Skip to content

Hephaestus

v0.7.14 Security

This release includes 1 security fix for security teams reviewing exposed deployments.

✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →
This release patches 1 known CVE

Topics

a2a agent agent-framework agent-os-desktop agent-skills agentic-ai
+13 more
agentic-workflow agentos agents agents-team agentshub ai-agents autonomous-agents llm llm-agents llm-tools mcp multi-agent-systems ochestration

Affected surfaces

auth rbac

Summary

AI summary

Routing now uses a card‑derived Agent Ontology with domain‑coherence guard to fix polysemy mis‑routes.

Full changelog

Routing now uses a card-derived Agent Ontology with a domain-coherence guard (fixes polysemy mis-routes like a game art-asset request landing on a finance team) and a bounded offline semantic signal. Hardened by a 31-agent adversarial review (25 findings fixed: marker substring collisions, a mis-classification regression that could drop the correct card, internal-key leakage in card backfill, and load-bearing tests). Includes the v0.7.13 paid-agent gating fix.

Security Fixes

  • Fixed marker substring collisions, corrected mis‑classification regression that could drop the correct card, and patched internal‑key leakage in card backfill

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track Hephaestus

Get notified when new releases ship.

Sign up free

About Hephaestus

Open Agent OS for Claude Code, Codex, and Cursor with a meta-agent builder, A2A Hub routing, local ontology, and memory/security gates. Apache-2.0.

All releases →

Related context

Beta — feedback welcome: [email protected]