forgejo-mcp/CHANGELOG.md
2026-06-10 07:06:17 +00:00

92 KiB
Raw Permalink Blame History

2.29.0 (2026-06-10)

✨ Features

  • ✨ add whitelist params to edit_branch_protection (cd190ed)
  • ✨ label CRUD tools and resource-templates (closes #190) (6c7e0fe), closes #rrggbb

🐛 Fixes

  • deps: update dependency @fission-ai/openspec to v1.4.0 (78cb277)
  • deps: update dependency @fission-ai/openspec to v1.4.1 (3e4eaaf)

📝 Documentation

  • 🏷️ register 'RFC - Request For Comments' label (f7a2591), closes #0e8a16
  • 📝 add label-management showboat demo + README index entry (bc3f3db)
  • 📝 add OpenSpec change for wiki support via direct API (aa6fd2b), closes #32
  • 📝 apply convergence-round refinements to add-wiki-support (de6229d), closes #32
  • 📝 harden add-wiki-support spec via adversarial debate (62c5424), closes #32
  • 📝 mark label-crud tasks done; update README + AGENTS docs (db1bf44), closes #190
  • 📝 OpenSpec change label-crud (label CRUD tools + label resources) (ca69d3b), closes #190 #190
  • 📝 third-pass survival check refinements for add-wiki-support (aad9b36), closes #32

🔁 Chore

  • ✨ add opsx sync/verify commands and update openspec skills (af66960)
  • 📊 snapshot release download counts (0ba6b83)
  • 📊 snapshot release download counts (d0e1833)
  • 📊 snapshot release download counts (27b6933)
  • 📊 snapshot release download counts (c10b700)
  • 📊 snapshot release download counts (a0b298c)
  • 📊 snapshot release download counts (d213a97)
  • 🔧 automerge non-major container image updates (9f9dbaf)
  • 🔧 switch to GPL-3.0, update config and dev rules (3e265ea)
  • 🔧 update beads issue tracker state (00221ef)
  • deps: lock file maintenance (d44e2b0)
  • deps: update quay.io/hummingbird/core-runtime:2.42 docker digest to a71de5c (9eff781)
  • deps: update quay.io/hummingbird/go docker tag to v1.26.4 (eb66d14)
  • deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to 1aaf9b3 (dfb6ee3)
  • deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to 218c841 (ff9786e)
  • deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to 3828e50 (73e4587)
  • deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to 4333774 (801ecbc)
  • deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to 5f0d472 (1ece055)
  • deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to b3a5ba1 (1e3e805)
  • deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to cdef296 (6aaea12)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 1aaf9b3 (366ffed)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 218c841 (e7eb2d1)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 3e54930 (9938dc3)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 4333774 (5861913)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to b312927 (68d38d7)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to b3a5ba1 (bec9422)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to cdef296 (9cffae6)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to dd39528 (539d7af)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to f7764ee (71b14f0)

2.28.0 (2026-06-02)

✨ Features

  • ✨ branch protection edit — push/merge/approvals whitelists (3259301)

🐛 Fixes

  • 🐛 push image version tag directly, never delete a staging tag (748de51)

🔁 CI

  • 🚀 track-downloads pushes via PR + auto-merge (main is protected) (ffbc8d8)
  • 🚀 track-downloads schedules auto-merge when checks are required (e5ffd8e), closes #249

🔁 Chore

  • 📊 snapshot release download counts (2e3bd30)

2.27.0 (2026-06-02)

✨ Features

  • ✨ branch protection management — CRUD tools + forgejo:// resources (uc6) (0826172), closes #195
  • ✨ branch protection management — CRUD tools + forgejo:// resources (uc6) (#196) (70765bc)
  • ✨ build and publish signed OCI image on tag release (bdfd968)
  • 📊 daily release-download tracking + Chart.js dashboard (c6bdcfa)

🐛 Fixes

  • 🐛 avoid SIGPIPE (exit 141) capturing buildah image id (e1092ce)
  • 🐛 Forgejo push auth — token as userinfo, not x-access-token (9df82c8)
  • 🐛 serialize build-image after goreleaser to prevent PVC contention (5dc1a18)
  • 🐛 skip :latest image promotion for pre-release tags (596527e)
  • 💚 POSIX sh for runner — no bash in pod image (shell: sh, drop pipefail/herestrings) (976b245)
  • 💚 respect XDG/HOME — writable dir for git config on read-only pod FS (b83fcde)
  • 💚 run in own pod image — drop container:, manual clone, distro-agnostic deps (16a7000)
  • 💚 run track-downloads on codeberg-runner-openshift (docker label unavailable) (d1b0f79)
  • 💚 use ubuntu-latest runner label (781c32f)
  • 📝 point README artifact-key fetch at renamed cosign-signing-key-artifacts.pub (c0f6595)
  • 📝 point README artifact-key fetch at renamed cosign-signing-key-artifacts.pub (#194) (2c84eed)
  • 🔒️ reject bare tokens in stateless HTTP auth (63e1624)
  • 🔒️ resolve goern push token for cosign in image sign + SBOM tasks (2a0db63)
  • 🔒️ sign SBOM via cosign attest (replace deprecated attach sbom) (560e375), closes sigstore/cosign#2755
  • 🔥 remove ephemeral :build-tmp tag after promotion (f026f8c)

