92 KiB
92 KiB
2.29.0 (2026-06-10)
✨ Features
- ✨ add whitelist params to edit_branch_protection (cd190ed)
- ✨ label CRUD tools and resource-templates (closes #190) (6c7e0fe), closes #rrggbb
🐛 Fixes
- deps: update dependency @fission-ai/openspec to v1.4.0 (78cb277)
- deps: update dependency @fission-ai/openspec to v1.4.1 (3e4eaaf)
📝 Documentation
- 🏷️ register 'RFC - Request For Comments' label (f7a2591), closes #0e8a16
- 📝 add label-management showboat demo + README index entry (bc3f3db)
- 📝 add OpenSpec change for wiki support via direct API (aa6fd2b), closes #32
- 📝 apply convergence-round refinements to add-wiki-support (de6229d), closes #32
- 📝 harden add-wiki-support spec via adversarial debate (62c5424), closes #32
- 📝 mark label-crud tasks done; update README + AGENTS docs (db1bf44), closes #190
- 📝 OpenSpec change label-crud (label CRUD tools + label resources) (ca69d3b), closes #190 #190
- 📝 third-pass survival check refinements for add-wiki-support (aad9b36), closes #32
🔁 Chore
- ✨ add opsx sync/verify commands and update openspec skills (af66960)
- 📊 snapshot release download counts (0ba6b83)
- 📊 snapshot release download counts (d0e1833)
- 📊 snapshot release download counts (27b6933)
- 📊 snapshot release download counts (c10b700)
- 📊 snapshot release download counts (a0b298c)
- 📊 snapshot release download counts (d213a97)
- 🔧 automerge non-major container image updates (9f9dbaf)
- 🔧 switch to GPL-3.0, update config and dev rules (3e265ea)
- 🔧 update beads issue tracker state (00221ef)
- deps: lock file maintenance (d44e2b0)
- deps: update quay.io/hummingbird/core-runtime:2.42 docker digest to a71de5c (9eff781)
- deps: update quay.io/hummingbird/go docker tag to v1.26.4 (eb66d14)
- deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to 1aaf9b3 (dfb6ee3)
- deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to 218c841 (ff9786e)
- deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to 3828e50 (73e4587)
- deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to 4333774 (801ecbc)
- deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to 5f0d472 (1ece055)
- deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to b3a5ba1 (1e3e805)
- deps: update quay.io/hummingbird/go:1.26.4-builder docker digest to cdef296 (6aaea12)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 1aaf9b3 (366ffed)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 218c841 (e7eb2d1)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 3e54930 (9938dc3)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 4333774 (5861913)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to b312927 (68d38d7)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to b3a5ba1 (bec9422)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to cdef296 (9cffae6)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to dd39528 (539d7af)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to f7764ee (71b14f0)
2.28.0 (2026-06-02)
✨ Features
- ✨ branch protection edit — push/merge/approvals whitelists (3259301)
🐛 Fixes
- 🐛 push image version tag directly, never delete a staging tag (748de51)
🔁 CI
- 🚀 track-downloads pushes via PR + auto-merge (main is protected) (ffbc8d8)
- 🚀 track-downloads schedules auto-merge when checks are required (e5ffd8e), closes #249
🔁 Chore
- 📊 snapshot release download counts (2e3bd30)
2.27.0 (2026-06-02)
✨ Features
- ✨ branch protection management — CRUD tools + forgejo:// resources (uc6) (0826172), closes #195
- ✨ branch protection management — CRUD tools + forgejo:// resources (uc6) (#196) (70765bc)
- ✨ build and publish signed OCI image on tag release (bdfd968)
- 📊 daily release-download tracking + Chart.js dashboard (c6bdcfa)
🐛 Fixes
- 🐛 avoid SIGPIPE (exit 141) capturing buildah image id (e1092ce)
- 🐛 Forgejo push auth — token as userinfo, not x-access-token (9df82c8)
- 🐛 serialize build-image after goreleaser to prevent PVC contention (5dc1a18)
- 🐛 skip :latest image promotion for pre-release tags (596527e)
- 💚 POSIX sh for runner — no bash in pod image (shell: sh, drop pipefail/herestrings) (976b245)
- 💚 respect XDG/HOME — writable dir for git config on read-only pod FS (b83fcde)
- 💚 run in own pod image — drop container:, manual clone, distro-agnostic deps (16a7000)
