NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Go modules · #1352 by repository stars
Last release today
07 Oct 2026
Ships fairly regularly
a new release about every 8 days
Nearly every release is documented
notes for 59 of the last 60 stable releases
Nothing withdrawn
no release was ever pulled
5 months old
205 releases · first in 2026
One column per month.
Nothing published for this version
Start cached Cloudflare containers in about 1–2 seconds, then checkpoint and fork them. Native container execution speeds up startup, while checkpoint
tiny leases request 40 GB; a live lease reported a 38 GB root filesystem. PR 2668, PR 2704, PR 2714.--os windows-server:2022|2025 selects the server version explicitly. PR 2721, PR 2722, PR 2720, Issue 2716, Issue 2715, Issue 2717. Thanks @saftall.crabbox cleanup to retire old claims and delete the six legacy container applications as described in the Cloudflare upgrade guide. --type basic now maps to the higher-cost standard-1 with a warning; --type lite is rejected because the bundled image cannot start on it. PR 2625. Thanks @altaywtf.openclaw/agent-skills; the repository no longer carries its own executable helper. Existing copy-mode consumers should reinstall to receive updates. PR 2663. Thanks @vincentkoc.--os windows-server:2022 or windows-server:2025 (also os / CRABBOX_OS) in direct and brokered mode; the default remains Server 2022 and promoted Windows AMIs still win without a Windows selector. PR 2720. Issue 2717. Thanks @saftall.crabbox checkpoint create captures a running Cloudflare lease as a cloudflare-container-snapshot in about 8 seconds, and checkpoint fork starts new leases from it in seconds, retrying while a fresh snapshot propagates. Delegated-run providers can now implement native checkpoints through DelegatedCheckpointBackend. Cloudflare has no snapshot delete API; snapshots expire after 30 days and checkpoint delete --local-only removes the record. Cloudflare lease commands keep using the runner URL and workdir the lease was created with, and a create or fork whose runner response is lost keeps its claim so status and stop can still reach the container. Stopping a lease while it starts keeps it stopped; unresolved creates retain cleanup custody regardless of elapsed time or a temporary stopped status during snapshot retries, and retries reuse containers already started by concurrent requests. PR 2713, PR 2626. Thanks @altaywtf.openclaw/agent-skills; repository entrypoints receive upstream fixes without copied helpers or tests. PR 2663. Thanks @vincentkoc.tiny instead of 400 GB): the promoted eu-west-1 developer image was rebaked from stock Ubuntu with a 32 GB root. PR 2668, PR 2704, PR 2714.cloudflare runner moves to the Containers durable_object scheduling policy: one Durable Object class starts each lease's image and instance type through ctx.container, commands and uploads use native exec(), and the in-container Go runner, six per-type classes, and max_instances: 4 cap are gone. --type basic now uses standard-1 with a warning, --type lite is rejected because the bundled image cannot start on it, --cloudflare-image selects a named runner image, canceled commands stop their process group, and a lease whose container stops ends instead of continuing in an empty workspace. Upgrading is a one-time cutover: stop kept leases first, because redeploying deletes the old classes' Durable Object state. PR 2625. Thanks @altaywtf.run --id tbx_... and stop read only the exact claim file instead of scanning every local claim. PR 2719.fixed-lease-id support in the provider catalog and enforce capability parity across registered backends. PR 2702.Nothing published for this version
Retry cloud allocations with the same lease ID. RunPod, Scaleway, and Linode now support fixed idempotent lease IDs, and the provider catalog advertis