📝 Documentation

  • ✏️ stamp showboat demo provenance with PR #193 (120b0f0)
  • 📝 archive branch-protection-management + co-locate demo (uc6) (88cd866)
  • 📝 archive branch-protection-management + co-locate demo (uc6) (#197) (0fbfe56)
  • 📝 archive signed-sbom-attestation + showboat demo (release-tools-image) (6311de0), closes #189
  • 📝 archive signed-sbom-attestation + showboat demo (release-tools-image) (#193) (e5edfe6)
  • 📝 archive stateless-http-auth change, sync spec (f107ca3)
  • 📝 openspec change — branch protection management (branch-protection capability) (6312bd2)
  • 📝 openspec change — branch protection management (branch-protection capability) (#195) (1b994fb)
  • 📝 openspec change — signed SBOM attestation (release-tools-image) (5207bd9), closes sigstore/cosign#2755
  • 📝 openspec change — signed SBOM attestation (release-tools-image) (#189) (7b85ba4)
  • 📝 retarget showboat skill from spellkave to forgejo-mcp (1e017ef)
  • 📝 showboat demo for branch protection (uc6) — token-free (3e5dad4)

⚡ Refactor

  • ♻️ hardcode repo+branch in push, drop GITHUB_* runner vars (2770e79)

🔁 CI

  • ⏭️ skip on-pull-request pipeline for docs-only PRs (#180) (03e58ea)
  • 🚀 enforce check-demos in PaC and pre-commit (cb6f657)
  • 🚀 track-downloads pushes via PR + auto-merge (main is protected) (b36d097)

🔁 Chore

  • 📊 snapshot release download counts (ef6db22)
  • 📊 snapshot release download counts (01e29f1)
  • 🔖 close bead forgejo-mcp-5zy (download tracking shipped) (0df01c2)
  • 🔖 sync beads jsonl (da794b0)
  • 🔖 track bead forgejo-mcp-3ph for wiki OpenSpec (f6596bf)
  • 🔖 track bead forgejo-mcp-5zy (release download analytics) (7c9c182)
  • 🔖 track bead forgejo-mcp-dn0 (OCI image release pipeline) (33e4eba)
  • 🔖 track bead forgejo-mcp-fd6 (label tools + resource templates) (03633b3)
  • 🔧 add bead forgejo-mcp-8if (merge #185, finish smoke tests, archive) (0008cb3)
  • 🔧 add make check-demos target (4bae972)
  • 🔧 add openspec verify-change and sync-specs skills (8614964)
  • 🔧 add OWNERS for Pipelines as Code CI authorization (f268f8d), closes #178
  • 🔧 add showboat skill (spec-linked demo artifact convention) (890c1ec)
  • 🔧 add verify-and-journal wrapper script for OpenSpec SQI (a900db0)
  • 🔧 close forgejo-mcp-dn0 (OCI image publish) (7d51b76)
  • 🔧 close forgejo-mcp-o5b (:latest gating) (6f9cc57)
  • 🔧 prefix all .tekton PipelineRun names with forgejo-mcp- (b12dd07)
  • 🔧 track follow-up issues for image latest-tag + SBOM attest (a0e7ab3)
  • 🔧 wire up just check-demos anchored-demo checker (15cd115)
  • 🗂️ bd claim 0zl (README artifact-key rename) (78ab25b)
  • 🗂️ bd close 0zl (merged #194, README artifact-key fixed) (d5d84cb)
  • 🗂️ bd close 3y1 (merged #193, signed-sbom-attestation archived) (8078ce5)
  • 🗂️ bd close aa6 (cosign attest migration) + file 3y1 spec follow-up (fd7fdd5)
  • 🗂️ bd close fd6 (label CRUD issue #190 prepared) (0e6b5c6)
  • 🗂️ bd close k5f (extend #136 scope to webhook resource-templates) (86d95da)
  • 🗂️ bd close uc6 (branch protection shipped #195/#196/#197) (313e1cb)
  • 🗂️ bd file 773 (label-crud openspec impl, PR #192) (dedc5b5)
  • 🗂️ bd file tcy (CLI resource-read parity, Codeberg #191) (5a5d921)
  • 🗂️ bd update 3y1 (signed-sbom archived; file 0zl README §4 key-rename follow-up) (8989dd4)
  • 🗂️ bd update 773 (label-crud debate outcome: delete_mode enum, repo-prefixed names, org URI) (7b2a16e)
  • 🗂️ bd update 773 (label-crud scope: org CRUD + safe delete) (caa1708)
  • 🗂️ bd update uc6 (branch-protection openspec proposed) (05731b0)
  • 🗂️ track PR #189 on bd-3y1 (signed SBOM openspec change) (7234a08)
  • 🗃️ sync beads state (close vbz, add hxv) (daf834b)
  • deps: lock file maintenance (d5f0e1d)
  • deps: update quay.io/hummingbird/go:1.26.3-builder docker digest to 8701cf6 (a7b46f7)
  • deps: update quay.io/hummingbird/go:1.26.3-builder docker digest to 9523912 (6ffa142)
  • deps: update registry.access.redhat.com/hi/go:1.26.3-builder docker digest to ca7aa43 (874e9a4)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 8701cf6 (247d64f)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 9523912 (7279457)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to ca7aa43 (004a28c)
  • migrated to a project of it's own: https://codeberg.org/goern/beads-tv (f61e858)
  • release: 2.27.0-alpha.1 (3914fbe)

2.27.0-alpha.1 (2026-06-01)

✨ Features

  • ✨ build and publish signed OCI image on tag release (bdfd968)
  • 📊 daily release-download tracking + Chart.js dashboard (c6bdcfa)