- 💚 run track-downloads on codeberg-runner-openshift (docker label unavailable) (d1b0f79)
- 💚 use ubuntu-latest runner label (781c32f)
- 📝 point README artifact-key fetch at renamed cosign-signing-key-artifacts.pub (c0f6595)
- 📝 point README artifact-key fetch at renamed cosign-signing-key-artifacts.pub (#194) (2c84eed)
- 🔒️ reject bare tokens in stateless HTTP auth (63e1624)
- 🔒️ resolve goern push token for cosign in image sign + SBOM tasks (2a0db63)
- 🔒️ sign SBOM via cosign attest (replace deprecated attach sbom) (560e375), closes sigstore/cosign#2755
- 🔥 remove ephemeral :build-tmp tag after promotion (f026f8c)
📝 Documentation
- ✏️ stamp showboat demo provenance with PR #193 (120b0f0)
- 📝 archive branch-protection-management + co-locate demo (uc6) (88cd866)
- 📝 archive branch-protection-management + co-locate demo (uc6) (#197) (0fbfe56)
- 📝 archive signed-sbom-attestation + showboat demo (release-tools-image) (6311de0), closes #189
- 📝 archive signed-sbom-attestation + showboat demo (release-tools-image) (#193) (e5edfe6)
- 📝 archive stateless-http-auth change, sync spec (f107ca3)
- 📝 openspec change — branch protection management (branch-protection capability) (6312bd2)
- 📝 openspec change — branch protection management (branch-protection capability) (#195) (1b994fb)
- 📝 openspec change — signed SBOM attestation (release-tools-image) (5207bd9), closes sigstore/cosign#2755
- 📝 openspec change — signed SBOM attestation (release-tools-image) (#189) (7b85ba4)
- 📝 retarget showboat skill from spellkave to forgejo-mcp (1e017ef)
- 📝 showboat demo for branch protection (uc6) — token-free (3e5dad4)
⚡ Refactor
- ♻️ hardcode repo+branch in push, drop GITHUB_* runner vars (2770e79)
🔁 CI
- ⏭️ skip on-pull-request pipeline for docs-only PRs (#180) (03e58ea)
- 🚀 enforce check-demos in PaC and pre-commit (cb6f657)
- 🚀 track-downloads pushes via PR + auto-merge (main is protected) (b36d097)
🔁 Chore
- 📊 snapshot release download counts (ef6db22)
- 📊 snapshot release download counts (01e29f1)
- 🔖 close bead forgejo-mcp-5zy (download tracking shipped) (0df01c2)
- 🔖 sync beads jsonl (da794b0)
- 🔖 track bead forgejo-mcp-3ph for wiki OpenSpec (f6596bf)
- 🔖 track bead forgejo-mcp-5zy (release download analytics) (7c9c182)
- 🔖 track bead forgejo-mcp-dn0 (OCI image release pipeline) (33e4eba)
- 🔖 track bead forgejo-mcp-fd6 (label tools + resource templates) (03633b3)
- 🔧 add bead forgejo-mcp-8if (merge #185, finish smoke tests, archive) (0008cb3)
- 🔧 add make check-demos target (4bae972)
- 🔧 add openspec verify-change and sync-specs skills (8614964)
- 🔧 add OWNERS for Pipelines as Code CI authorization (f268f8d), closes #178
- 🔧 add showboat skill (spec-linked demo artifact convention) (890c1ec)
- 🔧 add verify-and-journal wrapper script for OpenSpec SQI (a900db0)
- 🔧 close forgejo-mcp-dn0 (OCI image publish) (7d51b76)
- 🔧 close forgejo-mcp-o5b (:latest gating) (6f9cc57)
- 🔧 prefix all .tekton PipelineRun names with forgejo-mcp- (b12dd07)
- 🔧 track follow-up issues for image latest-tag + SBOM attest (a0e7ab3)
- 🔧 wire up just check-demos anchored-demo checker (15cd115)
- 🗂️ bd claim 0zl (README artifact-key rename) (78ab25b)
- 🗂️ bd close 0zl (merged #194, README artifact-key fixed) (d5d84cb)
- 🗂️ bd close 3y1 (merged #193, signed-sbom-attestation archived) (8078ce5)
- 🗂️ bd close aa6 (cosign attest migration) + file 3y1 spec follow-up (fd7fdd5)
- 🗂️ bd close fd6 (label CRUD issue #190 prepared) (0e6b5c6)
- 🗂️ bd close k5f (extend #136 scope to webhook resource-templates) (86d95da)
- 🗂️ bd close uc6 (branch protection shipped #195/#196/#197) (313e1cb)
- 🗂️ bd file 773 (label-crud openspec impl, PR #192) (dedc5b5)
- 🗂️ bd file tcy (CLI resource-read parity, Codeberg #191) (5a5d921)
- 🗂️ bd update 3y1 (signed-sbom archived; file 0zl README §4 key-rename follow-up) (8989dd4)
- 🗂️ bd update 773 (label-crud debate outcome: delete_mode enum, repo-prefixed names, org URI) (7b2a16e)
- 🗂️ bd update 773 (label-crud scope: org CRUD + safe delete) (caa1708)
- 🗂️ bd update uc6 (branch-protection openspec proposed) (05731b0)
- 🗂️ track PR #189 on bd-3y1 (signed SBOM openspec change) (7234a08)
- 🗃️ sync beads state (close vbz, add hxv) (daf834b)
- deps: lock file maintenance (d5f0e1d)
- deps: update quay.io/hummingbird/go:1.26.3-builder docker digest to 8701cf6 (a7b46f7)
