This release adds 3 notable features for engineering teams evaluating rollout.
✓ No known CVEs patched in this version
Summary
AI summaryUpdates Highlights, Release collateral, and Additional fixes across a mixed release.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Feature | Low |
Adds per‑agent reasoning effort cap via team model contract (#3143). Adds per‑agent reasoning effort cap via team model contract (#3143). Source: llm_adapter@2026-07-19 Confidence: high |
— |
| Feature | Low |
Team validates exact live tmux panes and preserves pane ownership across lifecycle events (#3153). Team validates exact live tmux panes and preserves pane ownership across lifecycle events (#3153). Source: llm_adapter@2026-07-19 Confidence: high |
— |
| Feature | Low |
Ralplan enforces strict review order, fails closed without leader proof, and resolves App leader‑proof regression (#3186, #3196, #3187, #3218). Ralplan enforces strict review order, fails closed without leader proof, and resolves App leader‑proof regression (#3186, #3196, #3187, #3218). Source: llm_adapter@2026-07-19 Confidence: high |
— |
| Feature | Low |
Coalesces team mailbox wakeups and acknowledges every wakeup (#3217). Coalesces team mailbox wakeups and acknowledges every wakeup (#3217). Source: llm_adapter@2026-07-19 Confidence: high |
— |
| Feature | Low |
Adds exact session pointer lock recovery mechanism (#3215). Adds exact session pointer lock recovery mechanism (#3215). Source: llm_adapter@2026-07-19 Confidence: high |
— |
| Feature | Low |
Documents isolated standard launches in CLI and README (#3192). Documents isolated standard launches in CLI and README (#3192). Source: llm_adapter@2026-07-19 Confidence: high |
— |
| Bugfix | Medium |
Hardens native child write identity across code‑intel, wiki MCP, and native hook surfaces (#3135). Hardens native child write identity across code‑intel, wiki MCP, and native hook surfaces (#3135). Source: llm_adapter@2026-07-19 Confidence: high |
— |
| Bugfix | Medium |
Reconciles duplicate project trust tables idempotently in configuration generator (#3201). Reconciles duplicate project trust tables idempotently in configuration generator (#3201). Source: llm_adapter@2026-07-19 Confidence: high |
— |
| Bugfix | Medium |
Plugin native hook returns structured responses for oversized tool‑hook payloads (#3211). Plugin native hook returns structured responses for oversized tool‑hook payloads (#3211). Source: llm_adapter@2026-07-19 Confidence: high |
— |
| Bugfix | Medium |
Tolerates Windows `fsync` `EPERM` across hooks, uninstall, and native hook (#3191). Tolerates Windows `fsync` `EPERM` across hooks, uninstall, and native hook (#3191). Source: llm_adapter@2026-07-19 Confidence: high |
— |
Full changelog
oh-my-codex v0.20.3
0.20.3 is a patch release for the reliability and workflow-safety work in the exact range v0.20.2..f967cfed64ec57614af136f75d7cb81509808f7e, plus one additive, backward-compatible feature.
Highlights
- Reasoning effort can be capped per agent through the team model contract (#3143).
- Team validates exact live tmux panes before explicit lifecycle effects and preserves pane ownership through startup, scaling, rollback, recovery, and teardown, with durable failure-atomic membership/scaling transactions and pane-pid-bound notify dispatch (#3153; issue #3121).
- Ralplan requires strict direct review order, fails closed without documented leader proof, attests the reconciled leader in
PreToolUse, and resolves the App leader-proof regression by parsing collaboration results structurally (#3186, #3196, #3187, #3218; issues #3194, #3181, #3204). - Team mailbox wakeups are coalesced with every wake acknowledged (#3217; issue #3195), and exact session pointer lock recovery is added (#3215; issue #3203).
- Native child write identity is hardened across the native hook, code-intel, and wiki MCP surfaces (#3135; issue #3127), and the configuration generator reconciles duplicate project trust tables idempotently (#3201; issue #3199).
- The plugin native hook returns structured responses for oversized tool-hook payloads (#3211), and Windows regular-file
fsyncEPERMis tolerated across hooks, uninstall, and the native hook (#3191).
Additional fixes
- Isolated standard launches are documented in the CLI and README (#3192).
Release collateral
1c007fff,122b0cba,fb13a6db, and0a7baa81are v0.20.2 post-publish evidence corrections carried forward; they are release-collateral inventory only.4b557d13is the 0.20.3 version-development preparation commit.
Merged PRs since v0.20.2
#3135, #3143, #3153, #3186, #3187, #3191, #3192, #3196, #3201, #3211, #3215, #3217, #3218. Issues #3121, #3127, #3181, #3194, #3195, #3199, #3203, and #3204 are associated issues, not additional PRs.
Compatibility
Patch release with no intentional breaking CLI or package-layout changes; the one feature (#3143) is additive and backward-compatible.
Validation
Local build, lint, typecheck, plugin-bundle, native-agents, and Node test gates for the touched surface are recorded in docs/qa/release-readiness-0.20.3.md. External CI, tag, GitHub release, and npm provenance publication evidence is recorded in that same readiness record as the publish sequence completes.
Contributors
Thanks to bellman and @Yeachan-Heo for contributing to this release.
Full Changelog: v0.20.2...v0.20.3
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About Oh My Codex
All releases →Beta — feedback welcome: [email protected]