🐛 Fixes

  • 🐛 Forgejo push auth — token as userinfo, not x-access-token (9df82c8)
  • 💚 POSIX sh for runner — no bash in pod image (shell: sh, drop pipefail/herestrings) (976b245)
  • 💚 respect XDG/HOME — writable dir for git config on read-only pod FS (b83fcde)
  • 💚 run in own pod image — drop container:, manual clone, distro-agnostic deps (16a7000)
  • 💚 run track-downloads on codeberg-runner-openshift (docker label unavailable) (d1b0f79)
  • 💚 use ubuntu-latest runner label (781c32f)

⚡ Refactor

  • ♻️ hardcode repo+branch in push, drop GITHUB_* runner vars (2770e79)

🔁 CI

  • ⏭️ skip on-pull-request pipeline for docs-only PRs (#180) (03e58ea)

🔁 Chore

  • 📊 snapshot release download counts (ef6db22)
  • 📊 snapshot release download counts (01e29f1)
  • 🔖 close bead forgejo-mcp-5zy (download tracking shipped) (0df01c2)
  • 🔖 sync beads jsonl (da794b0)
  • 🔖 track bead forgejo-mcp-3ph for wiki OpenSpec (f6596bf)
  • 🔖 track bead forgejo-mcp-5zy (release download analytics) (7c9c182)
  • 🔖 track bead forgejo-mcp-dn0 (OCI image release pipeline) (33e4eba)
  • 🔖 track bead forgejo-mcp-fd6 (label tools + resource templates) (03633b3)
  • 🔧 add openspec verify-change and sync-specs skills (8614964)
  • 🔧 add OWNERS for Pipelines as Code CI authorization (f268f8d), closes #178
  • 🔧 add verify-and-journal wrapper script for OpenSpec SQI (a900db0)
  • 🔧 close forgejo-mcp-dn0 (OCI image publish) (7d51b76)
  • 🗃️ sync beads state (close vbz, add hxv) (daf834b)
  • deps: lock file maintenance (d5f0e1d)
  • deps: update quay.io/hummingbird/go:1.26.3-builder docker digest to 8701cf6 (a7b46f7)
  • deps: update registry.access.redhat.com/hi/go:1.26.3-builder docker digest to ca7aa43 (874e9a4)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 8701cf6 (247d64f)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to ca7aa43 (004a28c)
  • migrated to a project of it's own: https://codeberg.org/goern/beads-tv (f61e858)

2.26.0 (2026-05-28)

✨ Features

  • ✨ enable Tekton Chains SLSA v1.0 provenance for release-tools image (3125eec)
  • ✨ focus mode — card click highlights dep-chain in subway map (8fc1e75)
  • ✨ MCP resource templates — slice 3 (commit status) (52b19ac)
  • ✨ MCP resource templates — slices 1+2 (core framework + commit) (4249374), closes #148
  • ✨ MCP resource templates — slices 4+5 (repo+owner, issue+comment) (79d0940)
  • ✨ MCP resource templates — slices 6+7 (PR resource + docs/wrap) (f6cc2f1)

🐛 Fixes

  • ✏️ rename CommmentsTruncated → CommentsTruncated in pull resource (683404c)
  • 🐛 map parse errors via MapForgejoError in commit resource (81d1945)
  • 🐛 map parse errors via MapForgejoError in owner resource (6cecf67)
  • 🐛 map parse errors via MapForgejoError in repo resource (0c177af)
  • 🐛 map parse errors via MapForgejoError in status resource (10c8403)
  • 🐛 openspec spec/release-tools-image add Purpose + Requirements headers (cefe9ef)
  • 🐛 owner resource: surface orgErr on transport failure, explicit -32003 on both-404 (19f1efd)
  • 🐛 reject empty/whitespace URI segments in forgejo:// parser (55a39f4)
  • 🐛 request EmbeddedListCap+1 issue comments to detect truncation (321b1a0)
  • 🐛 request EmbeddedListCap+1 PR comments to detect truncation (9e5b930)
  • 🐛 request EmbeddedListCap+1 PR reviews to detect truncation (182898a), closes #172
  • 🐛 request EmbeddedListCap+1 statuses to detect truncation (ee1217d)
  • 🐛 unwrap ResourceError in commit resource handler (f8d661e)
  • 💚 PaC task annotation YAML folding — collapse to single-line bracketed list (3a12931), closes #172
  • 💚 use GO_IMAGE for license-check to break bootstrap circular dep (1939dbf)
  • 🔥 remove Forgejo CI workflows superseded by Tekton pipeline (1777cca)
  • 🚨 gofmt drift on resource files (8409fdc)

📝 Documentation

  • 📚 demos walkthrough for forgejo:// resource templates (945b54b)
  • 📝 ADR addendum — Tekton hard cutover after v2.25.1 (4eed83a), closes #164
  • 📝 openspec proposal for MCP resource templates (c8c2c0a)

⚡ Refactor

  • 🏗️ classify parse errors via sentinel ErrInvalidParams (-32602) (1aa797a)

🔁 CI

  • ✨ add go-licenses check + Conventional Commits PR title gate (508c7c0)

