Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
366 commits
Select commit Hold shift + click to select a range
6688b44
feat(workflows): expose workflow source directory to steps (#3469)
rhuss Jul 15, 2026
c1722a4
fix(workflows): raise a clear error, not a cryptic crash, on non-stri…
Noor-ul-ain001 Jul 15, 2026
fbc59d2
chore: release 0.12.16, begin 0.12.17.dev0 development (#3549)
mnriem Jul 15, 2026
7a99c4a
[extension] Update Quality Gates (Enforcement Layer) extension to v0.…
github-actions[bot] Jul 15, 2026
a4aa4f6
[extension] Add Spec-Kit BDD extension to community catalog (#3548)
github-actions[bot] Jul 15, 2026
5409670
[extension] Add Figma Starter extension to community catalog (#3547)
github-actions[bot] Jul 15, 2026
2fb18c7
fix(integration): preserve ai_skills on `use` for skills-mode Copilot…
mnriem Jul 15, 2026
f065e27
test: cover preset constitution seeding through init CLI (#3297)
github-actions[bot] Jul 15, 2026
a7f6fe8
fix(extensions/git): reject negative -Number in create-new-feature-br…
Noor-ul-ain001 Jul 15, 2026
fd101d5
feat(integrations): add Grok Build skills-based integration (#3535)
natechadwick Jul 15, 2026
459f483
fix(workflows): fail if/switch steps on non-list branch instead of cr…
Noor-ul-ain001 Jul 16, 2026
4fed84a
fix(extensions): resolve __SPECKIT_COMMAND tokens in auto-registered …
WOLIKIMCHENG Jul 16, 2026
ff436da
chore: release 0.12.17, begin 0.12.18.dev0 development (#3560)
mnriem Jul 16, 2026
29eb6ed
Update DocGuard — CDD Enforcement to v0.33.0 (#3559)
github-actions[bot] Jul 16, 2026
c40db8a
[extension] Add Dotdog extension to community catalog (#3558)
github-actions[bot] Jul 16, 2026
aaf6bc2
docs: refresh landing page ecosystem stats (#3561)
mnriem Jul 16, 2026
b08d665
docs: document extensions.yml hook configuration (#3563)
Ehtasham-Yasin Jul 16, 2026
396fc2c
docs: reframe SDD positioning, modernize install, and de-duplicate wa…
mnriem Jul 16, 2026
7bdf6c5
docs: weave harness/SDLC framing into landing page (#3567)
mnriem Jul 16, 2026
4a00243
chore(deps): bump actions/setup-node from 6.4.0 to 7.0.0 (#3570)
dependabot[bot] Jul 17, 2026
3b63534
chore(deps): bump actions/stale from 10.3.0 to 10.4.0 (#3572)
dependabot[bot] Jul 17, 2026
0b7c688
chore(deps): bump actions/setup-dotnet from 5.4.0 to 6.0.0 (#3574)
dependabot[bot] Jul 17, 2026
ee6fbcf
chore: release 0.12.18, begin 0.12.19.dev0 development (#3583)
mnriem Jul 17, 2026
3963abd
docs: align README hero tagline and subtitle with docs/index.md (#3581)
mnriem Jul 17, 2026
009aea5
chore(deps): bump github/codeql-action/init from 4.36.2 to 4.37.1 (#3…
dependabot[bot] Jul 17, 2026
0a60e53
fix(presets): raise PresetValidationError, not raw ValueError, on mal…
chuenchen309 Jul 17, 2026
309166e
docs: update extension guide PyPI upgrade guidance (#3578)
WOLIKIMCHENG Jul 17, 2026
a5b0bb3
Update Autonomous Run Governance preset to v0.2.2 (#3584)
github-actions[bot] Jul 17, 2026
b17c70d
Add OKF Knowledge Bundle Generator extension to community catalog (#3…
github-actions[bot] Jul 17, 2026
0d78016
fix(bundle): surface a clean BundlerError on a malformed bundle downl…
chuenchen309 Jul 17, 2026
208d386
feat(extensions): add assess idea assessment pipeline extension (#3568)
mnriem Jul 17, 2026
41c5dfc
fix(auth): Azure DevOps az-CLI token acquisition returns None on unde…
jawwad-ali Jul 17, 2026
848e41b
chore: release 0.13.0, begin 0.13.1.dev0 development (#3588)
mnriem Jul 17, 2026
c864fc7
fix(integrations): Forge dispatches hyphenated /speckit-<cmd> invocat…
jawwad-ali Jul 17, 2026
f75f5f8
fix(workflows): route 'workflow status --json' errors to stderr (#3520)
jawwad-ali Jul 17, 2026
b139bd0
fix(workflows): reject a non-string prompt in prompt-step validate() …
Noor-ul-ain001 Jul 17, 2026
c1e5cfa
fix(workflows): fail fan-out loudly on a truthy non-mapping step temp…
Noor-ul-ain001 Jul 17, 2026
3d2901e
fix(workflows): fail fan-in loudly on a non-string wait_for entry (#3…
Noor-ul-ain001 Jul 17, 2026
2df0394
docs(integrations): document the 'integration list --catalog' flag (#…
jawwad-ali Jul 17, 2026
eb2252a
fix(catalogs): 'priority: .inf' yields a clean validation error inste…
jawwad-ali Jul 17, 2026
57cc518
fix(workflows): reject bool / .inf catalog priority in workflow & ste…
jawwad-ali Jul 17, 2026
6d77b4a
fix(integrations): catch OverflowError on a `priority: .inf` in add/r…
chuenchen309 Jul 21, 2026
75d3738
chore: release 0.13.1, begin 0.13.2.dev0 development (#3610)
mnriem Jul 21, 2026
8a5bcc2
fix(extensions,presets): surface clean error on malformed download UR…
Noor-ul-ain001 Jul 21, 2026
d6fa046
feat(workflows): WorkflowResolver standalone (PR 1) (#3557)
markuswondrak Jul 21, 2026
ec45dbd
chore: align ruff lint scope (#3139)
PascalThuet Jul 21, 2026
3b61157
Add Test Coverage Drift Control extension to community catalog (#3607)
github-actions[bot] Jul 21, 2026
7f97f1f
Update OKF Knowledge Bundle Generator to v0.3.0 (#3608)
github-actions[bot] Jul 21, 2026
74662cf
feat: update Bob integration to skills-based layout for Bob 2.0 (#3415)
davidebibm Jul 21, 2026
eabfabb
[bug-fix] Fix reinstall-overwrites-kept-config: preserve config on pl…
github-actions[bot] Jul 21, 2026
