Skip to content

Chameleon

v2.36.1 Maintenance

This release keeps dependencies and maintenance posture current for teams operating this tool.

✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →

✓ No known CVEs patched in this version

Topics

ai-coding-assistant archetype ast-analysis claude-code claude-plugin code-conventions
+12 more
code-review code-style developer-tools javascript linter mcp mcp-server prompt-engineering python ruby rails typescript

Summary

AI summary

Minor fixes and improvements.

Full changelog

Documentation

  • Full documentation refresh: every doc is now current and honest. Audited
    README, architecture, install, the language-support matrix, CLAUDE, SECURITY,
    and CONTRIBUTING against the v2.36.1 source and fixed all drift:
    • Corrected stale counts (README "Proof" table and badge: 4,777 unit tests,
      125 released versions, 3,299-line changelog; architecture engine version
      2.32.2 -> 2.36.1).
    • Documented the comprehension layer (search_codebase, describe_codebase,
      get_callees) and the get_blast_radius and get_prose_rule_candidates
      tools across README, architecture, CLAUDE, install, and the support matrix.
      chameleon is now described as conformance AND comprehension.
    • Fixed the now-false "TypeScript has no framework layer" claim: TS/JS has
      Next.js and NestJS awareness (detection, naming roles, framework-specific
      anti-hallucination).
    • Documented the default-on proximity-ranked nearby-collaborator signatures,
      the teach_profile_structured source provenance param, the default-on
      production-ref git fetch in SECURITY.md, and corrected the CONTRIBUTING CI
      job list (10 jobs, hook-smoke matrix) and a broken workflows link.
    • Added a direct "What it truly resolves (and what it doesn't)" section to the
      README, grounded in the measured 2026 AI-coding problem landscape: it owns
      the conformance and codebase-context slice (off-pattern code, hallucinated
      dependencies and symbols, duplication, secrets, comprehension) and does not
      claim to fix the model's correctness/security ceiling, agent autonomy, or
      cost.

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track Chameleon

Get notified when new releases ship.

Sign up free

About Chameleon

All releases →

Related context

Earlier breaking changes

  • v3.0.0 MCP surface folded from 48 tools to 19; remaining 32 operator tools become actions on three dispatchers.

Beta — feedback welcome: [email protected]