🔁 Chore

  • 🗂️ bd: close fix-pull_172 (ylb + 13 children — PR #172 review fixes shipped) (52f41f5)
  • 🗂️ bd: close forgejo-mcp-13x (PR #172 merged) (90d064b)
  • 🗂️ bd: close forgejo-mcp-pkz (PR #173 merged) (2dbb148)
  • 🗂️ bd: log forgejo-mcp-1tc (openspec spec/release-tools-image fix on PR #148) (2b10704)
  • 🗂️ bd: log forgejo-mcp-pkz (resource templates demo) (3587e04), closes #173
  • 🗂️ bd: log forgejo-mcp-wbw (PaC task annotation YAML folding fix on PR #172) (67a7532)
  • 🗂️ bd: log mcp-resources-impl team (13x in_progress, 7ra/7de follow-ups) (4112c7a), closes #172
  • 🗂️ bd: log PR #172 review-finding fix beads (parent ylb + 13 children) (c1c95cb)
  • 🗂️ close forgejo-mcp-46j + forgejo-mcp-1p1 session wrap (2de0fc7)
  • 🗂️ close forgejo-mcp-het — focus-mode dep graph shipped (c7c9167)
  • 🗂️ close forgejo-mcp-j52, e9i, td8 — v2.25.1 session wrap (43a421d)
  • 🗂️ move dashboard into .beads/ — ships next to its data (042dee8)
  • AGENTS cleanup (c644963)
  • deps: update registry.access.redhat.com/hi/core-runtime:2.42 docker digest to c85f5e0 (dab2e88)
  • deps: update registry.access.redhat.com/hi/go:1.26.3-builder docker digest to 6bc8aae (f9ad163)
  • deps: update registry.access.redhat.com/hi/go:1.26.3-builder docker digest to 6f8cd67 (82762f3)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 6bc8aae (bb93eff)
  • deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 6f8cd67 (0d492cd)

[Unreleased]

Added

  • MCP resource templates: 7 URI-addressable read surfaces (forgejo://owner, forgejo://repo, forgejo://repo/.../commit, .../commit/.../status, .../issue, .../{kind}/.../comment, .../pr). Coexists with the existing tool surface — no tool removed. Embedded lists capped at 30 items with truncation sentinel.

2.25.1 (2026-05-26)

🐛 Fixes

  • 🐛 replace deprecated --output-signature with --bundle in cosign (cee6465)
  • 🔒️ repoint cosign-sign-release task at cosign-signing-key-artifacts (7633666)
  • 🔒️ repoint release-tools tekton tasks at cosign-signing-key-images (d382534)

🔁 Chore

  • 🔧 default beads-dashboard status filter to open (1003590)
  • 🗂️ close forgejo-mcp-j52 after PR #164 merged (6a90151)

2.25.0 (2026-05-26)

✨ Features

  • ✨ add CRT phosphor beads dashboard (a620b17)
  • ✨ add govulncheck + openspec to release-tools image (c1316d8)
  • ✨ render dep graph as subway map (e6a6185)
  • ci: 🚀 add release-tools image build + publish Tekton pipelines (iteration 2) (5df98ba)
  • image: 🐳 add release-tools OCI image source tree (iteration 1) (240a544)
  • release-tools image source tree + build/publish Tekton pipelines (#157) (e02cf56)

🐛 Fixes

  • ✏️ buildah needs runAsUser 0 for chroot isolation with hi/go base (41cdafc)
  • ✏️ correct CEL macro files.any.exists → files.exists (7706d17)
  • 🐛 cosign sha256sum path — download to /tmp/cosign-linux-amd64 before verify (8ffcd31)
  • 🐛 filename mismatch in sha256sum + privileged SCC for buildah (97ee636)
  • 🐛 move release-tools PipelineRuns to .tekton/ root (4649f98)
  • 🐛 pipeline task fixes validated by run11 success (0901bf0)
  • 🐛 rootless buildah in build-image task for OpenShift SCC (6a55f3f)
  • 🔒️ address automated code review findings from PR #157 (d59b910)
  • 🔒️ restore fail-closed cosign signing, remove bootstrap SKIP_SIGN (8a282ca)
  • 🔒️ SHA256-verify goreleaser+syft, drop piped install.sh (da3cfb1)
  • ci: 🔧 registry → codeberg.org/operate-first + cosign task bugs + bootstrap (2f5dc51)

📝 Documentation

  • openspec: 📋 apply adversarial review patches to release-tools-image change (ddbb5a0)
  • openspec: 📋 propose release-tools-image change for op1st Tekton pipeline (c814127)

💈 Code-style

⚡ Refactor

  • ♻️ rewrite .tekton/tasks/ to use release-tools image (0dcb2e1)

🔁 Chore

  • 📋 archive release-tools-image openspec change + sync spec (bd92d21)
  • 🔧 set vendor label to 'Operate First, by #B4mad' (0f1e649)
  • 🗂️ beads close forgejo-mcp-00o, 3h2, aps + session wrap (1137f7e)
  • 🗂️ beads jsonl claim forgejo-mcp-3h2 + forgejo-mcp-00o (a7883a6)
  • 🗂️ beads jsonl close forgejo-mcp-p1p (bbe36d6)
  • 🗂️ beads jsonl post-#155 merge (9c84d7f)
  • 🗂️ beads jsonl post-PR#157 merge + close forgejo-mcp-1b4 (ef5cf05)
  • 🗂️ beads jsonl post-PR#157 review fixes (ef300ba)
  • 🗂️ beads jsonl post-tasks rewrite (1ecb952)
  • 🗂️ beads jsonl: capture release pipeline findings on P0 image bead (082c71e)
  • 🗂️ merge beads jsonl after #161 (8c1df9d)

2.24.2 (2026-05-25)

🐛 Fixes

  • ci: 🐛 move Go cache out of workspace to avoid goreleaser dirty-tree check (efcec22)

🔁 Chore

2.24.1 (2026-05-25)

🐛 Fixes

  • ci: 🐛 collapse goreleaser Task install+run into single step (94b2c89)

🔁 Chore

2.24.0 (2026-05-25)