- deps: update quay.io/hummingbird/go:1.26.3-builder docker digest to 9523912 (6ffa142)
- deps: update registry.access.redhat.com/hi/go:1.26.3-builder docker digest to ca7aa43 (874e9a4)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 8701cf6 (247d64f)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 9523912 (7279457)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to ca7aa43 (004a28c)
- migrated to a project of it's own: https://codeberg.org/goern/beads-tv (f61e858)
- release: 2.27.0-alpha.1 (3914fbe)
2.27.0-alpha.1 (2026-06-01)
✨ Features
- ✨ build and publish signed OCI image on tag release (bdfd968)
- 📊 daily release-download tracking + Chart.js dashboard (c6bdcfa)
🐛 Fixes
- 🐛 Forgejo push auth — token as userinfo, not x-access-token (9df82c8)
- 💚 POSIX sh for runner — no bash in pod image (shell: sh, drop pipefail/herestrings) (976b245)
- 💚 respect XDG/HOME — writable dir for git config on read-only pod FS (b83fcde)
- 💚 run in own pod image — drop container:, manual clone, distro-agnostic deps (16a7000)
- 💚 run track-downloads on codeberg-runner-openshift (docker label unavailable) (d1b0f79)
- 💚 use ubuntu-latest runner label (781c32f)
⚡ Refactor
- ♻️ hardcode repo+branch in push, drop GITHUB_* runner vars (2770e79)
🔁 CI
🔁 Chore
- 📊 snapshot release download counts (ef6db22)
- 📊 snapshot release download counts (01e29f1)
- 🔖 close bead forgejo-mcp-5zy (download tracking shipped) (0df01c2)
- 🔖 sync beads jsonl (da794b0)
- 🔖 track bead forgejo-mcp-3ph for wiki OpenSpec (f6596bf)
- 🔖 track bead forgejo-mcp-5zy (release download analytics) (7c9c182)
- 🔖 track bead forgejo-mcp-dn0 (OCI image release pipeline) (33e4eba)
- 🔖 track bead forgejo-mcp-fd6 (label tools + resource templates) (03633b3)
- 🔧 add openspec verify-change and sync-specs skills (8614964)
- 🔧 add OWNERS for Pipelines as Code CI authorization (f268f8d), closes #178
- 🔧 add verify-and-journal wrapper script for OpenSpec SQI (a900db0)
- 🔧 close forgejo-mcp-dn0 (OCI image publish) (7d51b76)
- 🗃️ sync beads state (close vbz, add hxv) (daf834b)
- deps: lock file maintenance (d5f0e1d)
- deps: update quay.io/hummingbird/go:1.26.3-builder docker digest to 8701cf6 (a7b46f7)
- deps: update registry.access.redhat.com/hi/go:1.26.3-builder docker digest to ca7aa43 (874e9a4)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 8701cf6 (247d64f)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to ca7aa43 (004a28c)
- migrated to a project of it's own: https://codeberg.org/goern/beads-tv (f61e858)
2.26.0 (2026-05-28)
✨ Features
- ✨ enable Tekton Chains SLSA v1.0 provenance for release-tools image (3125eec)
- ✨ focus mode — card click highlights dep-chain in subway map (8fc1e75)
- ✨ MCP resource templates — slice 3 (commit status) (52b19ac)
- ✨ MCP resource templates — slices 1+2 (core framework + commit) (4249374), closes #148
- ✨ MCP resource templates — slices 4+5 (repo+owner, issue+comment) (79d0940)
- ✨ MCP resource templates — slices 6+7 (PR resource + docs/wrap) (f6cc2f1)
🐛 Fixes
- ✏️ rename CommmentsTruncated → CommentsTruncated in pull resource (683404c)
- 🐛 map parse errors via MapForgejoError in commit resource (81d1945)
- 🐛 map parse errors via MapForgejoError in owner resource (6cecf67)
- 🐛 map parse errors via MapForgejoError in repo resource (0c177af)
- 🐛 map parse errors via MapForgejoError in status resource (10c8403)
- 🐛 openspec spec/release-tools-image add Purpose + Requirements headers (cefe9ef)
- 🐛 owner resource: surface orgErr on transport failure, explicit -32003 on both-404 (19f1efd)
- 🐛 reject empty/whitespace URI segments in forgejo:// parser (55a39f4)
- 🐛 request EmbeddedListCap+1 issue comments to detect truncation (321b1a0)
- 🐛 request EmbeddedListCap+1 PR comments to detect truncation (9e5b930)
- 🐛 request EmbeddedListCap+1 PR reviews to detect truncation (182898a), closes #172
- 🐛 request EmbeddedListCap+1 statuses to detect truncation (ee1217d)
- 🐛 unwrap ResourceError in commit resource handler (f8d661e)
- 💚 PaC task annotation YAML folding — collapse to single-line bracketed list (3a12931), closes #172
- 💚 use GO_IMAGE for license-check to break bootstrap circular dep (1939dbf)
- 🔥 remove Forgejo CI workflows superseded by Tekton pipeline (1777cca)