7873c44
fix(agents): parse frontmatter on the --- delimiter line, not any ---…
chuenchen309 Jul 21, 2026
2a0ada9
feat(scripts): port create-new-feature, setup-plan and setup-tasks to…
marcelsafin Jul 21, 2026
1f7290c
fix(presets): re-validate catalog URL after redirects (HTTPS parity/s…
jawwad-ali Jul 21, 2026
5760061
Add community bundle submission automation (#3553)
BenBtg Jul 21, 2026
69c8b64
fix(extensions): re-validate catalog URL after redirects (HTTPS parit…
jawwad-ali Jul 21, 2026
2f9e455
fix(workflows): fail gate step loudly on a malformed 'options' (#3595)
Noor-ul-ain001 Jul 21, 2026
70c547c
fix(workflows): reject a non-string 'command' in command-step (#3596)
Noor-ul-ain001 Jul 21, 2026
e9d84ca
chore: release 0.13.2, begin 0.13.3.dev0 development (#3617)
mnriem Jul 21, 2026
d7699c3
fix(workflows): reject non-list input 'enum' instead of crashing (#3601)
Noor-ul-ain001 Jul 21, 2026
115bc94
Add Intake Review Governance preset to community catalog (#3613)
github-actions[bot] Jul 22, 2026
ebd3097
ci: add dependency audit workflow (#3138)
PascalThuet Jul 22, 2026
4868652
fix(workflows): reject a non-string 'integration'/'model' in command …
Noor-ul-ain001 Jul 22, 2026
b6b3ec4
docs: clarify hook priority validation semantics (#3594)
WOLIKIMCHENG Jul 22, 2026
b79ae33
[extension] Add Linear Weave extension to community catalog (#3609)
github-actions[bot] Jul 22, 2026
717d7c4
Add pipeline workflow to community catalog (#3338)
domattioli Jul 22, 2026
30e99ec
fix(workflows): validate every redirect hop when fetching workflow/st…
Quratulain-bilal Jul 22, 2026
956ecab
[preset] Update Autonomous Run Governance preset to v0.3.2 (#3615)
github-actions[bot] Jul 22, 2026
01d07e2
[bundle] Add SicarioSpec Security & Governance Bundle to community ca…
github-actions[bot] Jul 22, 2026
41a8e07
docs(workflows): fix stale FanOutStep docstring claiming sequential-o…
jawwad-ali Jul 22, 2026
0d2e3b5
[preset] Add Parallel Autonomous Run Governance preset to community c…
github-actions[bot] Jul 22, 2026
840fb8d
docs: document __SPECKIT_COMMAND_ token for portable cross-command re…
Quratulain-bilal Jul 22, 2026
d9e4565
fix(integrations): escape Rich markup in --integration-options error …
Quratulain-bilal Jul 22, 2026
2987782
chore: release 0.13.3, begin 0.13.4.dev0 development (#3645)
mnriem Jul 22, 2026
914d7b8
docs(upgrade): document integration upgrade / extension update as the…
PascalThuet Jul 22, 2026
d39f8fd
fix(integrations): Cline dispatches hyphenated /speckit-<cmd> invocat…
jawwad-ali Jul 22, 2026
9ef4771
fix(workflows): gate prompt uses isdecimal() so a superscript digit d…
jawwad-ali Jul 22, 2026
4f4d19b
docs(core): document the 'py' (Python) --script type in the init opti…
jawwad-ali Jul 22, 2026
aee9df0
fix(workflows): command/prompt steps fail cleanly on a non-string int…
jawwad-ali Jul 22, 2026
cbfb9f0
fix(bundler): reject non-mapping 'integration' in a bundle manifest (…
jawwad-ali Jul 22, 2026
03f9013
fix(workflows): StepRegistry.add tolerates a corrupted non-dict exist…
jawwad-ali Jul 22, 2026
cef00a1
fix(workflows): list-literal expression ignores trailing/empty commas…
jawwad-ali Jul 22, 2026
0add713
fix(workflows): workflow add detects local YAML files case-insensitiv…
jawwad-ali Jul 22, 2026
735fe0c
fix(extensions): render hyphenated hook invocations for Forge project…
jawwad-ali Jul 22, 2026
5674fd0
fix(init): show hyphenated /speckit-<name> in Next Steps for Forge pr…
jawwad-ali Jul 22, 2026
11ef1b3
docs(installation): document the 'py' (Python) script type (#3640)
jawwad-ali Jul 22, 2026
470ac5b
feat: add Factory Droid CLI integration (#822) (#3587)
NurfitraPujo Jul 22, 2026
b91e30a
Add Intake Authoring Governance preset to community catalog (#3643)
github-actions[bot] Jul 22, 2026
bd90f76
fix(bundler): guard lazy .hostname ValueError in catalog add_source (…
Noor-ul-ain001 Jul 22, 2026
3b9deec
fix(bundler): reject non-list 'catalogs' in bundle-catalogs.yml with …
jawwad-ali Jul 22, 2026
a6743ab
fix(integrations): validate cached catalog shape before returning it …
jawwad-ali Jul 22, 2026
8db7228
fix(scripts): git-ext PowerShell emits the '# To persist' SPECIFY_FEA…
jawwad-ali Jul 22, 2026
bb5a2c5
docs(concepts): document the spec-of-specs feature breakdown approach…
mnriem Jul 22, 2026
0f6ea64
chore: release 0.13.4, begin 0.13.5.dev0 development (#3649)
mnriem Jul 22, 2026
5601830
harden: bound HTTP reads and enforce strict redirects (#3140)
PascalThuet Jul 22, 2026
a5560fc
docs(scripts): document the 'py' script type and sh/ps migration plan…
mnriem Jul 22, 2026
fb7dc0c
Fix duplicate step numbering in specify command (#3647)
BenBtg Jul 22, 2026
8c816fa
fix: guard constitution command against feature execution (#3646)
BenBtg Jul 22, 2026
9fb467f
fix(integrations): declare LingmaIntegration multi_install_safe (#3654)
jawwad-ali Jul 22, 2026
3356161
docs(workflows): init step docstring lists the 'py' script type (#3655)
jawwad-ali Jul 22, 2026
93fc533
fix: bundle scripts/python in wheel so --script py works (#3665) (#3668)
mnriem Jul 22, 2026
c0f4cee
fix(packaging): bundle scripts/python into the wheel core_pack (#3665…
martincham Jul 22, 2026
3a7a875
