can retrieve from a WeKnora deployment (#2759)..xmind files are parsed into an outline and indexed like other documents (#2713).000081_message_artifacts) with download and a pulse on the folder when new files arrive; long overflowing sessions get a Codex-style question outline / minimap (#2839); messages show timestamps as conversation-flow dividers.000080_knowledge_base_auto_tag_config).000085_message_usage)./auth/oidc/start — ID tokens are signature-verified via JWKS (#2799); a direct 302 start endpoint supports login without a pre-rendered SPA handshake.WEKNORA_AUTH_COMPLEX_PASSWORD_ENABLED / system setting) (#2929).shell_exec, file ops, artifact bootstrap) run as the sandbox user (uid 1000), not root; symlink-following chown/file ops that could escape the workspace are closed; zombie processes from cancelled execs are reaped; in-use snapshot deletes retry as conflicts; idle sandboxes detach and sweep; skill image pointers stay out of config PUT.@owner/slug and skills.sh catalog pages, GitHub subtree counting, and sandbox uninstall moved into the manage-drawer header.shell_exec renders as a command + stream card; sandbox file lists and skill names show on tool cards; generated-files drawer restyled to match settings lists; Mermaid diagrams stay rendered while streaming; message timestamps align with persisted created_at.resource_urls=public; MatchCount=0 no longer truncates every result; parent-child embeddings survive chunking; deleted images in a chunk are no longer retrieved.SwitchTenant records last-active-tenant preference; self-service change password in the profile; folder drag-and-drop upload preserves directory structure; document download action; editable document summaries; paginated document chunks; FAQ batch actions restored.GET /system/capabilities), so Lite / trimmed builds stop advertising missing features (#2674).@mention no longer narrows the skill whitelist.nginx-api-proxy.conf is included in the UI image build, restoring API proxying in the frontend container.docker-compose image no longer fails the default security check (#2704); S3-compatible endpoints disable optional checksums; MinerU results resolve by upload filename stem and preserve the extension.MaxTokens.doc_count=0 in agent runtime_context; data-source deletion sync is scoped per connector and actually persisted.DEFAULT_LOCALE.WEKNORA_SANDBOX_DOCKER_ENABLED=true.000080–000090 (auto-tag, message artifacts, tenant/session sandbox config, memory, message usage, tenant skills, install transcript, snapshot planned name, env vars, skill catalog); matching SQLite migrations 000003–000012.internal/sandbox remote-client stack (Docker Engine API, E2B, Cube), internal/agent/compaction, internal/application/service/memory, internal/ipclass (shared SSRF + sandbox URL classification), third_party/anydoc-go.wechatopenai/weknora-sandbox image; Docker backend requires appuser in the docker.sock group inside the app container.docs/sandbox-*.md; skill env-var surface documented in docs/api/skill.md; long-term memory in docs/api/memory.md.docs/QA.md extended for Docker opt-in, Local-backend removal, skill catalog, long-term memory, anydoc, and OIDC JWKS.Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →