惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

IntelliJ IDEA : IntelliJ IDEA – the Leading IDE for Professional Development in Java and Kotlin | The JetBrains Blog
IntelliJ IDEA : IntelliJ IDEA – the Leading IDE for Professional Development in Java and Kotlin | The JetBrains Blog
C
CXSECURITY Database RSS Feed - CXSecurity.com
博客园_首页
H
Hackread – Cybersecurity News, Data Breaches, AI and More
T
ThreatConnect
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
博客园 - 聂微东
H
Help Net Security
T
Threat Research - Cisco Blogs
Blog — PlanetScale
Blog — PlanetScale
A
Arctic Wolf
G
Google Developers Blog
量子位
U
Unit 42
I
InfoQ
V
V2EX
F
Fox-IT International blog
P
Privacy & Cybersecurity Law Blog
V
Visual Studio Blog
J
Java Code Geeks
大猫的无限游戏
大猫的无限游戏
C
CERT Recently Published Vulnerability Notes
博客园 - 三生石上(FineUI控件)
T
The Exploit Database - CXSecurity.com
T
Tailwind CSS Blog
SecWiki News
SecWiki News
Know Your Adversary
Know Your Adversary
MyScale Blog
MyScale Blog
宝玉的分享
宝玉的分享
The Hacker News
The Hacker News
Project Zero
Project Zero
Application and Cybersecurity Blog
Application and Cybersecurity Blog
月光博客
月光博客
Recent Commits to openclaw:main
Recent Commits to openclaw:main
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
G
GRAHAM CLULEY
C
Cisco Blogs
I
Intezer
Simon Willison's Weblog
Simon Willison's Weblog
O
OpenAI News
Recorded Future
Recorded Future
T
Tenable Blog
W
WeLiveSecurity
腾讯CDC
Stack Overflow Blog
Stack Overflow Blog
T
The Blog of Author Tim Ferriss
www.infosecurity-magazine.com
www.infosecurity-magazine.com
D
Docker
C
Cybersecurity and Infrastructure Security Agency CISA
PCI Perspectives
PCI Perspectives