fix: harden bounded reads and redirect validation (#3671)
PascalThuet Jul 22, 2026
3704108
docs(workflows): gate step docstring lists the 'retry' on_reject beha…
jawwad-ali Jul 22, 2026
38eb2fc
fix(integrations): Cline overrides post_process_command_content (corr…
jawwad-ali Jul 22, 2026
370551e
fix(bundler): order bundle members by canonical POSIX arcname (reprod…
jawwad-ali Jul 23, 2026
6e8623b
fix(git-extension): trim trailing whitespace before stripping commit-…
Quratulain-bilal Jul 23, 2026
e4cfa4c
fix(integrations): declare kiro-cli multi-install safe (#3477)
Quratulain-bilal Jul 23, 2026
5e384bb
fix(bundler): dump_yaml writes literal UTF-8 (allow_unicode=True) (#3…
jawwad-ali Jul 23, 2026
0a7f288
fix(bundler): reject falsy non-mapping requires/provides in manifest …
jawwad-ali Jul 23, 2026
4fc0a5b
fix(workflows): preserve intra-overlay order for multiple insert_afte…
jawwad-ali Jul 23, 2026
93dbf6d
fix(integrations): recompute invoke_separator from retained parsed_op…
jawwad-ali Jul 23, 2026
7cd97e4
docs: add spec-kit-copilot to community friends (#3675)
mnriem Jul 23, 2026
a5b6ce4
chore: release 0.14.0, begin 0.14.1.dev0 development (#3677)
mnriem Jul 23, 2026
a62fb1f
docs(extensions): clarify agent-context README and add config example…
yanukadeneth99 Jul 23, 2026
8def197
Update Intake Authoring Governance preset to v0.1.1 (#3678)
github-actions[bot] Jul 23, 2026
34bbaaf
fix(bundler): reject falsy non-list bundles/contributed_components in…
jawwad-ali Jul 23, 2026
f5be0ff
fix(bundler): reject falsy non-mapping requires/provides in CatalogEn…
jawwad-ali Jul 23, 2026
88b3230
fix(extensions): hyphenate command names in the Forge post-install li…
jawwad-ali Jul 23, 2026
d0a8389
feat(git-extension): add configurable Conventional Commit support (#3…
dhruv-15-03 Jul 23, 2026
e9dfe90
fix(integrations): declare OmpIntegration multi_install_safe (#3650)
jawwad-ali Jul 23, 2026
9b3546f
Update Security Governance preset to v0.6.1 (#3685)
github-actions[bot] Jul 23, 2026
cf0abe2
fix(bundler): reject a top-level non-mapping bundle-catalogs.yml in _…
jawwad-ali Jul 23, 2026
e14561f
Update Architecture Governance preset to v0.5.1 (#3686)
github-actions[bot] Jul 23, 2026
cce47f6
fix(cli): guard lazy .hostname ValueError in extension/preset add --f…
Noor-ul-ain001 Jul 23, 2026
58b3cad
fix(extensions): parse SKILL.md on the --- delimiter line during remo…
Quratulain-bilal Jul 23, 2026
5ad3128
Update iSAQB Architecture Governance preset to v0.2.1 (#3687)
github-actions[bot] Jul 23, 2026
043c4ec
fix(workflows): filter parser rejects trailing tokens (fullmatch, not…
jawwad-ali Jul 23, 2026
0b6bf86
fix(workflows): escape step-graph brackets in `workflow info` so the …
jawwad-ali Jul 23, 2026
34a0869
Update A11Y Governance preset to v0.4.1 (#3693)
github-actions[bot] Jul 23, 2026
579579b
[preset] Update Cross-Platform Governance preset to v0.2.1 (#3695)
github-actions[bot] Jul 23, 2026
52b20f1
fix(bundler): InstallResult.changed counts uninstalled as a change (#…
jawwad-ali Jul 23, 2026
58f5730
Update Agent Parity Governance preset to v0.4.0 (#3697)
github-actions[bot] Jul 23, 2026
4d3a428
chore: release 0.14.1, begin 0.14.2.dev0 development (#3698)
mnriem Jul 23, 2026
2a397aa
chore(deps): bump astral-sh/setup-uv from 8.3.2 to 9.0.0 (#3700)
dependabot[bot] Jul 24, 2026
769acaf
chore(deps): bump actions/setup-node from 6.4.0 to 7.0.0 (#3701)
dependabot[bot] Jul 24, 2026
e53ddcb
chore(deps): bump DavidAnson/markdownlint-cli2-action (#3702)
dependabot[bot] Jul 24, 2026
c0ba811
chore(deps): bump actions/checkout from 6.0.3 to 7.0.1 (#3703)
dependabot[bot] Jul 24, 2026
bfe4772
fix: auto-correct conflicting feature prefixes (#1829)
daniel-graham Jul 24, 2026
6385250
chore(deps): bump github/codeql-action/init from 4.37.1 to 4.37.3 (#3…
dependabot[bot] Jul 24, 2026
1631c0a
harden: remove shell parameter from run_command() (#3716)
mnriem Jul 24, 2026
391cc0d
fix(integrations): declare PiIntegration multi_install_safe (#3652)
jawwad-ali Jul 24, 2026
3675452
fix(github-http): return None on malformed host in resolve_github_rel…
Noor-ul-ain001 Jul 24, 2026
be0c741
[extension] Add Blueprint Index — Living Architecture Map extension t…
github-actions[bot] Jul 24, 2026
781a14a
docs: clarify shell-step interpolation safety (#3719)
mnriem Jul 24, 2026
b0850c9
Update Intake Authoring Governance preset to v0.2.0 (#3721)
github-actions[bot] Jul 24, 2026
ea6843c
fix(workflows): guard non-mapping 'inputs:' block in engine._resolve_…
jawwad-ali Jul 24, 2026
71e6201
fix(auth): normalize whitespace in auth-config env-var/id references …
jawwad-ali Jul 24, 2026
ae82c74
fix(kilocode): install commands under .kilo/commands (#3672)
WOLIKIMCHENG Jul 24, 2026
ffe2a7f
docs(upgrade): Claude Code files live in .claude/skills, not .claude/…
jawwad-ali Jul 24, 2026
73908f7
Update Architecture Guard extension to v1.13.1 (#3724)
dhruv-15-03 Jul 24, 2026
2fe35bf
Update Verify Review Ship extension to v0.3.0 (#3728)
github-actions[bot] Jul 24, 2026
ae0b8ca
Update Intake Review Governance preset to v0.1.1 (#3729)
github-actions[bot] Jul 24, 2026
c0fe0e4
chore: release 0.14.2, begin 0.14.3.dev0 development (#3730)
