Skip to content

Avibe

v3.0.2 Feature

This release adds 3 notable features for engineering teams evaluating rollout.

✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →

✓ No known CVEs patched in this version

Topics

agent agent-os ai ai-agents chatops claude
+11 more
claude-code codex devtools discord-bot lark-bot llm local-first opencode slack-bot vibe-coding wechat

Summary

AI summary

Fixed iOS PWA login OAuth state desync causing failures on home‑screen launch.

Changes in this release

Feature Medium

Platform configuration now applies without restarting the service.

Platform configuration now applies without restarting the service.

Source: llm_adapter@2026-06-15

Confidence: high

Feature Medium

Platforms settings page redesigned into a single inline-config flow.

Platforms settings page redesigned into a single inline-config flow.

Source: llm_adapter@2026-06-15

Confidence: high

Feature Medium

Service settings page now leads with a prominent remote-access card.

Service settings page now leads with a prominent remote-access card.

Source: llm_adapter@2026-06-15

Confidence: high

Feature Medium

Telegram replies render as rich formatted messages.

Telegram replies render as rich formatted messages.

Source: llm_adapter@2026-06-15

Confidence: high

Feature Low

'vibe agent run' sessions follow the invocation working directory.

'vibe agent run' sessions follow the invocation working directory.

Source: llm_adapter@2026-06-15

Confidence: high

Bugfix Medium

Fixes iOS standalone-PWA OAuth login state desynchronization issue.

Fixes iOS standalone-PWA OAuth login state desynchronization issue.

Source: llm_adapter@2026-06-15

Confidence: high

Bugfix Low

Prevents draft message leakage into the next session when switching sessions.

Prevents draft message leakage into the next session when switching sessions.

Source: llm_adapter@2026-06-15

Confidence: high

Bugfix Low

Codex now evicts cached app-server on working‑directory inode change and treats config‑load failure as recoverable.

Codex now evicts cached app-server on working‑directory inode change and treats config‑load failure as recoverable.

Source: llm_adapter@2026-06-15

Confidence: high

Bugfix Low

Fixes Claude sandbox toggle and project default‑agent soft‑pin behavior.

Fixes Claude sandbox toggle and project default‑agent soft‑pin behavior.

Source: llm_adapter@2026-06-15

Confidence: high

Full changelog

Highlights

  • Enabling/disabling a platform or updating its credentials now applies without restarting the service — and changing one platform no longer interrupts the others or the Web UI (#567, #566).
  • The Platforms settings page is now a single inline-config flow, and the Service page leads with a clear remote-access card (#564, #565).
  • Telegram replies now render as rich formatted messages (#569).
  • Fixed PWA login failing with an OAuth state error when launched from the iOS home screen (#568).

Changes

Added

  • Hot platform reconcile: per-platform start/stop and credential rebuild with no service restart; clean hot-stop for all platforms (incl. Feishu/Lark) with a restart fallback if a runtime can't stop cleanly (#567).
  • Service-only restart that keeps the Web UI process running, plus a confirm dialog before disabling a platform (#566).
  • Rich Telegram markdown messages (#569).

Changed

  • Redesigned Platforms settings into a single inline-config flow; the primary platform is now derived by the backend with no user-facing control (#564).
  • The Service settings page leads with a prominent remote-access card and reworked copy (#565).
  • vibe agent run sessions follow the invocation working directory (#562).

Fixed

  • iOS standalone-PWA OAuth login state desync (#568).
  • A draft message leaking into the next session when switching sessions (#560).
  • Codex: evict the cached app-server when its working-directory inode changes, and treat a config-load failure as recoverable (#561).
  • Claude sandbox toggle and project default-agent soft-pin (#559, #556).

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track Avibe

Get notified when new releases ship.

Sign up free

About Avibe

All releases →

Related context

Earlier breaking changes

  • v3.0.5 Removed protected Vault password factor path; now Passkey‑only for setup/unlock.
  • v3.0.5 Changed `vibe agent run --session-id` to target existing sessions and reject mutation flags.
  • v3.0.5 Replaced `vibe vault request --skill` with JSON spec via `--spec`/`--spec-json`.
  • v3.0.5 Removed `vibe vault set`; Vault creation now requires browser‑side sealing instead of plaintext values.

Beta — feedback welcome: [email protected]