- 🚨 gofmt drift on resource files (8409fdc)
📝 Documentation
- 📚 demos walkthrough for forgejo:// resource templates (945b54b)
- 📝 ADR addendum — Tekton hard cutover after v2.25.1 (4eed83a), closes #164
- 📝 openspec proposal for MCP resource templates (c8c2c0a)
⚡ Refactor
- 🏗️ classify parse errors via sentinel ErrInvalidParams (-32602) (1aa797a)
🔁 CI
- ✨ add go-licenses check + Conventional Commits PR title gate (508c7c0)
🔁 Chore
- 🗂️ bd: close fix-pull_172 (ylb + 13 children — PR #172 review fixes shipped) (52f41f5)
- 🗂️ bd: close forgejo-mcp-13x (PR #172 merged) (90d064b)
- 🗂️ bd: close forgejo-mcp-pkz (PR #173 merged) (2dbb148)
- 🗂️ bd: log forgejo-mcp-1tc (openspec spec/release-tools-image fix on PR #148) (2b10704)
- 🗂️ bd: log forgejo-mcp-pkz (resource templates demo) (3587e04), closes #173
- 🗂️ bd: log forgejo-mcp-wbw (PaC task annotation YAML folding fix on PR #172) (67a7532)
- 🗂️ bd: log mcp-resources-impl team (13x in_progress, 7ra/7de follow-ups) (4112c7a), closes #172
- 🗂️ bd: log PR #172 review-finding fix beads (parent ylb + 13 children) (c1c95cb)
- 🗂️ close forgejo-mcp-46j + forgejo-mcp-1p1 session wrap (2de0fc7)
- 🗂️ close forgejo-mcp-het — focus-mode dep graph shipped (c7c9167)
- 🗂️ close forgejo-mcp-j52, e9i, td8 — v2.25.1 session wrap (43a421d)
- 🗂️ move dashboard into .beads/ — ships next to its data (042dee8)
- AGENTS cleanup (c644963)
- deps: update registry.access.redhat.com/hi/core-runtime:2.42 docker digest to c85f5e0 (dab2e88)
- deps: update registry.access.redhat.com/hi/go:1.26.3-builder docker digest to 6bc8aae (f9ad163)
- deps: update registry.access.redhat.com/hi/go:1.26.3-builder docker digest to 6f8cd67 (82762f3)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 6bc8aae (bb93eff)
- deps: update registry.access.redhat.com/hi/go:latest-builder docker digest to 6f8cd67 (0d492cd)
[Unreleased]
Added
- MCP resource templates: 7 URI-addressable read surfaces (
forgejo://owner,forgejo://repo,forgejo://repo/.../commit,.../commit/.../status,.../issue,.../{kind}/.../comment,.../pr). Coexists with the existing tool surface — no tool removed. Embedded lists capped at 30 items with truncation sentinel.
2.25.1 (2026-05-26)
🐛 Fixes
- 🐛 replace deprecated --output-signature with --bundle in cosign (cee6465)
- 🔒️ repoint cosign-sign-release task at cosign-signing-key-artifacts (7633666)
- 🔒️ repoint release-tools tekton tasks at cosign-signing-key-images (d382534)
🔁 Chore
- 🔧 default beads-dashboard status filter to open (1003590)
- 🗂️ close forgejo-mcp-j52 after PR #164 merged (6a90151)
2.25.0 (2026-05-26)
✨ Features
- ✨ add CRT phosphor beads dashboard (a620b17)
- ✨ add govulncheck + openspec to release-tools image (c1316d8)
- ✨ render dep graph as subway map (e6a6185)
- ci: 🚀 add release-tools image build + publish Tekton pipelines (iteration 2) (5df98ba)
- image: 🐳 add release-tools OCI image source tree (iteration 1) (240a544)
- release-tools image source tree + build/publish Tekton pipelines (#157) (e02cf56)
🐛 Fixes
- ✏️ buildah needs runAsUser 0 for chroot isolation with hi/go base (41cdafc)
- ✏️ correct CEL macro files.any.exists → files.exists (7706d17)
- 🐛 cosign sha256sum path — download to /tmp/cosign-linux-amd64 before verify (8ffcd31)
- 🐛 filename mismatch in sha256sum + privileged SCC for buildah (97ee636)
- 🐛 move release-tools PipelineRuns to .tekton/ root (4649f98)
- 🐛 pipeline task fixes validated by run11 success (0901bf0)
- 🐛 rootless buildah in build-image task for OpenShift SCC (6a55f3f)
- 🔒️ address automated code review findings from PR #157 (d59b910)
- 🔒️ restore fail-closed cosign signing, remove bootstrap SKIP_SIGN (8a282ca)
- 🔒️ SHA256-verify goreleaser+syft, drop piped install.sh (da3cfb1)
- ci: 🔧 registry → codeberg.org/operate-first + cosign task bugs + bootstrap (2f5dc51)
📝 Documentation
- openspec: 📋 apply adversarial review patches to release-tools-image change (ddbb5a0)
- openspec: 📋 propose release-tools-image change for op1st Tekton pipeline (c814127)
💈 Code-style
- 💄 calm CRT text styling for legibility (3dec0b9), closes #e8f0e8 #0a0c0a
- 💄 drop oversized #BEADS hero from dashboard (840f996), closes #BEADS
⚡ Refactor
- ♻️ rewrite .tekton/tasks/ to use release-tools image (0dcb2e1)
🔁 Chore