standard defaults below before upgrading. PR 2676.standard class now selects larger, higher-cost machines: DigitalOcean s-1vcpu-1gb → s-4vcpu-8gb, Scaleway DEV1-S → DEV1-L, and Linode g6-standard-1 → g6-standard-4. Keep the old size with --type <old type> or class: tiny; explicitly configured native types still take precedence. PR 2676.claims.autoPrune: false or CRABBOX_CLAIMS_AUTO_PRUNE=false to retain them; recovery claims and provider resources remain protected. PR 2685.--slug values retain their existing behavior. Ambiguous stop/release slugs now require an exact lease ID. PR 2685.fixed-lease-id support in the provider catalog so fixed-lease orchestrators can preflight caller-supplied lease IDs. PR 2674.claims prune and resumable daily maintenance after successful stop/release for providers with proven remote expiry bounds (E2B, and Blacksmith Testbox past GitHub's 35-day run cap); preserve recovery claims, concurrent updates, and provider resources, with claims.autoPrune / CRABBOX_CLAIMS_AUTO_PRUNE opt-out. PR 2685.linux_root_gb, keeping candidate, baseline, and promoted proofs on normal sizing. PR 2668.--class select real machine sizes on DigitalOcean, Scaleway, and Linode, with CPU/RAM profiles and explicit type overrides preserved. The standard class mapping increases size and cost (DigitalOcean s-1vcpu-1gb → s-4vcpu-8gb, Scaleway DEV1-S → DEV1-L, Linode g6-standard-1 → g6-standard-4); keep the old size with --type <old type> or class: tiny. PR 2676.capacity, and identify fleet limits in allocation errors. PR 2679.status --wait to renew owned direct fixed leases on DigitalOcean and Azure by validating the acquired account scope and exact resource identity. PR 2673.Nothing published for this version
Nothing published for this version
Use less storage for small cloud leases. Automatic AWS/GCP root disks now scale from 40 GB for tiny to 400 GB for beast , raised to the image or snaps
tiny to 400 GB for beast, raised to the image or snapshot minimum. Explicit sizes still win; the current promoted AWS AMI still requires 400 GB. PR 2632.tiny/small/standard/fast/large/beast, raised to the source minimum. Set aws.rootGB: 400 or CRABBOX_AWS_ROOT_GB=400, and gcp.rootGB: 400 or CRABBOX_GCP_ROOT_GB=400, to retain 400 GB. Automatic sizing requires image or snapshot metadata access and fails if that lookup fails; positive explicit sizes bypass it. Older clients still request 400 GB, ready-pool leases retain their disks, and GCP machine-image restores inherit their original disks. PR 2632.gcp.image_minimum, removing repeated image reads before warm creates while preserving explicit-size bypass. PR 2633.cp and tunnel try every candidate SSH port when the post-claim endpoint probe cannot create a session for the first one, and warn with each candidate's failure when none answers. PR 2642. Thanks @youssef-tharwat.doctor, preserving endpoint guidance instead of incorrectly recommending CLI installation. PR 2652./tmp filesystems on tiny Linux boxes do not prevent collecting failure evidence. PR 2638.connect in interactive-shell quickstart and troubleshooting examples so copied commands open the box instead of only printing an SSH command. PR 2635.actions.workflow at the custom init --workflow path. PR 2624. Thanks @KrasimirKralev.[] (or {} for object-shaped provider lists) instead of null across lease lists, events, history, ready pools, cache volumes, provider sizes, ports, and admin inventories. PR 2631.desktop type or desktop paste is cancelled between its key-down and key-up; Screen Sharing otherwise kept it held after disconnect. PR 2630, PR 2628, Issue 2627. Thanks @altaywtf for the fix and @saariuslystoned for the report.Nothing published for this version
Keep commands and files in the intended repository. Retained Actions workspaces must prove their Git root and origin before reuse, closing cross-repos
--no-sync --no-hydrate. Explicit cross-repository hydration keeps claim-bound consent. PR 2605, PR 2564. Thanks @vincentkoc.full clones when no snapshot is selected. To keep linked cloning, use --parallels-clone-mode linked or parallels.cloneMode: linked; an existing snapshot name or ID also preserves the linked default. Full clones use the source VM's current state and require snapshot selectors to be cleared. PR 2606, PR 2615, Issue 2398, Issue 2612. Thanks @saariuslystoned.422 provisioning_failed, including matching bound replays. Clients should treat that exact status/code as terminal; ambiguous allocation outcomes retain recovery and cleanup custody. PR 2608, PR 2616.pd-balanced elsewhere; fall back on disk/machine incompatibilities and reject image-strategy checkpoints of Hyperdisk leases with guidance to use disk snapshots. PR 2608.422 provisioning_failed with attempt diagnostics when a coordinator create definitively failed with no possible provider resource, instead of an HTTP 500 that clients replayed as uncertain. PR 2608.--keep-on-failure starts after acquisition; generated-ID acquisition failures roll back, while fixed IDs retain their replay/cleanup contract. PR 2615, Issue 2612. Thanks @saariuslystoned.native_unsupported JSON receipts when checkpoint capability resolution refuses capture, and reject invalid modes before lease resolution. PR 2613.Reach a usable Linux workspace sooner. Minimal bootstrap can finish before unrelated services reach multi-user.target. In two guest-boot replay sample