Recent Commits to openclaw:main

fix: parse discord gateway timeouts strictly fix: parse qa cli integers strictly · openclaw/openclaw@cd80b4e fix: parse memory cli numbers strictly fix: parse voice call cli integers strictly fix(e2e): bound telegram credential broker bodies · openclaw/openclaw@8338986 fix: parse google meet cli numbers strictly · openclaw/openclaw@d23e4ae fix: parse google meet env numbers strictly fix: parse signal archive length strictly · openclaw/openclaw@2afff85 docs: clarify Codex native hook relay recovery refactor: route node proxy agents through proxyline · openclaw/openclaw@4ad9f0b fix: parse discord rate limit headers strictly fix: parse codex retry headers strictly · openclaw/openclaw@bcf354e fix(ollama): promote plain text tool calls · openclaw/openclaw@21e69fd fix: parse provider retry dates strictly · openclaw/openclaw@7859ee3 fix: parse discord api retry headers strictly · openclaw/openclaw@5eee488 fix: parse discord retry delays strictly · openclaw/openclaw@1d28dd8 fix: parse feishu startup timeout env strictly · openclaw/openclaw@a8991e0 fix: parse feishu timeout env strictly fix: parse telegram qa timeout env strictly · openclaw/openclaw@21db3ff fix: parse qa credential integer env strictly · openclaw/openclaw@19d1c21 fix(media): compact whatsapp terminal qr (#87581) · openclaw/openclaw@492105d fix: parse qa worker stagger env strictly · openclaw/openclaw@d3b5413 fix: parse qa transport timeout env strictly · openclaw/openclaw@2e8b344 fix: parse qa process metrics strictly · openclaw/openclaw@339a74a fix: parse codex computer use timeout env strictly · openclaw/openclaw@5b79ab0 fix: parse codex migration timeout env strictly · openclaw/openclaw@929b3a4 fix: parse qa suite concurrency env strictly · openclaw/openclaw@2cde331 fix(ci): raise plugin sdk strict smoke heap (#87729) · openclaw/openclaw@5f9d71f fix: parse embedded abort settle timeout strictly · openclaw/openclaw@df4475d fix: parse sdk retry wait env strictly · openclaw/openclaw@f90e266 fix(e2e): bound OpenWebUI probe response bodies · openclaw/openclaw@bbc9a7d fix: parse queue caps strictly · openclaw/openclaw@d47eee4 fix: parse gateway usage days strictly · openclaw/openclaw@2122dcc fix: parse http idle timeout strings strictly · openclaw/openclaw@d08bcb4 fix: parse cleanup timeout env strictly · openclaw/openclaw@42688f5 fix: parse handshake timeout env strictly · openclaw/openclaw@d6c8e05 fix: parse cron stagger strings strictly · openclaw/openclaw@ca87241 fix: reject invalid cron epoch timestamps fix: parse cron task run ids strictly fix(native-hook-relay): prune stale bridge files on registration (#87… · openclaw/openclaw@202ccf4 test: cover dynamic live model refs fix: reject malformed media content length fix: parse ffprobe sample rates strictly chore: update dependency pins · openclaw/openclaw@c2c2958 fix: parse ps cpu time formats fix: clamp read tool line limits · openclaw/openclaw@5393240 fix: parse sandbox stat fields strictly · openclaw/openclaw@5ebf3b0 fix(scripts): give boundary root shims macos headroom · openclaw/openclaw@ea0b6bc fix(e2e): bound kitchen sink rpc probe bodies · openclaw/openclaw@5fc5aa8 fix: honor bare ipv6 no_proxy entries fix: honor ipv6 no_proxy entries · openclaw/openclaw@e205888 perf: reduce latency across async I/O hot paths · openclaw/openclaw@53475c2 fix: count qmd output caps by code point · openclaw/openclaw@9e1faf8 fix: cap chrome mcp stderr by utf8 bytes · openclaw/openclaw@f4f059e [codex] Use clawpdf for PDF extraction (#87670) fix: keep stderr tail within utf8 byte cap · openclaw/openclaw@478e0ec fix(images): skip CLI image cache refs (#87523) · openclaw/openclaw@51e2401 fix(ui): preserve session picker on empty search blur (#87682) · openclaw/openclaw@e9655b9 fix: parse lsp content length by byte fix(agents): surface MCP structured content in tool results · openclaw/openclaw@2df8021 fix(voice-call): make webhook replays token-safe · openclaw/openclaw@cd0b692 fix(scripts): bound Z.AI fallback repro output · openclaw/openclaw@716fd67 perf: cache bundled channel entry resolution · openclaw/openclaw@a85ff92 fix(webchat): preserve sends through reconnect (#87531) fix: reject malformed inspected tcp ports · openclaw/openclaw@c00ac95 fix: reject malformed marketplace content length fix: reject exponent provider integer options · openclaw/openclaw@03e6181 fix(sessions): recover empty preflight compaction · openclaw/openclaw@5f88932 perf: reduce gateway startup sidecar overhead fix: canonicalize secret target array indexes · openclaw/openclaw@e67ff0c fix: harden config array index parsing feat(gateway): show warm MCP tools in effective inventory fix(approvals): restore reaction command prompt lines fix(scripts): bound control UI i18n process output · openclaw/openclaw@e707b45 docs: remove public GHSA fix mechanism details · openclaw/openclaw@79e733c fix(agents): concatenate signature_delta chunks in transport stream · openclaw/openclaw@8dc9cfe fix(agents): handle seeded Anthropic signatures · openclaw/openclaw@f8c8c0d fix(auto-reply): respect provider for directive persistence (#87683) fix(agents): preserve reasoning_content replay across DeepSeek tier s… docs: treat CLI setup flows as API contracts (#87685) docs: harden GHSA wording guidance · openclaw/openclaw@b601550 fix(openrouter): apply strict9 ids to Mistral routes · openclaw/openclaw@ad1d8bf perf: cache plugin module exports per loader perf: prefer built bundled runtime surfaces · openclaw/openclaw@81c90aa Block provider credentials from workspace dotenv [AI] (#83655) · openclaw/openclaw@85277c2 fix(core): restore changed gate typecheck · openclaw/openclaw@9adbab0 fix(agents): quarantine compaction tool schemas · openclaw/openclaw@83bb5fb fix: reject partial numeric parsing · openclaw/openclaw@b6ef874 perf: reduce gateway runtime discovery overhead · openclaw/openclaw@68e6f03 fix(codex): bound sandbox http stream lines · openclaw/openclaw@7b5f0c2 fix(ssh): bound config probe output · openclaw/openclaw@3e2994b fix(msteams): bind bot framework service urls (#87160) · openclaw/openclaw@2c3d7f5 fix(telegram): bound proof command output fix(daemon): preserve explicit systemd unit during refresh fix(gateway): preserve traced child sessions · openclaw/openclaw@3f3ed5e feat(ios): refresh pro UI and gateway flows (#87367) fix(imessage): bound cli output capture · openclaw/openclaw@65d47dc fix(auto-reply): bound scp staging stderr · openclaw/openclaw@b474130 fix(voice-call): ignore tailscale helper stderr · openclaw/openclaw@76f447b fix(voice-call): ignore ngrok probe output · openclaw/openclaw@bc6ecc8
docs(changelog): refresh 2026.5.28 notes · openclaw/openclaw@528371e
steipete · 2026-05-29 · via Recent Commits to openclaw:main

@@ -8,6 +8,7 @@ Docs: https://docs.openclaw.ai

8899

- Agent and Codex runtime recovery is steadier: subagents keep cwd/workspace separation, hook context stays prompt-local, session locks release on timeout abort, stale restart continuations are avoided, and Codex app-server/helper failures no longer tear down shared runtime state. (#87218, #86875, #87409, #87399, #87375)