- 📋 archive release-tools-image openspec change + sync spec (bd92d21)
- 🔧 set vendor label to 'Operate First, by #B4mad' (0f1e649)
- 🗂️ beads close forgejo-mcp-00o, 3h2, aps + session wrap (1137f7e)
- 🗂️ beads jsonl claim forgejo-mcp-3h2 + forgejo-mcp-00o (a7883a6)
- 🗂️ beads jsonl close forgejo-mcp-p1p (bbe36d6)
- 🗂️ beads jsonl post-#155 merge (9c84d7f)
- 🗂️ beads jsonl post-PR#157 merge + close forgejo-mcp-1b4 (ef5cf05)
- 🗂️ beads jsonl post-PR#157 review fixes (ef300ba)
- 🗂️ beads jsonl post-tasks rewrite (1ecb952)
- 🗂️ beads jsonl: capture release pipeline findings on P0 image bead (082c71e)
- 🗂️ merge beads jsonl after #161 (8c1df9d)
2.24.2 (2026-05-25)
🐛 Fixes
- ci: 🐛 move Go cache out of workspace to avoid goreleaser dirty-tree check (efcec22)
🔁 Chore
2.24.1 (2026-05-25)
🐛 Fixes
- ci: 🐛 collapse goreleaser Task install+run into single step (94b2c89)
🔁 Chore
2.24.0 (2026-05-25)
✨ Features
- ci: 🚀 add Tekton release pipeline mirroring Forgejo Actions release (cf3bddf)
🐛 Fixes
- ci: 🔧 align release pipeline secret names with op1st-pipelines reality (d2cc52b)
📝 Documentation
- 📝 add Verifying Releases chapter with cosign instructions (c1afa7a)
🔁 Chore
- 🔥 remove stale secrets/ + point at op1st-emea-b4mad as normative cosign pub (b63095f)
- 🗂️ beads jsonl post-#150 merge (641e8f1)
- 🗂️ beads jsonl post-#151 merge (ca93489)
- 🗂️ beads jsonl post-#152 merge (ddc8206)
- ci: 🔌 soft-disable Forgejo release workflow auto-trigger (2cd6682), closes #150
2.23.1 (2026-05-25)
🐛 Fixes
📝 Documentation
🔁 Chore
- update beads jsonl (a2756d4)
2.23.0 (2026-05-25)
✨ Features
- ✨ add 14 MCP tools for Forgejo releases and release attachments (a41115b)
- robust stateless auth with security fixes and improved tests (4969ee5)
- stateless per-request token handling for HTTP/SSE transports (684844c)
🐛 Fixes
- 🔒️ bump golang.org/x/crypto to v0.52.0 (GO-2026-5018) (98b3cd5)
- 🔒️ bump x/net to v0.55.0 + jsonparser to v1.1.2 (govulncheck) (e084bf7)
📝 Documentation
- 📝 add demos/README.md index grouping demos by topic cluster (621e664)
- 📝 add multi-tenant HTTP mode documentation and demo (b53143f)
- 📝 add Radicle mirror clone instructions to README (097516a)
- 📝 add showboat demos for v2.22.0 (org labels, bounded responses) (4baeb30)
- 📝 archive 5 delivered openspec changes, track 2 unimplemented (7eb8a34), closes #129
- 📝 archive add-releases-support, sync release-management spec (1dc7a17), closes #134
- 📝 battle-test forgejo-action-code-review, resolve C4 spike (48809bd)
- 📝 link demos/ index from top-level README (e55c259)
- 📝 retrofit openspec for stateless-http-auth (#137, PR #138) (df15877)
- improve NixOS installation instructions (9e29a13)
💈 Code-style
- 🎨 apply gofmt -w to operation/* and pkg/* (34effc8)
🔁 CI
- 🔒️ add cosign-keygen.sh producing SOPS-encrypted k8s Secret (42614b0)
- 🔒️ provision cosign signing material for release pipeline (d3fcc3d)
- 🔧 gitleaks: allow placeholder tokens in demo docs (ed5f419)
- 🚀 add Forgejo Actions CI workflow with Go cache (815a2d0)
- 🚀 add gitleaks scanning (Tekton + pre-commit) (b936f8a)
- 🚀 add vet, gofmt-check, mod-tidy, lint, race, govulncheck to go-ci (738d979)
- 🚀 drop redundant PaC annotations on openspec-validate (2b5721a)
- 🚀 enable checksums and per-archive CycloneDX SBOMs in goreleaser (74f601a)
- 🚀 release.yml: syft + cosign install, smoke-test, conditional sign (c82fbee)
🔁 Chore
- 🔧 add Claude Code agent team infrastructure for multi-agent workflows (3a73026)
- 🔧 bd: claim 51l, link PR #144 (23be9fd)
- 🔧 bd: claim forgejo-mcp-9n2, link PR #143 (eed502b)
- 🔧 bd: claim+close 02o (PR #145 labeled Kind/Security) (45bdadc)
- 🔧 bd: close 51l (PR #144 merged) (c0416e3)
- 🔧 bd: close 9n2, file e9i (ci.yml run #147 failure) (2ff1ddd)
- 🔧 bd: close dhd (PR #147 merged), claim 1l5 RFC (ebb70b3)
- 🔧 bd: file + close forgejo-mcp-5x8 (PaC webhook fix) (f305e33)
- 🔧 bd: file C5 spike + C4 cleanup issues, link to forgejo-mcp-673 (b6eb0a9)
- 🔧 bd: file CI hardening epic (Steps 1–3 + follow-ups) (f4cacf1)
- 🔧 bd: file dhd (gitleaks placeholder allowlist), claim, link PR #147 (fa2c5fc)
- 🔧 reconcile .gitignore (7063249)
- 🔧 switch Containerfile to Project Hummingbird base images (3d8ade1)
- deps: update registry.access.redhat.com/hi/go docker tag to v1.26.3 (a623431)
- update beads jsonl (bbbf84e)