mnriem Jul 24, 2026
446ee32
docs(assess): clarify the pipeline works on an empty project (#3732)
mnriem Jul 27, 2026
2fb94e0
fix(extensions): make shipped scripts executable after install (#3723)
ogil109 Jul 27, 2026
403fcdc
fix(agent-context): discover nested plans in Python port mtime fallba…
matecardoso Jul 27, 2026
eb8108e
Update Verify Review Ship extension to v0.4.1 (#3759)
github-actions[bot] Jul 27, 2026
c6cb25c
Update Quality Gates (Enforcement Layer) extension to v0.3.3 (#3760)
github-actions[bot] Jul 27, 2026
3ca0eb1
Add Intake Sequencing Governance preset to community catalog (#3761)
github-actions[bot] Jul 27, 2026
015d125
Update Linear Weave extension to v1.0.1 (#3762)
github-actions[bot] Jul 27, 2026
59e6369
fix(bundler): reject unsupported schema_version in _merge_config (ali…
jawwad-ali Jul 27, 2026
103ad73
fix(workflows): guard non-mapping 'workflow:' block in WorkflowDefini…
jawwad-ali Jul 27, 2026
99dc915
fix: escape Rich markup in catalog list output (#3738)
Noor-ul-ain001 Jul 27, 2026
9e150cd
fix(agent-context): apply default markers when config markers are bla…
matecardoso Jul 27, 2026
c1028e5
fix(extensions): guard non-numeric catalog downloads in search/info r…
jawwad-ali Jul 27, 2026
962f9f0
fix(workflows): escape remaining untrusted fields in `workflow info` …
Noor-ul-ain001 Jul 27, 2026
e6a3ccf
fix(extensions): hyphenate command names in 'extension info' listing …
Quratulain-bilal Jul 27, 2026
42c7230
fix(extensions): tolerate non-string tags in catalog search (#3746)
Noor-ul-ain001 Jul 27, 2026
683bfd0
fix: register extensions for the active integration only (#3459)
marcelsafin Jul 27, 2026
6136706
fix(presets): coerce non-string catalog tags before joining (#3743)
Noor-ul-ain001 Jul 27, 2026
98c9e67
fix(extensions): tolerate non-string catalog name in display-name loo…
Noor-ul-ain001 Jul 27, 2026
2355fcb
Update AGENTS.md (#2626)
Noor-ul-ain001 Jul 27, 2026
0117a7b
fix: correct Optional type annotation for context_note parameter (#3765)
Quratulain-bilal Jul 27, 2026
118062e
harden: secure extension and preset archive downloads (#3141)
PascalThuet Jul 28, 2026
7fc5b23
feat: Add Alquimia AI integration (#2734)
exengstfeld Jul 28, 2026
39f2ac3
clarify: require real interrogatives, ban topic-label questions (#3745)
orize Jul 28, 2026
9602ad2
fix(copilot): honor preset command template overrides (#3592)
faqehanoor Jul 28, 2026
d8d6275
Update Intake Authoring Governance preset to v0.3.0 (#3788)
github-actions[bot] Jul 28, 2026
2a29b53
chore: release 0.14.3, begin 0.14.4.dev0 development (#3795)
mnriem Jul 28, 2026
1354ead
fix(constitution): stop propagating guidance into templates (#3737) (…
github-actions[bot] Jul 28, 2026
809b4c5
Update Intake Review Governance preset to v0.2.0 (#3796)
github-actions[bot] Jul 28, 2026
655a3cb
fix(integrations): preserve native skill invocation prefixes (#3663)
BenBtg Jul 28, 2026
999f8e6
Update Verify Review Ship extension to v0.4.2 (#3792)
github-actions[bot] Jul 28, 2026
2e44ed6
fix(integrations): escape catalog metadata in discovery output (#3772)
marcelsafin Jul 28, 2026
05cb3cb
fix(presets): tolerate non-string and non-list catalog fields in pres…
Noor-ul-ain001 Jul 28, 2026
a482fb2
fix: correct nullable resolved directory annotation (#3771)
marcelsafin Jul 28, 2026
8bfe6e1
fix(workflows,extensions): tolerate non-list catalog tags in search/i…
Noor-ul-ain001 Jul 28, 2026
054fb77
fix(bundle): escape catalog metadata in discovery output (#3774)
marcelsafin Jul 28, 2026
a9c9905
fix(workflows): reject non-string/non-boolean 'condition' in if/while…
jawwad-ali Jul 28, 2026
186ca25
Update Intake Sequencing Governance preset to v0.2.2 (#3809)
github-actions[bot] Jul 28, 2026
88e9973
docs: add Simplified Chinese translation of README (#3740)
CAN1177 Jul 28, 2026
89e204c
fix: use bounded read for integration catalog HTTP responses (#3763)
Quratulain-bilal Jul 28, 2026
9bb7206
Update Autonomous Run Governance preset to v0.3.3 (#3823)
github-actions[bot] Jul 28, 2026
98b2551
fix(presets): escape catalog metadata in discovery output (#3773)
marcelsafin Jul 28, 2026
56b1839
fix: handle tags containing / in GitHub release asset URL resolution …
Quratulain-bilal Jul 28, 2026
a2b0d0d
fix: add timeout to prompt step subprocess execution (#3768)
Quratulain-bilal Jul 28, 2026
86c4610
fix: correct Optional type annotation for _resolved_dir parameter (#3…
Quratulain-bilal Jul 28, 2026
ca2b494
[preset] Update Parallel Autonomous Run Governance to v0.2.4 (#3825)
github-actions[bot] Jul 28, 2026
0231ee0
[preset] Update A11Y Governance preset to v0.4.2 (#3828)
github-actions[bot] Jul 28, 2026
3dad624
fix(integrations): render hyphenated /speckit-<name> for Droid (alway…
jawwad-ali Jul 28, 2026
52a6514
fix(workflows): reject falsy non-mapping workflow-catalogs.yml top le…
jawwad-ali Jul 28, 2026
596a31e
fix(auth): resolve az via shutil.which so azure-cli token works on Wi…
jawwad-ali Jul 28, 2026
4bc79fe
fix(presets): guard non-list/non-mapping provides.templates in Preset…
jawwad-ali Jul 28, 2026
6ef9637
fix(integrations): reject empty --commands-dir in generic raw_options…
jawwad-ali Jul 28, 2026
4ad7ef2
