This release fixes issues for SREs watching stability and regressions.
✓ No known CVEs patched in this version
Topics
+2 more
Affected surfaces
Summary
AI summaryUnauthenticated claude board triggers now show a clear error with fix hint and child agents no longer inherit parent Claude-Code session identity.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Bugfix | Medium |
Unauthenticated `claude` board trigger now shows clear error and fix hint instead of misleading success message. Unauthenticated `claude` board trigger now shows clear error and fix hint instead of misleading success message. Source: llm_adapter@2026-06-10 Confidence: high |
— |
| Bugfix | Medium |
Spawned agent's environment no longer inherits parent Claude-Code session identity. Spawned agent's environment no longer inherits parent Claude-Code session identity. Source: llm_adapter@2026-06-10 Confidence: high |
— |
Full changelog
Patch on the v2.64.0 launch control:
- A board-triggered
claudethat can't authenticate now shows a clear error + fix hint ('run the board whereclaudeis logged in, or set ANTHROPIC_API_KEY') instead of a misleading 'result (success)'. - The spawned agent's env is stripped of this process's Claude-Code session identity so a board launched from inside a Claude Code session doesn't hand the child its parent's identity.
Note: the 401 some saw when triggering from inside an automated agent session is an env artifact (host-brokered auth) — a normal logged-in terminal authenticates fine.
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About great_cto
Engineering-management layer of 34 specialist AI agents covering the full SDLC (architect, PM, senior-dev, reviewer, QA, security, devops, L3-support + 18 archetype-specific reviewers) with auto-detected archetypes and compliance gates (PCI-DSS, HIPAA, FedRAMP, GDPR, EU AI Act). Runs in Claude Code, Cursor, Codex CLI, Aider, and Continue via AGENTS.md + MCP. MIT.
Related context
Related tools
Earlier breaking changes
- v2.72.2 Removes Autopilot sidebar item and Operate topbar button from dev board.
- v2.55.0 Hard-gates the Build board; redirects invite sessions to Operate for operators.
- v2.43.0 Runtime now blocks autonomous execution of irreversible actions without prior human checkpoint.
- v2.43.0 Adds reversible and blastRadius fields to every flow step.
- v2.32.0 Removed AgentShield scanner and its CLI commands.
Beta — feedback welcome: [email protected]