2.22.0 (2026-05-12)
✨ Features
- add list_org_labels + merge org labels in list_repo_labels (#130) (8862e83), closes #125
- bounded responses for get_pull_request_diff + get_file_content (#131) (4cebe0b), closes #124
🐛 Fixes
- 🐛 send assignees array in update_issue (6291213), closes goern/forgejo-mcp#128
📝 Documentation
- 📝 add openspec change for releases support (#127) (d0bab23)
- 📝 add Purpose+Requirements headers to cli-mode spec (23db899)
- 📝 add Purpose+Requirements headers to PR specs (c8a7883)
- 📝 add spec deltas to forgejo-action-code-review change (a83a033)
- 📝 codify output-bounding rule for MCP tools (1412cbe), closes #124 #124
- extension: address review feedback on #118 (a88c2a3)
⚡ Refactor
- ♻️ rename openspec Tekton PipelineRuns (85a8f4f)
🔁 CI
- 🚀 add openspec validate workflow (1f6b256)
- 🚀 migrate CI from Forgejo Actions to op1st Tekton (ae35a30)
- 🚀 migrate openspec validate from Forgejo Actions to op1st Tekton (fbd1203)
🔁 Chore
- 🔧 close beads forgejo-mcp-43k (Tekton CI migration) (0be622d)
- 🔧 close forgejo-mcp-efo in beads tracker (616c1ce)
- 🔧 close forgejo-mcp-fdx (openspec Tekton migration) (a385896)
- 🔧 ignore pycache and add codeberg-issue-triage skill (64b6a54)
- 🔧 link forgejo-mcp-43k bead to Codeberg #133 (6adda88)
- 🔧 note PR #130 merge in forgejo-mcp-7ch bead (c0a8b20)
- 🔧 retest PaC after PAT scope fix (59da82c)
- 🔧 retrigger PaC after PAT scope expansion (a27df63)
- 🔧 retrigger PaC after webhook install (2f496b4)
- 🔧 retrigger to confirm openspec PaC status flake is transient (0e36348)
- 🔧 slim opsx to core 4 commands (apply/archive/explore/propose) (7e718f5)
- 🔧 track add-bounded-text-responses follow-up in beads (602ecaa), closes #124
- 🔧 track follow-up bd issues from #127 release-spec work (0e53c51), closes #129
2.21.0 (2026-05-07)
✨ Features
- extension: package as Claude Desktop Extension (.mcpb) (998f92b)
📝 Documentation
🔁 CI
- 🚀 build and attach .mcpb extension on tagged release (fdc6305)
🔁 Chore
- 🔧 add mcpb and help make targets (679d593)
- deps: update golang:1.26-alpine docker digest to 91eda97 (cb058c3)
- deps: update golang:1.26-alpine docker digest to e58f92c (13e52b5)
2.20.0 (2026-05-06)
✨ Features
- add list_repo_contents and get_repo_tree MCP tools (8c0759d)
- get_file_content returns plain text by default (d76be68)
- name binary-file case in get_file_content description (c2c33de), closes #116
📝 Documentation
- 📝 add BrilliantKahn to contributors with first-OSS-PR note (7f214f5)
2.19.0 (2026-05-02)
✨ Features
🐛 Fixes
- check merged bool in MergePullRequestFn (#113) (5326fb4)
- use ServerVersion for connection check instead of GetMyUserInfo (#112) (b427041)
📝 Documentation
- 📝 add synath and heathen711 to contributors (db0d925), closes #112 #113 #106
- 📝 amend issue-attachments spec: 1 MiB cap, always include download URL (91bc2dd), closes #2
2.18.0 (2026-04-21)
✨ Features
- ✨ add issue/PR time tracking and stopwatch tools (e28cd91)
📝 Documentation
- 📝 add issue-attachment spec and beads issue tracking (ae2c981), closes #106 #98
- 📝 add issue/PR time tracking spec (3d9fd1a)
🔁 Chore
- deps: update golang:1.26-alpine docker digest to 1fb7391 (f5c89b5)
- deps: update golang:1.26-alpine docker digest to 27f8293 (a24ccc7)
- deps: update golang:1.26-alpine docker digest to c2a1f7b (de73b9e)
- deps: update golang:1.26-alpine docker digest to f853308 (9c6540c)
2.17.0 (2026-03-27)
✨ Features
📝 Documentation
- 📝 update contributors with Vokuar and janbaer (885e9c0)
2.16.0 (2026-03-20)
✨ Features
- ✨ add organization management tools (CRUD, membership, teams) (2c4c02c)
- add remove_issue_labels tool (be758d4), closes ardi/ardi-crm#96
📝 Documentation
- ✨ add OpenSpec artifacts for organization management feature (2d540a5), closes #92
- 📝 add showboat demo for issue label management tools (004a2c6)
- 📝 add showboat demo for organization management tools (cf407fd)
- 📝 update contributors with ignasgil and dmikushin (8e93b89)
🔁 Chore
- 🔥 remove obsolete smithery.yaml and mcp-settings-sample.json (b040259)
2.15.1 (2026-03-14)
📝 Documentation
🔁 Chore
- bump github.com/mark3labs/mcp-go from v0.43.2 to v0.44.0 (4a18f7f)
2.15.0 (2026-03-11)
✨ Features
- add unified-notifications skill for GitHub and Codeberg (39f3021)
- add user agent configuration support (d3cb629)