Update Agent Parity Governance preset to v0.4.1 (#3830)
github-actions[bot] Jul 28, 2026
751eae7
fix(workflows): escape the step-progress line so step ids render (and…
jawwad-ali Jul 28, 2026
be33d2a
fix(bundler): degrade non-UTF-8 config reads into BundlerError (#3784)
jawwad-ali Jul 28, 2026
f04a36a
chore: release 0.14.4, begin 0.14.5.dev0 development (#3850)
mnriem Jul 29, 2026
d99170f
fix(workflows): dispatch prompt steps via the resolved executable (#3…
jawwad-ali Jul 29, 2026
b048e33
fix(presets): escape installed preset metadata in Rich output (#3826)
Noor-ul-ain001 Jul 29, 2026
1fff7a1
fix(extensions): guard the required manifest sections so one bad exte…
jawwad-ali Jul 29, 2026
f8e474d
feat: first-class agent-native runtime hooks for integrations (#3704)
kanfil Jul 29, 2026
884950f
fix(bundler): treat an explicit-null manifest field as missing, not t…
jawwad-ali Jul 29, 2026
b7b0e96
fix(integrations): preserve non-UTF-8 VS Code settings (#3833)
marcelsafin Jul 29, 2026
f4a9b89
fix(cli): render the literal [suffix] in --tag help and rejection mes…
jawwad-ali Jul 29, 2026
de54ff7
fix(workflows): make security requirements sync deterministic (#3832)
marcelsafin Jul 29, 2026
2ef9653
fix(agents): coerce a non-string description in TOML command renderin…
jawwad-ali Jul 29, 2026
623466d
test(extensions): update stale manifest validation message assertion …
mnriem Jul 29, 2026
89126f3
fix(integrations): don't abort uninstall when the manifest can't be d…
jawwad-ali Jul 29, 2026
8394c8d
[bug-fix] Fix upgrade-overwrites-copilot-skills: pass force=True to e…
github-actions[bot] Jul 29, 2026
db5802b
fix: add missing utf-8 encoding to registry file open calls (#3810)
Quratulain-bilal Jul 29, 2026
5439678
fix(presets): escape user-supplied catalog name/URL in add/remove out…
jawwad-ali Jul 29, 2026
13f2b13
fix: eliminate TOCTOU race in file unlink calls (#3811)
Quratulain-bilal Jul 29, 2026
6033c69
test(workflows): name the condition-rejection tests for the real boun…
jawwad-ali Jul 29, 2026
e543147
fix: eliminate TOCTOU race in file unlink calls (#3815)
Quratulain-bilal Jul 29, 2026
6337ebf
fix: add utf-8 encoding to registry file open calls (#3816)
Quratulain-bilal Jul 29, 2026
afbb2c7
fix(workflows): validate prompt step 'timeout' like the shell step (#…
Noor-ul-ain001 Jul 29, 2026
5827db5
Add Intent Reconciliation extension to community catalog (#3858)
github-actions[bot] Jul 29, 2026
6712665
fix(workflows): guard the shell step's timeout check against Overflow…
Noor-ul-ain001 Jul 29, 2026
f36634b
Add yolo to community workflow catalog (#3864)
clintcparker Jul 29, 2026
834d11b
chore: sync fork with upstream main
bigsmartben Jul 30, 2026
edc1699
chore: release 0.15.0, begin 0.15.1.dev0 development (#3871)
mnriem Jul 30, 2026
99cd5e2
docs: use absolute image URLs in README for PyPI rendering (#3867)
mnriem Jul 30, 2026
6751435
feat: bind gate verdict to workflow input via verdict_input (#3725)
markuswondrak Jul 30, 2026
227b4f5
fix: normalize non-UTF-8 integration manifests (#3862)
marcelsafin Jul 30, 2026
fdfc5ae
Add ContextForge MCP extension to community catalog (#3487)
github-actions[bot] Jul 30, 2026
296fdf2
fix(scripts): use a .NET Framework-safe trim in the PowerShell init-d…
Noor-ul-ain001 Jul 30, 2026
e916fd1
fix: preserve unreadable event config files (#3861)
marcelsafin Jul 30, 2026
4803a22
fix: use chunked read for extension manifest hash (#3841)
Quratulain-bilal Jul 30, 2026
81bf741
[bug-fix] Fix bundle-update-force-mislead: add refresh() to DefaultPr…
github-actions[bot] Jul 30, 2026
0f3f2aa
fix: escape workflow step metadata (#3863)
marcelsafin Jul 30, 2026
6577ffc
Harden extension URL download cache against symlink and junction race…
mnriem Jul 30, 2026
515d281
fix: reject non-object workflow caches (#3860)
marcelsafin Jul 30, 2026
43a54bf
feat(presets): add opt-in constitution-sync preset (#3873)
mnriem Jul 30, 2026
e4318a3
fix(catalogs): validate the port in the shared catalog-URL validator,…
jawwad-ali Jul 30, 2026
5e2f9bc
fix(scripts): tolerate an unusable integration.json in the Python hel…
jawwad-ali Jul 30, 2026
bca5b5a
merge: incorporate latest fork main
bigsmartben Jul 31, 2026
8c675b1
merge: update to latest upstream main
bigsmartben Jul 31, 2026
3208947
fix: reconcile upstream sync regressions
bigsmartben Jul 31, 2026
9de9e2a
fix: honor bash setup-plan paths-only mode
bigsmartben Jul 31, 2026
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
The table of contents is too big for display.
Diff view
Diff view
  •  
  •  
  •  
3 changes: 2 additions & 1 deletion .devcontainer/devcontainer.json
Original file line number Diff line number Diff line change
Expand Up @@ -65,7 +65,8 @@
},
"chat.tools.terminal.autoApprove": {
".specify/scripts/bash/": true,
".specify/scripts/powershell/": true
".specify/scripts/powershell/": true,
".specify/scripts/python/": true
}
}
}
Expand Down
11 changes: 11 additions & 0 deletions .devcontainer/post-create.sh
Original file line number Diff line number Diff line change
Expand Up @@ -97,6 +97,17 @@ echo -e "\n🤖 Installing CodeBuddy CLI..."
run_command "npm install -g @tencent-ai/codebuddy-code@latest"
echo "✅ Done"

