Skip to content

Mistle

v0.33.0 Feature

This release adds 3 notable features for engineering teams evaluating rollout.

✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →

✓ No known CVEs patched in this version

Affected surfaces

deps

Summary

AI summary

Broad release touches Bug Fixes, Chores, 0.33.0] - 2026-06-15, and deps.

Changes in this release

Feature Low

Add cloudflare mcp integration

Add cloudflare mcp integration

Source: llm_adapter@2026-06-15

Confidence: high

Feature Low

Observe forwarding health in gateway

Observe forwarding health in gateway

Source: llm_adapter@2026-06-15

Confidence: high

Feature Low

Add modal sandbox provider

Add modal sandbox provider

Source: llm_adapter@2026-06-15

Confidence: high

Feature Low

Enable modal BYOK sandbox runtimes

Enable modal BYOK sandbox runtimes

Source: llm_adapter@2026-06-15

Confidence: high

Feature Low

Add freestyle image provisioning

Add freestyle image provisioning

Source: llm_adapter@2026-06-15

Confidence: high

Feature Low

Add sandbox-scoped provider resource associations

Add sandbox-scoped provider resource associations

Source: llm_adapter@2026-06-15

Confidence: high

Feature Low

Summarize API key permissions

Summarize API key permissions

Source: llm_adapter@2026-06-15

Confidence: high

Feature Low

Reuse sandbox profile snapshots on safe publishes

Reuse sandbox profile snapshots on safe publishes

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Feature Low

Flatten sandbox profile PR activity routing

Flatten sandbox profile PR activity routing

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Feature Low

Support association delivery for opencode and pi

Support association delivery for opencode and pi

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Feature Low

Add provider runtime association capability

Add provider runtime association capability

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Feature Low

Sync github app bot resources

Sync github app bot resources

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Feature Low

Add github bot trigger filters

Add github bot trigger filters

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Feature Low

Add setup script empty state

Add setup script empty state

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Feature Low

Support Pi composer commands

Support Pi composer commands

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Feature Low

Add GitHub association activity filters

Add GitHub association activity filters

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Feature Low

Use github collaborators for user resources

Use github collaborators for user resources

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Feature Low

Wire opencomputer sandbox provider

Wire opencomputer sandbox provider

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Feature Low

Route agent slack thread replies

Route agent slack thread replies

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Dependency Low

Bump vite from 8.0.10 to 8.0.16 in /tests/system/fixtures/vite-dev-server

Bump vite from 8.0.10 to 8.0.16 in /tests/system/fixtures/vite-dev-server

Source: llm_adapter@2026-06-15

Confidence: high

Performance Low

Shorten gateway telemetry integration batching

Shorten gateway telemetry integration batching

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Performance Low

Shorten port access authorization waits in gateway

Shorten port access authorization waits in gateway

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Bugfix Medium

Recover unavailable forwarding owners in gateway

Recover unavailable forwarding owners in gateway

Source: llm_adapter@2026-06-15

Confidence: high

Bugfix Medium

Prevent publishing unchanged sandbox profiles

Prevent publishing unchanged sandbox profiles

Source: llm_adapter@2026-06-15

Confidence: high

Bugfix Low

Repair missing Slack bot identity

Repair missing Slack bot identity

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Bugfix Low

Clarify unsaved skills source loading

Clarify unsaved skills source loading

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Refactor Low

Move associated resource submit behind provider capability

Move associated resource submit behind provider capability

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Refactor Low

Derive conversation delivery policy from runtime metadata

Derive conversation delivery policy from runtime metadata

Source: granite4.1:30b@2026-06-15-audit

Confidence: low

Full changelog

[0.33.0] - 2026-06-15

Features

  • Add cloudflare mcp integration (#2752)
  • (gateway) Observe forwarding health (#2754)
  • Add modal sandbox provider (#2778)
  • Add freestyle image provisioning (#2785)
  • Enable modal byok sandbox runtimes (#2796)
  • Add sandbox-scoped provider resource associations (#2786)
  • Summarize API key permissions (#2765)
  • Reuse sandbox profile snapshots on safe publishes (#2797)
  • Flatten sandbox profile PR activity routing (#2801)
  • Support association delivery for opencode and pi (#2800)
  • Add provider runtime association capability (#2810)
  • Add opencomputer sandbox provider package (#2807)
  • Sync github app bot resources (#2813)
  • Add github bot trigger filters (#2816)
  • Add setup script empty state (#2820)
  • Add AWS CloudWatch MCP integration (#2823)
  • Support Pi composer commands (#2826)
  • Add GitHub association activity filters (#2827)
  • Use github collaborators for user resources (#2829)
  • Wire opencomputer sandbox provider (#2812)
  • Route agent slack thread replies (#2834)
  • Repair missing Slack bot identity (#2837)