- trigger 2.15.0 release (9768a1d)
📝 Documentation
- extend Contributors section with community contributors (intercom-fep.2.1) (df8e7b9)
- update contributors with new members, fix links, and add highlights (d4c9ebb)
🔁 Chore
- release: 2.14.0 (26e20b3)
2.14.0 (2026-03-11)
✨ Features
- add unified-notifications skill for GitHub and Codeberg (39f3021)
- add user agent configuration support (d3cb629)
- notifications: implement complete notification API (78916f6)
- trigger 2.15.0 release (9768a1d)
🐛 Fixes
📝 Documentation
- add Contributors section to README (intercom-fep.1) (17304d5)
- extend Contributors section with community contributors (intercom-fep.2.1) (df8e7b9)
- update contributors with new members, fix links, and add highlights (d4c9ebb)
🔁 Chore
- release: 2.14.0 (8d59fdf)
2.14.0 (2026-03-08)
✨ Features
- notifications: implement complete notification API (78916f6)
🐛 Fixes
📝 Documentation
- add Contributors section to README (intercom-fep.1) (6819590)
2.13.0 (2026-03-07)
✨ Features
- add check_notifications tool (f075a45)
- add list_repo_milestones + list_repo_labels MCP tools (closes #80) (8a87af1)
🔁 Chore
- deps: update golang:1.26-alpine docker digest to 2389ebf (ebe684e)
[Unreleased]
✨ Features
- ✨ add
list_repo_milestonesandlist_repo_labelsMCP tools for milestone/label discovery (#80)
2.12.0 (2026-03-01)
✨ Features
- ✨ add code-review skill and OpenSpec specs/tasks (d39cb01)
- ✨ add design doc for Forgejo code review skill (697e207)
- ✨ add OpenSpec changes for Forgejo code review integration (03c7dc0)
- ✨ add usage tracking to code-review skill (41307db)
🐛 Fixes
- ✨ add list_pull_request_files/get_pull_request_diff tools, rewrite code-review skill (19f2034)
- 🔒️ prevent shell injection in code-review CLI fallback (8b255f9)
- nil pointer deref on resp.StatusCode and flag.Parse() in init() (dfdb995), closes #76
- some local leftovers merged (44ac633)
📝 Documentation
✅ Tests
2.11.0 (2026-02-18)
✨ Features
- ✨ add --version flag (GNU standard) alongside version subcommand (6255653), closes #73
- ✨ add Actions support (dispatch_workflow, list_workflow_runs, get_workflow_run) (4fea365), closes #103 #60
🐛 Fixes
- 🐛 register actions domain in CLI tool listing (ebe97a0)
📝 Documentation
- 📝 add Actions tools to README with list_workflow_runs examples (af4636e)
2.10.1 (2026-02-11)
🐛 Fixes
🔁 Chore
- deps: update golang docker tag to v1.26 (85dca17)
2.10.0 (2026-02-10)
✨ Features
📝 Documentation
- add Arch Linux AUR installation options (94a4370)
2.9.1 (2026-02-06)
🐛 Fixes
🔁 Chore
- 📦 archive add-global-cli-mode change, sync cli-mode spec (d505c99)
- deps: update golang:1.25-alpine docker digest to f6751d8 (36c3d6a)
2.9.0 (2026-02-06)
✨ Features
- ✨ add --cli mode for direct tool invocation (c08e311)
🐛 Fixes
- 🐛 release workflow checkout URL and skip-ci suppression (351e8b7)
📝 Documentation
🔁 Chore
- 🔧 switch to redbeard's forgejo-sdk fork (14cb733)
2.8.1 (2026-02-06)
🔁 Chore
- 📦 archive merge-pull-request openspec change (194d830)
- deps: update golang:1.25-alpine docker digest to f4622e3 (726e033)
2.8.0 (2026-01-31)
✨ Features
🔁 Chore
- 📦 archive pr-review-tool openspec change (7b3232a)
2.7.0 (2026-01-30)
✨ Features
2.6.1 (2026-01-30)
🐛 Fixes
- 🐛 show module version when installed via
go install(c80dbfd)
2.6.0 (2026-01-30)
✨ Features
- ✨ add version subcommand with build-time git info (433446b)
🐛 Fixes
- 🐛 use SemVer-compliant version format (-dev+commit) (3b2bbbb)
2.5.1 (2026-01-30)
🐛 Fixes
- 🐛 adapt to mcp-go v0.43.2 breaking change in CallToolParams.Arguments (a896e70)
🔁 Chore
- 📝 add OpenSpec proposal and design for PR review tools (#59) (9475c00)
- 🚀 add OpenSpec workflow, beads issue tracker, and merge PR proposal (b469158)
- 🚀 more claude config (f420446)
- deps: update alpine:edge docker digest to 9a341ff (63afe57)
- deps: update golang:1.25-alpine docker digest to 660f0b8 (a799cb8)
- deps: update golang:1.25-alpine docker digest to 98e6cff (5379f45)
- deps: update golang:1.25-alpine docker digest to 9f7db8d (3c5b5cb)
- deps: update golang:1.25-alpine docker digest to d9b2e14 (e798735)
- deps: update golang:1.25-alpine docker digest to e689855 (1d1c35b)
2.5.0 (2026-01-06)
✨ Features
- pull: add pull request reviews and review comments support (f2ff5be)