ubuntu:26.04 selector now selects the published Ubuntu 26.04 image instead of Ubuntu 24.04. Choose ubuntu:24.04 explicitly to retain the older OS; custom image choices remain unchanged. Brokered defaults require the updated coordinator, and direct selection requires the updated CLI. PR 2599.sync.compression and CRABBOX_SYNC_COMPRESSION overrides while retaining compression by default on every link. PR 2591.ubuntu:26.04 selector to the publicly available ubuntu-26.04 image, preserving explicit Ubuntu 24.04 and custom image choices. PR 2599.Nothing published for this version
Power lab hosts only when work needs them. Static SSH power hooks start a dedicated host before its first lease and shut it down after the last lease,
adapter serve now supports fixed-ID Linux workspaces; VMID reservations skip locally bound IDs and are serialized through durable publication to prevent concurrent collisions. Definite native pre-allocation 401/403 rejections free the attempt, while proxy-generated 403s and other ambiguous replies retain custody.flock, Blacksmith joins canceled sync children and closes native SSH masters before returning, and WSL2 static targets support non-administrator Windows accounts. Parallels IP discovery stops admitting probes at its deadline and preserves the latest VM-query error instead of giving stale recovery advice.azure.osDisk: ephemeral-preview, --azure-os-disk ephemeral-preview, and CRABBOX_AZURE_OS_DISK=ephemeral-preview with ephemeral, including coordinator environment settings. GA full caching requires at least 8 active vCPUs, a supported family (N/L/M/H, D/DC/E/Eb/EC v5-v7, or F v6-v7), and sufficient local storage; existing ephemeral settings now use full caching, so smaller VMs and Fsv2 no longer qualify. managed remains the default and the option for smaller VMs or native checkpoints; released CLIs sending the removed value to an updated coordinator receive HTTP 400 before allocation. PR 2565, PR 2567. Thanks @jwmoss.static.power.dedicated: true in trusted user configuration, exclusive host ownership by one controller/state directory, a canonical IP, explicit SSH credentials, and absolute hook executable paths. Preserve the claims and ssh-power state until shutdown completes; use distinct static IDs for concurrent leases, and do not use prepared run --id reuse while power custody remains. PR 2545, PR 2576. Thanks @altaywtf.warmup.keep is a new configuration key and still defaults to true; retention across runs no longer exempts kept warmups from recorded idle/TTL expiry where automatic reaping is available. Recreate existing direct GCP guests to install the updated expiry guard, and ensure their service account can delete the VM. Manual cleanup still skips kept machines; for providers without an automatic idle reaper, use warmup.keep: false with scheduled cleanup or stop explicitly. Tenki retains its documented sticky-lease exception. Issue 2536, PR 2553. Thanks @youssef-tharwat for the report.stop --force recovery only after inspecting the task and VM; keep claims after ambiguous proxy responses. PR 2577, PR 2562, PR 2566, PR 2570. Thanks @ahkohd.organizationId from /api-keys/current; older deployments must update that endpoint or use an OAuth organization profile. Existing saved claims remain supported. PR 2574. Thanks @Patrick-Erichsen.ps, matching artifact runs; unsupported controllers fail before acquiring a lease. PR 2547.adapter serve, with immutable routing and token-identity scopes, secret rotation, and exact registered cleanup receipts so deleted VMs do not leave workspaces stuck stopping. Issue 2558, PR 2560, PR 2577. Thanks @ahkohd.azure.userAssignedIdentityResourceId or --azure-user-assigned-identity-resource-id, verifying attachment before fixed-lease readiness or adoption. To add an identity to an existing fixed lease, stop it and allocate a replacement with a new lease ID. PR 2575. Thanks @galiniliev.stop --force recovery for absent, unbound attempts; retain custody after proxy-generated, task-bearing, or