✨ Features

  • ci: 🚀 add Tekton release pipeline mirroring Forgejo Actions release (cf3bddf)

🐛 Fixes

  • ci: 🔧 align release pipeline secret names with op1st-pipelines reality (d2cc52b)

📝 Documentation

  • 📝 add Verifying Releases chapter with cosign instructions (c1afa7a)

🔁 Chore

  • 🔥 remove stale secrets/ + point at op1st-emea-b4mad as normative cosign pub (b63095f)
  • 🗂️ beads jsonl post-#150 merge (641e8f1)
  • 🗂️ beads jsonl post-#151 merge (ca93489)
  • 🗂️ beads jsonl post-#152 merge (ddc8206)
  • ci: 🔌 soft-disable Forgejo release workflow auto-trigger (2cd6682), closes #150

2.23.1 (2026-05-25)

🐛 Fixes

  • 🚨 release: inject main.Version + use 'version' subcommand in smoke-test (c74da84), closes #172

📝 Documentation

  • 📝 credit byteflavour for v2.23.0 stateless-auth + NixOS docs (298c6e4), closes #138 #146

🔁 Chore

2.23.0 (2026-05-25)

✨ Features

  • ✨ add 14 MCP tools for Forgejo releases and release attachments (a41115b)
  • robust stateless auth with security fixes and improved tests (4969ee5)
  • stateless per-request token handling for HTTP/SSE transports (684844c)

🐛 Fixes

  • 🔒️ bump golang.org/x/crypto to v0.52.0 (GO-2026-5018) (98b3cd5)
  • 🔒️ bump x/net to v0.55.0 + jsonparser to v1.1.2 (govulncheck) (e084bf7)

📝 Documentation

  • 📝 add demos/README.md index grouping demos by topic cluster (621e664)
  • 📝 add multi-tenant HTTP mode documentation and demo (b53143f)
  • 📝 add Radicle mirror clone instructions to README (097516a)
  • 📝 add showboat demos for v2.22.0 (org labels, bounded responses) (4baeb30)
  • 📝 archive 5 delivered openspec changes, track 2 unimplemented (7eb8a34), closes #129
  • 📝 archive add-releases-support, sync release-management spec (1dc7a17), closes #134
  • 📝 battle-test forgejo-action-code-review, resolve C4 spike (48809bd)
  • 📝 link demos/ index from top-level README (e55c259)
  • 📝 retrofit openspec for stateless-http-auth (#137, PR #138) (df15877)
  • improve NixOS installation instructions (9e29a13)

💈 Code-style

  • 🎨 apply gofmt -w to operation/* and pkg/* (34effc8)

🔁 CI

  • 🔒️ add cosign-keygen.sh producing SOPS-encrypted k8s Secret (42614b0)
  • 🔒️ provision cosign signing material for release pipeline (d3fcc3d)
  • 🔧 gitleaks: allow placeholder tokens in demo docs (ed5f419)
  • 🚀 add Forgejo Actions CI workflow with Go cache (815a2d0)
  • 🚀 add gitleaks scanning (Tekton + pre-commit) (b936f8a)
  • 🚀 add vet, gofmt-check, mod-tidy, lint, race, govulncheck to go-ci (738d979)
  • 🚀 drop redundant PaC annotations on openspec-validate (2b5721a)
  • 🚀 enable checksums and per-archive CycloneDX SBOMs in goreleaser (74f601a)
  • 🚀 release.yml: syft + cosign install, smoke-test, conditional sign (c82fbee)

🔁 Chore

  • 🔧 add Claude Code agent team infrastructure for multi-agent workflows (3a73026)
  • 🔧 bd: claim 51l, link PR #144 (23be9fd)
  • 🔧 bd: claim forgejo-mcp-9n2, link PR #143 (eed502b)
  • 🔧 bd: claim+close 02o (PR #145 labeled Kind/Security) (45bdadc)
  • 🔧 bd: close 51l (PR #144 merged) (c0416e3)
  • 🔧 bd: close 9n2, file e9i (ci.yml run #147 failure) (2ff1ddd)
  • 🔧 bd: close dhd (PR #147 merged), claim 1l5 RFC (ebb70b3)
  • 🔧 bd: file + close forgejo-mcp-5x8 (PaC webhook fix) (f305e33)
  • 🔧 bd: file C5 spike + C4 cleanup issues, link to forgejo-mcp-673 (b6eb0a9)
  • 🔧 bd: file CI hardening epic (Steps 1–3 + follow-ups) (f4cacf1)
  • 🔧 bd: file dhd (gitleaks placeholder allowlist), claim, link PR #147 (fa2c5fc)
  • 🔧 reconcile .gitignore (7063249)
  • 🔧 switch Containerfile to Project Hummingbird base images (3d8ade1)
  • deps: update registry.access.redhat.com/hi/go docker tag to v1.26.3 (a623431)
  • update beads jsonl (bbbf84e)

2.22.0 (2026-05-12)

✨ Features

  • add list_org_labels + merge org labels in list_repo_labels (#130) (8862e83), closes #125
  • bounded responses for get_pull_request_diff + get_file_content (#131) (4cebe0b), closes #124

🐛 Fixes

📝 Documentation

  • 📝 add openspec change for releases support (#127) (d0bab23)
  • 📝 add Purpose+Requirements headers to cli-mode spec (23db899)
  • 📝 add Purpose+Requirements headers to PR specs (c8a7883)
  • 📝 add spec deltas to forgejo-action-code-review change (a83a033)
  • 📝 codify output-bounding rule for MCP tools (1412cbe), closes #124 #124
  • extension: address review feedback on #118 (a88c2a3)

