NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Go modules · #280 by repository stars
Last release today
02 Oct 2026
Ships on a steady schedule
a new release about every 8 days
Nearly every release is documented
notes for 59 of the last 60 stable releases
85 versions withdrawn
withdrawn after publishing
10 years old
4340 releases · first in 2016
Nothing published for this version
Nothing published for this version
Nothing published for this version
One column per quarter.
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
opa test: removing deprecated code for --show-failure-line (-l), authored by @damienjburks
This release contains a number of fixes and enhancements.
This is the first release that includes a binary and a docker image for
linux/arm64, opa_linux_arm64_static and openpolicyagent/opa:0.37.0-static.
Thanks to @ngraef for contributing the build changes necessary.
There have been numerous possible checks in the compiler that fall into this category:
We've thus far refrained from introducing them. Now, a new "strict mode" allows you to opt-in to these checks, and we encourage you to do so!
With OPA 1.0, they will become the new default behaviour.
For more details, see the docs on Compiler Strict Mode.
Delta bundles provide a more efficient way to make data changes by containing patches to data instead of snapshots. Using them together with HTTP Long Polling, you can propagate small changes to bundles without waiting for polling delays.
See the documentation for more details.
Bundles bug fix: Roundtrip manifest before hashing to allow changing the manifest and still using signature verification of bundles (#4233), reported by @CristianJena
The test runner now also supports custom builtins, when invoked through the Golang interface (authored by @MIA-Deltat1995)
The compile package and the opa build command support a new output format: "plan".
It represents a query plan, steps needed to take to evaluate a query (with policies).
The plan format is a JSON encoding of the intermediate representation (IR) used for
compiling queries and policies into Wasm.
When calling opa build -t plan ..., the plan can be found in plan.json at the top-
level directory of the resulting bundle.tar.gz.
See the documentation for details..
Compiler+Bundles: Metadata to be added to a bundle's manifest can now be provided via WithMetadata
(#4289), authored by @marensws, reported by @johanneslarsson
Plugins: failures in auth plugin resolution are now output, previously panicked, authored by @jcchavezs
Plugins: Fix error when initializing empty decision logging or status plugin (#4291)
Bundles: Persisted bundle activation failures are treated like failures with non-persisted bundles (#3840), reported by @dsoguet
Server: http.send caching now works in system policy system.authz (#3946),
reported by @amrap030.
Runtime: Apply credentials masking on opa.runtime().config (#4159)
opa test: removing deprecated code for --show-failure-line (-l), authored by @damienjburks
opa eval: add description to all output formats
opa inspect: unhide command for bundle inspection
Built-in function enhancements and fixes:
object.union_n: New built-in for creating the union of more than two objects (#4012),
reported by @eliw00dgraph.reachable_paths: New built-in to calculate the set of reachable paths in a graph (authored by @justinlindh-wf)indexof_n: New built-in function to get all the indexes of a specific substring (or character) from a string (authored by @shuheiktgw)indexof: Improved performance (authored by @shuheiktgw)object.get: Support nested key array for deeper lookups with default (authored by @charlieegan3)json.is_valid: Use Golang's json.Valid to avoid unnecessary allocations (authored by @kristiansvalland)Strict-mode features:
any() and all() built-in functions (#2437)input and data reserved keywords (#2600) reported by @jpeachMiscellaneous fixes and enhancements:
format: don't group iterable when one has defaulted locationtopdown: ability to retrieve input and plug bindings in the Event, authored by @istalker2print() built-in: fix bug when used with with modifier and a function call value (#4227)ast: don't error when future keyword import is redundant during parsingjson.is_valid built-in function
(#4140), authored by @kristiansvallandlogging: Remove logger GetFields function (#4114),
authored by @viovanovmake test: fix "too many open files" issue on Mac OSThis release includes a number of documentation fixes. It also includes the experimental binary for darwin/arm64.
This release includes a number of documentation fixes. It also includes the experimental binary for darwin/arm64.
There are no code changes.
tls-cert-refresh-period, authored by @mattmahnNothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →