Release summaries
agent-application-foundation
Add a contract-first, filesystem-authored agent application foundation with governed runtime ports, durable cross-adapter conformance, isolated EVE integration, agent evals, and a reference application.
integrator
AgentSpec and WorkflowSpec now share one canonical runtime-adapter identity that includes `eve`; exhaustive adapter switches must handle the new key without importing EVE types into generic libraries.
maintainer
Durable stores, sandbox, file retrieval, subagent dispatch, collaboration leases, runtime parity, filesystem compilation, and eval evidence now have explicit package-local verification surfaces.
agent
Filesystem-authored applications can compile into portable AgentSpec and WorkflowSpec output, run bounded orchestrator/verifier flows, and emit replay-linked evaluation evidence.
enterprise-agent-platform
Add provider-adaptable multiplayer agents, governed self-improvement, continuous workers, self-maintaining APIs, and fail-closed enterprise qualification.
integrator
Compose the exact agent capabilities and enterprise controls required by a project, then choose or replace Vercel, Railway, Supabase, Docker, and custom profiles according to infrastructure, budget, security, and residency constraints.
maintainer
Qualify the exact digest-bound plan in each target environment and run multiplayer, improvement, maintenance, audit, recovery, and rollback workflows with live evidence.
managed-companyos-dynamic-intelligence-planning
Replace static Company Intelligence and OPA fixtures with authenticated, tenant-free dynamic surface descriptors and responsive managed templates.
integrator
Company Intelligence and Organization Planning pages now resolve authenticated authority per request and consume tenant-free server projections; no production route falls back to named-company fixtures.
maintainer
The additive surface descriptor accepts only a logical surface id and returns canonical route, route state, freshness, safe-read posture, action availability, and dependency blocks derived on the server.
managed-companyos-personal-team-contexts
Add non-shareable personal CompanyOS contexts and atomic opaque personal/company/team/workspace selection with request-time authority proof.
integrator
Authenticated users can operate in a personal context without a company and can atomically select any server-returned company, team, and workspace through opaque references.
maintainer
Context tokens bind session, user, projection, nonce, version, and expiry; explicit direct/team workspace grants constrain enumeration and selection, and protected requests fail closed when nested authority is stale.