⚡ Refactor

  • ♻️ rename openspec Tekton PipelineRuns (85a8f4f)

🔁 CI

  • 🚀 add openspec validate workflow (1f6b256)
  • 🚀 migrate CI from Forgejo Actions to op1st Tekton (ae35a30)
  • 🚀 migrate openspec validate from Forgejo Actions to op1st Tekton (fbd1203)

🔁 Chore

  • 🔧 close beads forgejo-mcp-43k (Tekton CI migration) (0be622d)
  • 🔧 close forgejo-mcp-efo in beads tracker (616c1ce)
  • 🔧 close forgejo-mcp-fdx (openspec Tekton migration) (a385896)
  • 🔧 ignore pycache and add codeberg-issue-triage skill (64b6a54)
  • 🔧 link forgejo-mcp-43k bead to Codeberg #133 (6adda88)
  • 🔧 note PR #130 merge in forgejo-mcp-7ch bead (c0a8b20)
  • 🔧 retest PaC after PAT scope fix (59da82c)
  • 🔧 retrigger PaC after PAT scope expansion (a27df63)
  • 🔧 retrigger PaC after webhook install (2f496b4)
  • 🔧 retrigger to confirm openspec PaC status flake is transient (0e36348)
  • 🔧 slim opsx to core 4 commands (apply/archive/explore/propose) (7e718f5)
  • 🔧 track add-bounded-text-responses follow-up in beads (602ecaa), closes #124
  • 🔧 track follow-up bd issues from #127 release-spec work (0e53c51), closes #129

2.21.0 (2026-05-07)

✨ Features

  • extension: package as Claude Desktop Extension (.mcpb) (998f92b)

📝 Documentation

  • 📝 credit synath for .mcpb packaging and add claude-code agent (8332e92), closes #118 116/#117

🔁 CI

  • 🚀 build and attach .mcpb extension on tagged release (fdc6305)

🔁 Chore

  • 🔧 add mcpb and help make targets (679d593)
  • deps: update golang:1.26-alpine docker digest to 91eda97 (cb058c3)
  • deps: update golang:1.26-alpine docker digest to e58f92c (13e52b5)

2.20.0 (2026-05-06)

✨ Features

  • add list_repo_contents and get_repo_tree MCP tools (8c0759d)
  • get_file_content returns plain text by default (d76be68)
  • name binary-file case in get_file_content description (c2c33de), closes #116

📝 Documentation

  • 📝 add BrilliantKahn to contributors with first-OSS-PR note (7f214f5)

2.19.0 (2026-05-02)

✨ Features

  • add issue & comment attachment tools (#109) (d0cfd66)

🐛 Fixes

  • check merged bool in MergePullRequestFn (#113) (5326fb4)
  • use ServerVersion for connection check instead of GetMyUserInfo (#112) (b427041)

📝 Documentation

  • 📝 add synath and heathen711 to contributors (db0d925), closes #112 #113 #106
  • 📝 amend issue-attachments spec: 1 MiB cap, always include download URL (91bc2dd), closes #2

2.18.0 (2026-04-21)

✨ Features

  • ✨ add issue/PR time tracking and stopwatch tools (e28cd91)

📝 Documentation

  • 📝 add issue-attachment spec and beads issue tracking (ae2c981), closes #106 #98
  • 📝 add issue/PR time tracking spec (3d9fd1a)

🔁 Chore

  • deps: update golang:1.26-alpine docker digest to 1fb7391 (f5c89b5)
  • deps: update golang:1.26-alpine docker digest to 27f8293 (a24ccc7)
  • deps: update golang:1.26-alpine docker digest to c2a1f7b (de73b9e)
  • deps: update golang:1.26-alpine docker digest to f853308 (9c6540c)

2.17.0 (2026-03-27)

✨ Features

  • ✨ add streamable HTTP transport support (#99) (cee3993)

📝 Documentation

  • 📝 update contributors with Vokuar and janbaer (885e9c0)

2.16.0 (2026-03-20)

✨ Features

📝 Documentation

  • ✨ add OpenSpec artifacts for organization management feature (2d540a5), closes #92
  • 📝 add showboat demo for issue label management tools (004a2c6)
  • 📝 add showboat demo for organization management tools (cf407fd)
  • 📝 update contributors with ignasgil and dmikushin (8e93b89)

🔁 Chore

  • 🔥 remove obsolete smithery.yaml and mcp-settings-sample.json (b040259)

2.15.1 (2026-03-14)

📝 Documentation

  • ✨ add missing contributors (Ronmi Ren, jiriks74, th, opencode) (6fbb827), closes #51

🔁 Chore

  • bump github.com/mark3labs/mcp-go from v0.43.2 to v0.44.0 (4a18f7f)

2.15.0 (2026-03-11)

✨ Features

  • add unified-notifications skill for GitHub and Codeberg (39f3021)
  • add user agent configuration support (d3cb629)
  • trigger 2.15.0 release (9768a1d)

📝 Documentation

  • extend Contributors section with community contributors (intercom-fep.2.1) (df8e7b9)
  • update contributors with new members, fix links, and add highlights (d4c9ebb)

🔁 Chore

2.14.0 (2026-03-11)

✨ Features

  • add unified-notifications skill for GitHub and Codeberg (39f3021)
  • add user agent configuration support (d3cb629)
  • notifications: implement complete notification API (78916f6)
  • trigger 2.15.0 release (9768a1d)

