This release includes breaking changes for platform teams planning a safe upgrade.
✓ No known CVEs patched in this version
Topics
+14 more
Affected surfaces
Summary
AI summaryagent auth start no longer wedges forever; it bounds wait time and fails loudly with the last TUI screen when detecting an onboarding wizard.
Full changelog
agent auth start no longer wedges forever on a first-run onboarding TUI: auth poll bounds the wait (FIVE_AUTH_URL_TIMEOUT, default 300s) and fails loud with the last screen of the pane plus a hint when it recognises an onboarding wizard. A consent screen is deliberately NOT auto-advanced — a machine must not accept terms on a person's behalf — and a test canary fails if that changes.
New: agent auth reap — abandoned login processes are cleaned up (non-terminal sessions past --max-age torn down and marked expired; terminal sessions past --ttl have their dir removed). auth start sweeps first, so a box self-heals without a cron entry. DIVE-1884.
Backfilled: this release was tagged after the fact, on 2026-07-26.
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About 5dive
All releases →Related context
Related tools
Earlier breaking changes
- v0.11.22 council amend now requires constitutional-class motion for constitution changes
- v0.11.9 CLI now only OFFERS a veto to the genesis principal; EXERCISE requires authenticated tap.
- v0.11.5 Raw bench add/rm of the primary council is refused.
- v0.11.5 `council init` now requires sudo and seeds the primary council bench.
- v0.10.7 Changes delegated-push grant to be BUILDER-SCOPED, limiting push permissions.
Beta — feedback welcome: [email protected]