otherwise ambiguous 401/403 responses. Issue 2559, PR 2562, PR 2570. Thanks @ahkohd.stop. PR 2478, PR 2552, PR 2578. Thanks @steipete.stop --force to finish retained claims after external cleanup, verifying VM and companion absence with read-only checks and preserving interrupted recovery for retry. PR 2572. Thanks @galiniliev.warmup.keep without changing the retention default or manual cleanup protection. Issue 2536, PR 2553. Thanks @youssef-tharwat for the report.flock for SSH workspace locks without mistaking its unsupported timed-wait option for workspace contention. PR 2579.stop after verified absence, retaining exit 1 without a terminal receipt and preserving provider resolver and genuine identity-mismatch errors. PR 2551.Nothing published for this version
Nothing published for this version
Nothing published for this version
Run proxy-aware commands through host egress. egress run manages proxy setup, command execution, and session cleanup; optional HTTP(S) upstream creden
egress run manages proxy setup, command execution, and session cleanup; optional HTTP(S) upstream credentials stay on the host.egress run requires an existing, exclusively owned Linux SSH lease, and the command must opt into its lease-local proxy. Scoped cleanup requires the current Linux helper and pidfd support. PR 2506.linux-builder profile. Existing valid builder manifests retain their canonical-byte contract; older installed scripts do not gain --verify automatically. PR 2533.egress run to own proxy setup, remote execution, and session cleanup for one job, with optional HTTP(S) upstream chaining that keeps credentials on the host and never falls back to direct egress; egress stop --session supports scoped cleanup and prevents late startup. PR 2506.Nothing published for this version
Recover interrupted Boat sandbox creation. Fixed lease IDs retain the original creation intent, allow one bounded recovery submission, and bind later
Boat fixed lease IDs require persistent local Crabbox state and the original provider account, endpoint, and organization selector. Lost creation replies permit only one recovery submission within the native 24-hour window, further limited by the intent TTL. Preserve unresolved attempts for inspection; successful cleanup permanently retires the lease ID. Use an organization ID for org-billed creation. PR 2472.
Scaleway release now deletes the allocation-recorded root disk for newly created leases. Later-attached disks and legacy untracked disks remain untouched; failed cleanup retains recovery state for retry. PR 2468.
GitHub membership/OAuth and Cloudflare Access timeout fixes require a coordinator redeploy. Updating the CLI alone does not change deployed authentication behavior. PR 2481, PR 2482, PR 2483.
Consolidate Azure configuration under one typed owner while preserving VM and dynamic-session routing, shared input provenance, disk policy, and coordinator request fields. PR 2491. Thanks @steipete.
Keep GCP configuration and explicit-input intent under one provider-specific owner while preserving file/environment precedence, OS-image defaults, and coordinator requests. PR 2488. Thanks @steipete.
Reuse shared claim idle-expiry policy for Coder cleanup while preserving its twelve-hour grace period, timestamp normalization, and ownership safeguards. PR 2490. Thanks @steipete.
Reuse Local Container's shared idle-expiry rule for legacy unscoped orphan claims while preserving strict twelve-hour grace, runtime identity checks, and stored-key retention. PR 2489.
Share generated flag application and accepted-input bookkeeping across E2B, Freestyle, Semaphore, and Tenki while preserving their validation and normalization order. PR 2487.
Derive CubeSandbox defaults, file/environment bindings, and flags from one typed declaration while preserving aliases, proxy-port parsing, and endpoint trust policy. PR 2485.
Consolidate built-in fixed-lease admission, attempt codecs, claim binding, recovery policy, and terminal receipts in a shared engine; preserve native identity proofs and existing local records while retaining the external provider’s delegated protocol. PR 2462.
Share RunPod and Vast lease-reuse admission while preserving read-only observations, stale-claim rejection, and recorded idle-timeout policy. PR 2469.
Share AWS and Azure endpoint-refresh identity policy while preserving recorded cleanup authority and legacy-claim behavior. PR 2470.