echo -e "\n🤖 Installing Factory Droid CLI..."
run_command "npm install -g droid@latest"

if ! command -v droid >/dev/null 2>&1; then
echo -e "\033[0;31m[ERROR] Droid CLI installation did not create 'droid' in PATH.\033[0m" >&2
exit 1
fi

run_command "droid --version > /dev/null"
echo "✅ Done"

# Installing UV (Python package manager)
echo -e "\n🐍 Installing UV - Python Package Manager..."
run_command "pipx install uv"
Expand Down
1 change: 0 additions & 1 deletion .github/CODEOWNERS
Original file line number Diff line number Diff line change
Expand Up @@ -5,4 +5,3 @@
/extensions/catalog.community.json @mnriem
/integrations/catalog.community.json @mnriem
/presets/catalog.community.json @mnriem

4 changes: 2 additions & 2 deletions .github/ISSUE_TEMPLATE/agent_request.yml
Original file line number Diff line number Diff line change
Expand Up @@ -7,8 +7,8 @@ body:
attributes:
value: |
Thanks for requesting a new agent! Before submitting, please check if the agent is already supported.
**Currently supported agents**: Amp, Antigravity, Auggie CLI, Claude Code, Cline, CodeBuddy, Codex CLI, Cursor, Devin for Terminal, Firebender, Forge, Gemini CLI, GitHub Copilot, Goose, Hermes Agent, IBM Bob, Junie, Kilo Code, Kimi Code, Kiro CLI, Lingma, Mistral Vibe, Oh My Pi, opencode, Pi Coding Agent, Qoder CLI, Qwen Code, RovoDev ACLI, SHAI, Tabnine CLI, Trae, ZCode, Zed