🐛 Fixes

  • notifications: address PR #86 review comments (2e5d62b)

📝 Documentation

  • add Contributors section to README (intercom-fep.1) (17304d5)
  • extend Contributors section with community contributors (intercom-fep.2.1) (df8e7b9)
  • update contributors with new members, fix links, and add highlights (d4c9ebb)

🔁 Chore

2.14.0 (2026-03-08)

✨ Features

  • notifications: implement complete notification API (78916f6)

🐛 Fixes

  • notifications: address PR #86 review comments (2e5d62b)

📝 Documentation

  • add Contributors section to README (intercom-fep.1) (6819590)

2.13.0 (2026-03-07)

✨ Features

  • add check_notifications tool (f075a45)
  • add list_repo_milestones + list_repo_labels MCP tools (closes #80) (8a87af1)

🔁 Chore

  • deps: update golang:1.26-alpine docker digest to 2389ebf (ebe684e)

[Unreleased]

✨ Features

  • ✨ add list_repo_milestones and list_repo_labels MCP tools for milestone/label discovery (#80)

2.12.0 (2026-03-01)

✨ Features

  • ✨ add code-review skill and OpenSpec specs/tasks (d39cb01)
  • ✨ add design doc for Forgejo code review skill (697e207)
  • ✨ add OpenSpec changes for Forgejo code review integration (03c7dc0)
  • ✨ add usage tracking to code-review skill (41307db)

🐛 Fixes

  • ✨ add list_pull_request_files/get_pull_request_diff tools, rewrite code-review skill (19f2034)
  • 🔒️ prevent shell injection in code-review CLI fallback (8b255f9)
  • nil pointer deref on resp.StatusCode and flag.Parse() in init() (dfdb995), closes #76
  • some local leftovers merged (44ac633)

📝 Documentation

  • 📝 document go install known issue and link to #67 (4388b47)

✅ Tests

2.11.0 (2026-02-18)

✨ Features

  • ✨ add --version flag (GNU standard) alongside version subcommand (6255653), closes #73
  • ✨ add Actions support (dispatch_workflow, list_workflow_runs, get_workflow_run) (4fea365), closes #103 #60

🐛 Fixes

  • 🐛 register actions domain in CLI tool listing (ebe97a0)

📝 Documentation

  • 📝 add Actions tools to README with list_workflow_runs examples (af4636e)

2.10.1 (2026-02-11)

🐛 Fixes

  • 🐛 base64-encode content in create_file and update_file (#72) (593eeb8)

🔁 Chore

  • deps: update golang docker tag to v1.26 (85dca17)

2.10.0 (2026-02-10)

✨ Features

  • ✨ add macOS (darwin) release assets (b63aebc), closes #70

📝 Documentation

  • add Arch Linux AUR installation options (94a4370)

2.9.1 (2026-02-06)

🐛 Fixes

  • 🔧 remove no-op replace directive from go.mod (5629f7b), closes #67

🔁 Chore

  • 📦 archive add-global-cli-mode change, sync cli-mode spec (d505c99)
  • deps: update golang:1.25-alpine docker digest to f6751d8 (36c3d6a)

2.9.0 (2026-02-06)

✨ Features

  • ✨ add --cli mode for direct tool invocation (c08e311)

🐛 Fixes

  • 🐛 release workflow checkout URL and skip-ci suppression (351e8b7)

📝 Documentation

  • 📝 add CLI mode proposal (OpenSpec change) (641b04a)
  • 📝 add CLI mode section to README (5e54b1c)

🔁 Chore

  • 🔧 switch to redbeard's forgejo-sdk fork (14cb733)

2.8.1 (2026-02-06)

🔁 Chore

  • 📦 archive merge-pull-request openspec change (194d830)
  • deps: update golang:1.25-alpine docker digest to f4622e3 (726e033)

2.8.0 (2026-01-31)

✨ Features

  • ✨ add merge_pull_request MCP tool (e416a4a), closes #54

🔁 Chore

  • 📦 archive pr-review-tool openspec change (7b3232a)

2.7.0 (2026-01-30)

✨ Features

  • ✨ add write-side PR review tools (578643c), closes #59

2.6.1 (2026-01-30)

🐛 Fixes

  • 🐛 show module version when installed via go install (c80dbfd)

2.6.0 (2026-01-30)

✨ Features

  • ✨ add version subcommand with build-time git info (433446b)

🐛 Fixes

  • 🐛 use SemVer-compliant version format (-dev+commit) (3b2bbbb)

2.5.1 (2026-01-30)

🐛 Fixes

  • 🐛 adapt to mcp-go v0.43.2 breaking change in CallToolParams.Arguments (a896e70)

🔁 Chore

  • 📝 add OpenSpec proposal and design for PR review tools (#59) (9475c00)
  • 🚀 add OpenSpec workflow, beads issue tracker, and merge PR proposal (b469158)
  • 🚀 more claude config (f420446)
  • deps: update alpine:edge docker digest to 9a341ff (63afe57)
  • deps: update golang:1.25-alpine docker digest to 660f0b8 (a799cb8)
  • deps: update golang:1.25-alpine docker digest to 98e6cff (5379f45)
  • deps: update golang:1.25-alpine docker digest to 9f7db8d (3c5b5cb)
  • deps: update golang:1.25-alpine docker digest to d9b2e14 (e798735)
  • deps: update golang:1.25-alpine docker digest to e689855 (1d1c35b)

2.5.0 (2026-01-06)

✨ Features

  • pull: add pull request reviews and review comments support (f2ff5be)

📝 Documentation

  • update README with new pull request review tools (f0c218f)