Bug Fixes

  • (gateway) Recover unavailable forwarding owners (#2753)
  • Clarify unsaved skills source loading (#2757)
  • Default Mistle sandbox resources (#2756)
  • (dashboard) Format stepped cron schedules (#2759)
  • Keep skills catalog visible during reload (#2762)
  • Confirm setup assistant close before publish (#2758)
  • Update signoz mcp us endpoint (#2788)
  • Reconcile live codex user messages (#2798)
  • Keep conversation navigator out of mobile session transcript (#2799)
  • Suppress self-authored association deliveries (#2803)
  • Trust known chat link domains (#2805)
  • Surface resource sync errors in summaries (#2806)
  • Dedupe webhook association trigger delivery (#2815)
  • Align horizontal field labels (#2817)
  • Vendor ui font assets (#2818)
  • Handle empty GitHub contributor responses (#2821)
  • Render routed dashboard actions with Button (#2822)
  • Prevent publishing unchanged sandbox profiles (#2824)
  • Clarify workspace root repository option (#2830)
  • Keep runtime compiler code out of browser registry (#2831)
  • Subscribe slack manifest to channel sync events (#2832)
  • Improve associated resource routing view mode (#2836)
  • Restore docker snapshot runtime initialization (#2840)
  • Update Codex 0.139 x86 release sha (#2842)

Refactors

  • Move associated resource submit behind provider capability (#2804)
  • Derive conversation delivery policy from runtime metadata (#2811)

Performance

  • Shorten gateway telemetry integration batching (#2749)
  • (gateway) Shorten port access authorization waits (#2750)

Documentation

  • Document ui font provenance (#2819)
  • Improve AWS CloudWatch MCP guidance (#2825)
  • Add CloudWatch IAM role setup example (#2828)
  • Clarify setup script snapshot flow (#2833)

Tests

  • (gateway) Shorten runtime-state health wait (#2747)
  • (gateway) Wait for port access bootstrap attachment (#2755)
  • Stabilize port access bootstrap integration (#2761)
  • Report integration timing hotspots (#2763)
  • Consolidate stop sandbox integration cases (#2766)
  • Avoid unnecessary port access provider inspection (#2777)
  • Report slowest integration test cases (#2779)
  • Cover runtime user messages across runtimes (#2802)

CI

  • Enable TS integration timing report (#2764)
  • Run TS integration on 8 vcpu (#2767)

Chores

  • (deps) Bump vite from 8.0.14 to 8.0.16 in /tests/system/fixtures/vite-dev-server (#2741)
  • (deps) Bump @pierre/diffs from 1.1.20 to 1.2.5 (#2743)
  • (deps) Bump jsx-email from 3.2.0 to 3.2.1 (#2742)
  • (deps) Bump tailwind-merge from 3.5.0 to 3.6.0 (#2740)
  • (deps) Bump @storybook/addon-links from 10.3.6 to 10.4.1 (#2745)
  • (deps) Bump react and @types/react (#2744)
  • (deps) Update vite fixture lockfile (#2760)
  • (deps) Bump fff-search from 0.8.4 to 0.9.1 in /packages/sandboxd (#2808)
  • Update Codex CLI to 0.139.0 (#2795)
  • Update Pi CLI to 0.79.1 (#2793)
  • (deps) Bump crate-ci/typos from 1.47.0 to 1.47.2 (#2791)
  • (deps) Bump useblacksmith/stickydisk from 1.2.0 to 1.3.0 (#2790)
  • (deps) Bump vite from 8.0.10 to 8.0.16 (#2775)
  • Update opencode to 1.17.4 (#2835)
  • (deps) Bump oxlint from 1.66.0 to 1.68.0 (#2776)
  • (deps) Bump actions/checkout from 6.0.2 to 6.0.3 (#2770)
  • (deps) Bump hyper from 1.10.0 to 1.10.1 in /packages/sandboxd (#2768)
  • (deps) Bump vitest from 4.1.7 to 4.1.8 (#2774)
  • (deps) Bump @smithy/signature-v4 from 5.3.14 to 5.4.6 (#2771)
  • (deps) Bump @aws-sdk/client-s3 from 3.1048.0 to 3.1063.0 (#2773)
  • Update Pi CLI to 0.79.3
  • (deps) Bump github/codeql-action from 4.36.0 to 4.36.2 (#2809)
  • Update opencode to 1.17.7
  • (release) V0.33.0 (#2843)

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track Mistle

Get notified when new releases ship.

Sign up free

About Mistle

All releases →

Related context

Beta — feedback welcome: [email protected]