Share E2B and CubeSandbox's claim-fenced deletion transaction while preserving endpoint-bound ownership checks, provider errors, and not-found recovery. PR 2474.
Reuse shared claim idle-expiry policy for Local Container cleanup while preserving its twelve-hour grace period and ownership safeguards. PR 2475.
Reuse the shared sandbox status projection for Cloud Run Sandbox without changing ownership probes, expiry rules, or public labels. PR 2476.
Share Linode's status-first HTTP response decoding with DigitalOcean while preserving typed errors, redaction, and partial-response diagnostics. PR 2479.
Make provider deadline tests deterministic, preserve incomplete canceled HTTPS responses in GCP fixtures, allow native PowerShell startup headroom, and cover coordinator create recovery after reconstruction within the same deployment. PR 2473, PR 2484, PR 2493, PR 2471.
Cloudflare runner image deployments now default to pnpm 12.5.1. Projects without a packageManager pin inherit this breaking change; migrate pnpm confi…
bxd_ API key in CRABBOX_BOXD_API_KEY or BOXD_API_KEY; interactive session tokens and the device-login helper are retired. Set CRABBOX_BOXD_ORG for org-fenced keys so list and cleanup can validate org-billed machines. Legacy console claims remain available for lifecycle cleanup, but guest access requires a new lease. PR 2432.stop --force can forget eligible ordinary Daytona and ASCII Box claims only after exact resource absence is verified under the claim lock. Legacy Daytona claims without endpoint and organization binding still require manual recovery; fixed-ID, checkpoint, coordinator, and adapter-owned claims retain their existing recovery owners. ASCII Box ordinary-stop reconciliation is preserved. PR 2454.--access opt-in and a coordinator deployed with CRABBOX_PORTABLE_POOLS_ENABLED=true. The first adapter supports prepared AWS public Linux SSH leases with SSM access. Borrows default to and cannot exceed 30 minutes, further capped by lease and authorization expiry; there is no in-place renewal, and heartbeats only prove liveness. Preserve private receipts and keys until cleanup completes, and complete the documented live fencing proof before production rollout. PR 2458.v1.0.0 release. Kept Tenki sessions remain sticky and require an explicit stop; heartbeats do not add native expiry. PR 2442, PR 2443, PR 2444, PR 2342.packageManager pin inherit this breaking change; migrate pnpm configuration or set "packageManager": "pnpm@10.24.0" before deployment. Updating the local CLI alone does not replace deployed runner images. PR 2379.v0.64.0 scripts; upgrading the host CLI alone is insufficient. PR 2409.ec2:DescribeInstanceTypes alongside servicequotas:GetServiceQuota; update custom caller or coordinator policies accordingly. Missing metadata is reported as unknown, and private workspace resource caps require successful inspection. PR 2435.parallels.maxVMs and CRABBOX_PARALLELS_MAX_VMS, preserve fleet-entry precedence, and let explicit YAML zero clear inherited limits. PR 2392, Issue 2386. Thanks @saariuslystoned.stop --force evidence verification; bind new Daytona leases to their authenticated account, retain unbound legacy claims, and preserve ASCII Box ordinary-stop reconciliation. PR 2115, Issue 2108, PR 2454. Thanks @Patrick-Erichsen for the report and PR, and @mislavivanda for the issue.packageManager to pnpm@10.24.0. PR 2379. Thanks @altaywtf.lsof output; existing golden images need refreshed hooks. PR 2409.Nothing published for this version
Tenki works with the current CLI and rotating gateway certificates. Sandbox creation uses supported lifetime flags, and SSH verifies the gateway's cer
tenki onboard or TENKI_API_KEY when the CLI does not report an authoritative trust file. Kept leases use sticky mode with no maximum duration; warmup defaults to keeping the lease. Use --keep=false --ttl 15m for a bounded test, and explicitly stop the lease afterward: Tenki's maximum duration pauses the sandbox rather than destroying it, and idle-timeout metadata does not enforce native expiry. PR 2341.Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Recover the same Azure VM or DigitalOcean Droplet. Fixed lease IDs let direct provisioning recover the original allocation after a lost reply or readi
ephemeral-preview disks are unsupported on this path. Ordinary Azure provisioning keeps its existing fallback behavior. PR 2351.warmup --lease-id support for direct Azure and DigitalOcean leases. Persist the create intent before allocation, recover the same resource after interrupted provisioning, and reject replaced resources using immutable provider identities. PR 2351. Thanks @steipete.Nothing published for this version
