Changelog
What we shipped.
Milestones from the last six waves of shipping. Stamped in Aqaba time, rebuilt hourly.
Milestones
wavesv0.8.0April 15, 2026Feature
Phase 6 — /prove-it · Trust surfacing · MCP manifest · Audit-log feed
- /api/mcp manifest endpoint — advertises com.steadywrk/mcp-dispatch ahead of G0 registry publish
- /status page — public platform status with live health probe, build hash, metrics version, deploy age
- /ai.txt — AI-agent manifest companion to /llms.txt
- /api/audit-log — append-only public feed of phase-gate receipts
- Footer Trust column — 7 trust surfaces + status + openapi + llms surfaced from every page
- Homepage Hero "Talk to Us" CTA now routes to /demo (was /contact) — higher-intent path
- /api/health reflects manifest-only MCP status + registry pointer
- GH Actions billing runbook (docs/GH-ACTIONS-BILLING-RUNBOOK.md) — 3 unblock paths
v0.7.0April 13, 2026Feature
Wave 7 — Agentic Control Plane · MCP · Public Evals · Trust Pack
- 7 public routes: /control-plane, /security, /system-card, /evals, /developers, /ai-policy, /dispatch-engine
- @steadywrk/mcp-dispatch npm package — 3 tools (dispatch.quote, dispatch.order, dispatch.evals)
- @steadywrk/sdk (TypeScript) + steadywrk (Python) SDK packages
- OpenAPI 3.1 spec at /openapi.yaml · MCP manifest at /mcp.json
- Live machine-readable evals at /api/dispatch/analytics/evals (30-day rolling window)
- Canonical metrics enforcement — verify:metrics gate fails build on drift
- Phase-gate CI — autonomous sprint execution with .sirius/receipts/ durability
- Trust Pack v1 — subprocessors JSON, data-flow diagram, security headers audit, RFC 9116 security.txt
- 5 ADRs documenting architecture decisions from Sprints A–D
v0.6.0April 11, 2026Security
Wave 6 — Maestro canon + The Veil + honeypot layer
- Maestro canon wired into the brain API — one source of truth for voice and governance
- The Veil — server fingerprint headers stripped at the edge, rotating decoy header added
- Three-route honeypot layer that serves traps to enumeration scanners
- Invisible output watermarking — provable origin if AI content is republished
- Adversarial tripwire detector on Oracle chat — catches reverse-engineering probes
Stay in the loop
Every commit on the main branch rolls up here within an hour. Follow along at steadywrk.app or check back anytime.