📝 Documentation
- update README with new pull request review tools (f0c218f)
2.4.2 (2025-12-30)
🐛 Fixes
📝 Documentation
- restructure documentation for users and developers (7e527e0)
- simplify AGENTS.md and reference DEVELOPER.md (e294aa3)
2.4.1 (2025-12-29)
🐛 Fixes
- add /v2 suffix to module path for go install compatibility (2e2604d)
2.4.0 (2025-12-29)
✨ Features
🔁 Chore
- reconfig gitignore (4e657b2)
2.3.0 (2025-12-29)
✨ Features
🐛 Fixes
- release configuration (193029c)
📝 Documentation
- add projects support plan and AI agent configuration (c98ee59), closes #42
- add wiki support implementation plan (79d13bb)
⚡ Refactor
- mcp: optimize tool definitions for token efficiency (06d0ece)
🔁 Chore
- deps: update alpine:edge docker digest to ea71a03 (be13f1f)
- deps: update golang:1.25-alpine docker digest to 06cdd34 (f0df0a3)
- deps: update golang:1.25-alpine docker digest to 182059d (c436e8a)
- deps: update golang:1.25-alpine docker digest to 2611181 (ad1add3)
- deps: update golang:1.25-alpine docker digest to 352f1ef (48c9080)
- deps: update golang:1.25-alpine docker digest to 3587db7 (1999fd6)
- deps: update golang:1.25-alpine docker digest to 6104e2b (4f5225b)
- deps: update golang:1.25-alpine docker digest to 7256733 (da02a42)
- deps: update golang:1.25-alpine docker digest to 8280f72 (1353798)
- deps: update golang:1.25-alpine docker digest to 8b6b77a (cbbaeb9)
- deps: update golang:1.25-alpine docker digest to a86c313 (dceb9f5)
- deps: update golang:1.25-alpine docker digest to ac09a5f (44ab927)
- deps: update golang:1.25-alpine docker digest to aee43c3 (7ec667b)
- deps: update golang:1.25-alpine docker digest to d3f0cf7 (8d32231)
- deps: update golang:1.25-alpine docker digest to ecb8038 (c6ec90d)
- remove unused roo configuration (4121a50)
2.2.0 (2025-10-07)
✨ Features
- deprecate GITEA_* environment variables in favor of FORGEJO_* (d7c54ac)
- implement comprehensive MCP server logging improvements (97fce8f)
📝 Documentation
- update README.md to use forgejo.example.org instead of forgejo.org (d760b2c)
⚡ Refactor
- replace host/port flags with url and separate sse-port (2d59d29)
🔁 Chore
- deps: update golang docker tag to v1.25 (b0a4c71)
- deps: update golang:1.24-alpine docker digest to c8c5f95 (4d335c6)
- deps: update golang:1.24-alpine docker digest to daae04e (df47a38)
- deps: update golang:1.24-alpine docker digest to ddf5200 (fc69200)
- deps: update golang:1.25-alpine docker digest to 2ad042d (bcb65c4)
- deps: update golang:1.25-alpine docker digest to b6ed3fd (cc440cf)
- deps: update golang:1.25-alpine docker digest to f18a072 (ce5dd65)
- remove air part from Makefile (2bba853)
2.1.0 (2025-07-01)
✨ Features
🔁 Chore
- deps: update golang:1.24-alpine docker digest to 68932fa (29d9359)
- deps: update golang:1.24-alpine docker digest to b4f875e (2927727)
- deps: update golang:1.24-alpine docker digest to ef18ee7 (97bff39)
2.0.0 (2025-04-24)
✨ Features
* rebase on https://codeberg.org/fraschm98/forgejo-mcp (9e8edcd (https://codeberg.org/goern/forgejo-mcp/commit/9e8edcd5514c5808798239c09579f390d350082f))
1.2.0 (2025-04-09)
✨ Features
- add smithery.ai integration (4a46279)
🐛 Fixes
- release pipeline sequence (7ebc987)
1.1.0 (2025-04-09)
✨ Features
🐛 Fixes
- the changelog (483f544)
🔁 Chore
- just small refactorings (5437bcc)
- release: 1.1.0-alpha.1 [skip ci] (ef473df)
- release: 1.1.0-alpha.2 [skip ci] (458d31c)
- release: 1.1.0-alpha.3 [skip ci] (c53674e)
1.0.0 (2025-04-08)
✨ Features
- add stdio and sse MCP server (38212fa)
- consolidate T-016 implementation (5afe6fd)
- extend codeberg issue interface with validation and metadata support (a426ec5)
- issue-mgmt: enhance getIssue command with extended metadata and caching (13d183e)
- issue: enhance getIssue with metadata and caching (fcc8779)
🐛 Fixes
- build: resolve TypeScript build errors (4d125da)
- improve error handling and rollback in CodebergService (938bd54)
📝 Documentation
- add a screenshot of http server (6ae7ebe)
- add development cost information (6985d37)
- issue-mgmt: analyze existing code structure and capabilities (66a19df)
- update the feature planning (8150b37)
- update the README (e2146be)
⚡ Refactor
- move TYPES to dedicated file to resolve circular dependency (949400c)
🔁 Chore
- the big rename (a6168b8)