Complete installations now include a native runtime pack. Matching Linux, macOS, and Windows companions handle supported filesystem operations, and th
crabbox-runtime/ directory beside the real CLI executable when installing a release archive; Homebrew installs the complete distribution. Every pack contains amd64 and arm64 companions for Linux, macOS, and Windows and is bound to its matching controller. Reinstall the matching archive or Homebrew package if an official installation's pack is missing or incomplete; do not mix packs between builds. go install remains CLI-only: a source-built CLI can compile the filesystem helper locally with Go 1.26 or newer, but retains shell-backed command supervision. PR 1556, PR 2300.--shell and Bash scripts still require it. Newly generated Linux readiness scripts use POSIX sh, but existing images and readiness scripts are not upgraded in place, and initial provisioning retains its own prerequisites. The new bash preflight probe is opt-in through --preflight --preflight-tools default,bash; missing Bash is diagnostic, not a request to install it. PR 2300, PR 2296..crabbox-cp-transaction or .crabbox-cp-backup sidecars. Inspect the destination and backup, then use cp --recover keep-destination or cp --recover restore-backup for that exact destination; recovery retains the old marker and unselected data and prints their location. New copies use a private persistent journal outside the transferred tree; keep it until recovery completes. Archive fallback remains limited to POSIX operator hosts and native Linux/macOS SSH targets; native Windows copy still needs a provider-native backend. SSH copy from Windows operators or to WSL2 targets still requires rsync 3.4.3 or newer on both ends. PR 1556.cp --recover keep-destination|restore-backup recovery for legacy sidecars. Preserve unselected destination and backup data instead of inferring an outcome from historical markers. PR 1556.sh while retaining tool, bootstrap-marker, workroot, and desktop checks. PR 2300, PR 2296. Thanks @coygeek.macos_platform to default macOS preflight, reporting OS version/build, architecture, and effective developer-tool selection. Offer opt-in swift, xcodebuild, and brew probes with bounded execution and confirmed cleanup before the workload continues. PR 2281. Thanks @coygeek.--idle-timeout is rejected, and absolute lifetime is not extended. PR 1707. Thanks @zozo123.Nothing published for this version
Bring Git history to runners without origin access. Opt into local-object seeding to carry complete selected histories and reachable tags alongside yo
git describe.--git-seed-source local, sync.gitSeedSource: local, or CRABBOX_SYNC_GIT_SEED_SOURCE=local; sync.gitSeed must remain enabled. It supports ordinary SSH-backed Linux, macOS, WSL2, and native Windows targets with Git. Use a raw workspace and --no-hydrate when Actions hydration is configured; directory sync, Actions hydration, fresh PR checkouts, ready pools, and Git overlay cannot be combined with it. Replacing an existing origin-seeded checkout requires explicit --full-resync. PR 2264.sync-plan --git-seed-source local --json. PR 2264.sync.source: directory and a nonempty sync.include; Git remains required for isolated .gitignore matching. The effective current directory is the source root, including inside an outer checkout. It supports POSIX/WSL managed-manifest SSH sync; watch, delegated/native-source providers, native Windows archive sync, Actions workspaces, Git-backed ready pools, Git overlay/base refs, and PR/patch modes are unsupported. In-scope nested repositories must be excluded or selected as the source root. PR 2253.sync-plan and timing JSON. PR 2264. Thanks @coygeek.sync-plan previews without creating source Git metadata. Apply source-tree .gitignore rules through private temporary metadata, validate the complete manifest before acquisition and again before transfer, and preserve managed-state exclusions, size limits, and guarded deletion of previously synced files. PR 2253. Thanks @coygeek.--expose cannot change an existing coordinator-managed lease's Pond ports, and point to crabbox tunnel for forwarding an existing service. Preserve normal command execution and direct/registered port refresh. PR 2256.Nothing published for this version
Linux desktops follow the browser window. The portal controller can match the desktop resolution to the viewer, with Fit desktop available for local s