**Currently supported agents**: Alquimia AI, Amp, Antigravity, Auggie CLI, Claude Code, Cline, CodeBuddy, Codex CLI, Cursor, Devin for Terminal, Factory Droid, Firebender, Forge, Gemini CLI, GitHub Copilot, Goose, Grok Build, Hermes Agent, IBM Bob, Junie, Kilo Code, Kimi Code, Kiro CLI, Lingma, Mistral Vibe, Oh My Pi, opencode, Pi Coding Agent, Qoder CLI, Qwen Code, RovoDev ACLI, SHAI, Tabnine CLI, Trae, ZCode, Zed

- type: input
id: agent-name
Expand Down
3 changes: 3 additions & 0 deletions .github/ISSUE_TEMPLATE/bug_report.yml
Original file line number Diff line number Diff line change
Expand Up @@ -62,6 +62,7 @@ body:
label: AI Agent
description: Which AI agent are you using?
options:
- Alquimia AI
- Amp
- Antigravity
- Auggie CLI
Expand All @@ -71,11 +72,13 @@ body:
- Codex CLI
- Cursor
- Devin for Terminal
- Factory Droid
- Firebender
- Forge
- Gemini CLI
- GitHub Copilot
- Goose
- Grok Build
- Hermes Agent
- IBM Bob
- Junie
Expand Down
8 changes: 4 additions & 4 deletions .github/ISSUE_TEMPLATE/extension_submission.yml
Original file line number Diff line number Diff line change
Expand Up @@ -7,7 +7,7 @@ body:
attributes:
value: |
Thanks for contributing an extension! This template helps you submit your extension to the community catalog.

**Before submitting:**
- Review the [Extension Publishing Guide](https://github.com/github/spec-kit/blob/main/extensions/EXTENSION-PUBLISHING-GUIDE.md)
- Ensure your extension has a valid `extension.yml` manifest
Expand Down Expand Up @@ -209,9 +209,9 @@ body:
**Tested on:**
- macOS 14.0 with Spec Kit v0.1.0
- Linux Ubuntu 22.04 with Spec Kit v0.1.0

**Test project:** [Link or description]

**Test scenarios:**
1. Installed extension
2. Configured settings
Expand All @@ -230,7 +230,7 @@ body:
```bash
# Install extension
specify extension add <extension-name> --from https://github.com/your-org/spec-kit-your-extension/archive/refs/tags/v1.0.0.zip

# Use a command
/speckit.your-extension.command-name arg1 arg2
```
Expand Down
3 changes: 3 additions & 0 deletions .github/ISSUE_TEMPLATE/feature_request.yml
Original file line number Diff line number Diff line change
Expand Up @@ -56,6 +56,7 @@ body:
description: Does this feature relate to a specific AI agent?
options:
- All agents
- Alquimia AI
- Amp
- Antigravity
- Auggie CLI
Expand All @@ -65,11 +66,13 @@ body:
- Codex CLI
- Cursor
- Devin for Terminal
- Factory Droid
- Firebender
- Forge
- Gemini CLI
- GitHub Copilot
- Goose
- Grok Build
- Hermes Agent
- IBM Bob
- Junie
Expand Down
2 changes: 1 addition & 1 deletion .github/ISSUE_TEMPLATE/preset_submission.yml
Original file line number Diff line number Diff line change
Expand Up @@ -7,7 +7,7 @@ body:
attributes:
value: |
Thanks for contributing a preset! This template helps you submit your preset to the community catalog.