2.4.2 (2025-12-30)

🐛 Fixes

  • add build tag to wiki package for Nix build compatibility (7b7536a), closes #47

📝 Documentation

  • restructure documentation for users and developers (7e527e0)
  • simplify AGENTS.md and reference DEVELOPER.md (e294aa3)

2.4.1 (2025-12-29)

🐛 Fixes

  • add /v2 suffix to module path for go install compatibility (2e2604d)

2.4.0 (2025-12-29)

✨ Features

🔁 Chore

2.3.0 (2025-12-29)

✨ Features

  • issue: add comment management operations (708392b)
  • pull: add update_pull_request tool (81fb6ac)

🐛 Fixes

📝 Documentation

  • add projects support plan and AI agent configuration (c98ee59), closes #42
  • add wiki support implementation plan (79d13bb)

⚡ Refactor

  • mcp: optimize tool definitions for token efficiency (06d0ece)

🔁 Chore

  • deps: update alpine:edge docker digest to ea71a03 (be13f1f)
  • deps: update golang:1.25-alpine docker digest to 06cdd34 (f0df0a3)
  • deps: update golang:1.25-alpine docker digest to 182059d (c436e8a)
  • deps: update golang:1.25-alpine docker digest to 2611181 (ad1add3)
  • deps: update golang:1.25-alpine docker digest to 352f1ef (48c9080)
  • deps: update golang:1.25-alpine docker digest to 3587db7 (1999fd6)
  • deps: update golang:1.25-alpine docker digest to 6104e2b (4f5225b)
  • deps: update golang:1.25-alpine docker digest to 7256733 (da02a42)
  • deps: update golang:1.25-alpine docker digest to 8280f72 (1353798)
  • deps: update golang:1.25-alpine docker digest to 8b6b77a (cbbaeb9)
  • deps: update golang:1.25-alpine docker digest to a86c313 (dceb9f5)
  • deps: update golang:1.25-alpine docker digest to ac09a5f (44ab927)
  • deps: update golang:1.25-alpine docker digest to aee43c3 (7ec667b)
  • deps: update golang:1.25-alpine docker digest to d3f0cf7 (8d32231)
  • deps: update golang:1.25-alpine docker digest to ecb8038 (c6ec90d)
  • remove unused roo configuration (4121a50)

2.2.0 (2025-10-07)

✨ Features

  • deprecate GITEA_* environment variables in favor of FORGEJO_* (d7c54ac)
  • implement comprehensive MCP server logging improvements (97fce8f)

📝 Documentation

  • update README.md to use forgejo.example.org instead of forgejo.org (d760b2c)

⚡ Refactor

  • replace host/port flags with url and separate sse-port (2d59d29)

🔁 Chore

  • deps: update golang docker tag to v1.25 (b0a4c71)
  • deps: update golang:1.24-alpine docker digest to c8c5f95 (4d335c6)
  • deps: update golang:1.24-alpine docker digest to daae04e (df47a38)
  • deps: update golang:1.24-alpine docker digest to ddf5200 (fc69200)
  • deps: update golang:1.25-alpine docker digest to 2ad042d (bcb65c4)
  • deps: update golang:1.25-alpine docker digest to b6ed3fd (cc440cf)
  • deps: update golang:1.25-alpine docker digest to f18a072 (ce5dd65)
  • remove air part from Makefile (2bba853)

2.1.0 (2025-07-01)

✨ Features

  • add owner/organization support for repository creation (8acc73f), closes #17

🔁 Chore

  • deps: update golang:1.24-alpine docker digest to 68932fa (29d9359)
  • deps: update golang:1.24-alpine docker digest to b4f875e (2927727)
  • deps: update golang:1.24-alpine docker digest to ef18ee7 (97bff39)

2.0.0 (2025-04-24)

✨ Features

* rebase on https://codeberg.org/fraschm98/forgejo-mcp (9e8edcd (https://codeberg.org/goern/forgejo-mcp/commit/9e8edcd5514c5808798239c09579f390d350082f))

1.2.0 (2025-04-09)

✨ Features

  • add smithery.ai integration (4a46279)

🐛 Fixes

  • release pipeline sequence (7ebc987)

1.1.0 (2025-04-09)

✨ Features

  • add a project logo (8dac350)
  • api: add detailed schema for update_issue endpoint 🎯🛠️✨ (9199474)

🐛 Fixes

🔁 Chore

  • just small refactorings (5437bcc)
  • release: 1.1.0-alpha.1 [skip ci] (ef473df)
  • release: 1.1.0-alpha.2 [skip ci] (458d31c)
  • release: 1.1.0-alpha.3 [skip ci] (c53674e)

1.0.0 (2025-04-08)

✨ Features

  • add stdio and sse MCP server (38212fa)
  • consolidate T-016 implementation (5afe6fd)
  • extend codeberg issue interface with validation and metadata support (a426ec5)
  • issue-mgmt: enhance getIssue command with extended metadata and caching (13d183e)
  • issue: enhance getIssue with metadata and caching (fcc8779)

🐛 Fixes

  • build: resolve TypeScript build errors (4d125da)
  • improve error handling and rollback in CodebergService (938bd54)

📝 Documentation

  • add a screenshot of http server (6ae7ebe)
  • add development cost information (6985d37)
  • issue-mgmt: analyze existing code structure and capabilities (66a19df)
  • update the feature planning (8150b37)
  • update the README (e2146be)

⚡ Refactor

  • move TYPES to dedicated file to resolve circular dependency (949400c)

🔁 Chore