run --id and ssh resume paused sandboxes before using them.python3-venv preflight creates a disposable environment, checks Python and pip, and reports confirmed cleanup before the workload starts.--islo-idle-pause or islo.idlePause: true and choose an --idle-timeout longer than the expected workload: provider activity accounting is not established for long-running commands, shares, or tailnet traffic. Reuse does not rewrite the policy, and no provider deletion deadline is added. PR 1706.--preflight-tools default,python3-venv with --preflight on Linux, macOS, or WSL2; native Windows does not run this probe. Missing Python, venv, or pip remains diagnostic when cleanup is confirmed. Transport, ownership, or cleanup failures stop the workload, and the probe never installs host tools or reuses a project environment. PR 2217.python3-venv preflight with separate capability and cleanup results, checks of the disposable environment's Python and pip, and confirmed process, scratch-directory, and transport-stage retirement. PR 2217. Thanks @coygeek.-- separator. PR 2246, PR 2245.Nothing published for this version
Nothing published for this version
Nothing published for this version
Keep run history after a lease is gone. Opt into private local logs and parsed results with --record-local , then read them offline without a coordina
--record-local, then read them offline without a coordinator.crabbox run --record-local -- <command> or enable history.local.enabled in trusted user configuration; repository configuration cannot opt you in. Retained command output is not automatically secret-redacted. Read it with history, logs, or results --source local; default retention is 100 inactive records, 256 MiB, and 30 days. PR 2141.XDG_STATE_HOME now also selects the root for generated lease SSH keys and host trust. Keep the same root through acquisition, reuse, and cleanup; switching roots does not migrate existing keys or discover leases from the old root. Unset defaults and user-supplied keys keep their existing paths. PR 2164.--source local|coordinator|all, bounded pruning, and deletion of inactive records while preserving existing coordinator defaults. PR 2141. Thanks @coygeek.XDG_STATE_HOME for generated lease SSH keys and host trust, including isolated-root reuse and cleanup, while retaining private storage permissions. PR 2164. Thanks @coygeek.nocaseglob is enabled, while preserving explicit nocasematch behavior, archive membership, and collection limits. PR 2162, PR 2208. Thanks @vincentkoc.Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Run commands on existing Daytona fixed-ID leases. The new crabbox exec streams commands without workspace sync or hydration and keeps repository owner
crabbox exec streams commands without workspace sync or hydration and keeps repository ownership protected until transport cleanup finishes.stop --current-repo for repository-scoped cleanup.exec initially supports completed direct Daytona fixed-ID Linux leases; stop --current-repo provides repository-scoped cleanup for that direct fixed-ID route. Check capabilities with crabbox exec --check --provider daytona before allocating; other providers, ordinary leases, coordinator routes, and Windows targets are not supported by these execution and cleanup modes. PR 2119.exec leaves the SSH account's initial working directory unchanged and requires piped or redirected stdin; use </dev/null when no input is needed and an explicit shell command to change directories. Non-PTY streams preserve bytes; --pty uses terminal semantics. PR 2119.crabbox-desktop-session.service as an alias of crabbox-desktop.service so released clients can still reset the desktop. Panel refresh does not clear existing terminal color or menu caches. PR 2117.crabbox exec for commands on completed Daytona fixed-ID leases without workspace sync or hydration. Forward non-PTY streams without rewriting their bytes, resolve fresh SSH access, and retain the repository claim through command execution and local transport cleanup. PR 2119. Thanks @steipete.exec --check capability discovery and stop --current-repo cleanup for supported fixed-ID leases. Validate repository ownership under the same lock used for deletion, so cleanup waits for active exec commands and a previous owner cannot delete a lease after another repository reclaims it. PR 2119. Thanks @steipete.config show text and JSON, including unselected providers. Preserve explicit zero/false values and URL redaction, report only already-loaded key presence, and avoid credential discovery, external default resolution, or SDK bridge execution. PR 2104, PR 2112. Thanks @steipete.Your coding agent can read these notes before it upgrades. Set up the MCP server →