1010

- Channel delivery and session identity got safer across outbound plugin hooks, Matrix room ids, iMessage reactions/approvals, Slack final replies, Discord recovered tool warnings, and Microsoft Teams service URL trust checks. (#73706, #75670, #87366, #87451, #87334)

11+

- Mobile and chat surfaces got a broader refresh: the iOS Pro UI, Gateway chat transport, onboarding, Talk permissions, WebChat reconnect delivery, and session picker behavior now preserve more state across reconnects and empty searches. (#87367, #87531, #87682)

1112

- CLI, auth, doctor, and provider paths fail faster and recover more clearly: malformed numeric/version options are rejected, OAuth and local service startup requests are bounded, legacy `api_key` auth profiles migrate to canonical form, and restart guidance is actionable. (#87398, #86281, #87361)

1213

- Plugin and Gateway hot paths do less repeated work while preserving cache correctness for install records, config JSON parsing, tool search catalogs, session stores, manifest model rows, auto-enabled plugin config, browser tokens, and viewer assets. (#86699)

1314

- Release, QA, and E2E validation now bound more log, artifact, harness, and cross-OS waits so failing lanes produce proof instead of hanging or false-greening.

@@ -19,6 +20,7 @@ Docs: https://docs.openclaw.ai

1920

- ClawHub: add plugin display names plus skill verification and trust surfaces. (#87354, #86699) Thanks @thewilloftheshadow and @Patrick-Erichsen.

2021

- iOS: refresh the dev app with Pro Command, Chat, Agents, and Settings tabs wired to gateway sessions, diagnostics, chat, and realtime Talk. (#87367) Thanks @Solvely-Colin.

2122

- Docs: clarify Codex computer-use setup, paste-token stdin auth setup, macOS gateway sleep troubleshooting, native Codex hook relay recovery, container model auth, install deployment cards, device-token admin gating, and backport targets. (#87313, #63050) Thanks @bdjben, @liaoandi, and @thewilloftheshadow.

23+

- PDF/tools: use ClawPDF for PDF extraction and surface MCP structured content in agent tool results. (#87670)

22242325

### Fixes

2426

@@ -28,6 +30,8 @@ Docs: https://docs.openclaw.ai

2830

- Channels: thread canonical session keys into outbound hooks, preserve Matrix room-id case, keep fallback tool warnings mention-inert, retain delivered Slack final replies during late cleanup, continue iMessage polling after denied reactions, suppress duplicate native exec approvals, preserve Telegram SecretRef prompt config, suppress Discord recovered tool warnings, and block untrusted Teams service URLs. (#73706, #75670, #87366, #87451, #87334) Thanks @zeroaltitude, @lukeboyett, @xiaotian, and @eleqtrizit.

2931

- CLI/auth/doctor/providers: reject malformed numeric/timeout/subcommand-version inputs, wait for respawn child shutdown, bound Codex and GitHub Copilot OAuth/token requests, warm provider auth off the main thread, honor Codex response timeouts, bound local service startup, resolve GPT-5.5 without cached catalog, migrate legacy memory auto-provider config, rewrite non-canonical `api_key` auth profiles, and make doctor restart follow-ups actionable. (#87398, #86281, #87361) Thanks @Patrick-Erichsen, @samzong, @giodl73-repo, and @alkor2000.

3032

- Gateway/security/session state: expire browser tokens after auth rotation, scope assistant idempotency dedupe, drain probe client closes, avoid stale restart continuation reuse, preserve retry-after fallbacks, bound webchat image and artifact transcript scans, include seconds in inbound metadata timestamps, and evict current plugin-state namespaces at row caps.

33+

- Config/parsing/network: reject partial numeric parsing, parse provider/Discord retry headers and dates strictly, honor IPv6 and bare IPv6 `no_proxy` entries, canonicalize secret target array indexes, and reject malformed media content lengths, inspected TCP ports, marketplace content lengths, cron epochs, and sandbox stat fields.

34+

- Providers/agents: preserve seeded Anthropic signatures, concatenate signature-delta chunks, preserve DeepSeek `reasoning_content` replay across tier suffixes, apply OpenRouter strict9 ids to Mistral routes, promote Ollama plain-text tool calls, and recover empty preflight compaction. (#87593)

3135

- File transfer: handle late tar stdin pipe errors after archive validation or unpacking has already settled.

3236

- Performance: trust install-record caches between reloads, prefer native JSON parsing, reuse unchanged tool-search catalogs, skip unchanged store serialization, add precomputed session patch writers, reduce store clone allocations, cache manifest model catalog rows and auto-enabled plugin config, and slim current metadata identity caches.

3337

- Docker/release/QA: package runtime workspace templates, stream cross-OS served artifacts, preserve sparse Crabbox run artifacts, bound OpenClaw instance logs, plugin gauntlet relay logs, MCP channel buffers, kitchen-sink scans, agent-turn assertions, and release scenario logs, and keep release/google live guards current.