**Before submitting:**
- Review the [Preset Publishing Guide](https://github.com/github/spec-kit/blob/main/presets/PUBLISHING.md)
- Ensure your preset has a valid `preset.yml` manifest
Expand Down
20 changes: 20 additions & 0 deletions .github/aw/actions-lock.json
Original file line number Diff line number Diff line change
@@ -1,10 +1,30 @@
{
"entries": {
"actions/checkout@v6.0.3": {
"repo": "actions/checkout",
"version": "v6.0.3",
"sha": "df4cb1c069e1874edd31b4311f1884172cec0e10"
},
"actions/download-artifact@v8.0.1": {
"repo": "actions/download-artifact",
"version": "v8.0.1",
"sha": "3e5f45b2cfb9172054b4087a40e8e0b5a5461e7c"
},
"actions/github-script@v9.0.0": {
"repo": "actions/github-script",
"version": "v9.0.0",
"sha": "3a2844b7e9c422d3c10d287c895573f7108da1b3"
},
"actions/setup-node@v6.4.0": {
"repo": "actions/setup-node",
"version": "v6.4.0",
"sha": "48b55a011bda9f5d6aeb4c2d9c7362e8dae4041e"
},
"actions/upload-artifact@v7.0.1": {
"repo": "actions/upload-artifact",
"version": "v7.0.1",
"sha": "043fb46d1a93c77aae656e7c1c64a875d1fc6a0a"
},
"github/gh-aw-actions/setup@v0.79.8": {
"repo": "github/gh-aw-actions/setup",
"version": "v0.79.8",
Expand Down
123 changes: 123 additions & 0 deletions .github/scripts/check_security_requirements.py
Original file line number Diff line number Diff line change
@@ -0,0 +1,123 @@
"""Check that committed security audit requirements are up to date."""

from __future__ import annotations

import os
import subprocess
import sys
from pathlib import Path


REPO_ROOT = Path(__file__).resolve().parents[2]
COMMITTED_REQUIREMENTS = REPO_ROOT / ".github" / "security-audit-requirements.txt"
DEPENDENCY_INPUTS = ("pyproject.toml", ".github/security-audit-requirements.txt")


def _dependency_diff_refs() -> tuple[str, str]:
base_ref = os.environ.get("DEPENDENCY_DIFF_BASE", "").strip()
head_ref = os.environ.get("DEPENDENCY_DIFF_HEAD", "").strip() or "HEAD"
if base_ref and not set(base_ref) <= {"0"}:
return base_ref, head_ref
# Fallback when no usable base is supplied (push with an all-zero
# ``github.event.before``, manual dispatch, etc.). ``HEAD^`` fails on a
# shallow checkout or a single-commit repo; that ``git diff`` error is
# caught by the caller and deliberately treated as "inputs changed" so the
# audit runs anyway — failing safe (audit) rather than skipping silently.
return "HEAD^", "HEAD"


def _dependency_inputs_changed() -> bool:
base_ref, head_ref = _dependency_diff_refs()
try:
merge_base = subprocess.run(
["git", "merge-base", base_ref, head_ref],
check=True,
cwd=REPO_ROOT,
stderr=subprocess.PIPE,
stdout=subprocess.PIPE,
text=True,
).stdout.strip()
result = subprocess.run(
[
"git",
"diff",
"--name-only",
merge_base,
head_ref,
"--",
*DEPENDENCY_INPUTS,
],
check=True,
cwd=REPO_ROOT,
stderr=subprocess.PIPE,
stdout=subprocess.PIPE,
text=True,
)
except subprocess.CalledProcessError as exc:
print(
"Could not determine changed dependency inputs; checking requirements.",
file=sys.stderr,
)
if exc.stderr:
print(exc.stderr.strip(), file=sys.stderr)
return True

changed_inputs = [line for line in result.stdout.splitlines() if line]
if not changed_inputs:
print("Dependency audit inputs unchanged; sync check skipped.")
return False

print(f"Dependency audit inputs changed: {', '.join(changed_inputs)}")
return True


def main() -> int:
if not _dependency_inputs_changed():
return 0

generated_requirements_env = os.environ.get("GENERATED_REQUIREMENTS", "").strip()
if not generated_requirements_env:
print(
"GENERATED_REQUIREMENTS must be set to the temporary output file path.",
file=sys.stderr,
)
return 1

generated_requirements = Path(generated_requirements_env)
generated_requirements.parent.mkdir(parents=True, exist_ok=True)
generated_requirements.write_bytes(COMMITTED_REQUIREMENTS.read_bytes())

subprocess.run(
[
"uv",
"pip",
"compile",
"pyproject.toml",
"--extra",
"test",
"--universal",
"--generate-hashes",
"--quiet",
"--no-header",
"--output-file",
str(generated_requirements),
],
check=True,
cwd=REPO_ROOT,
)

committed = COMMITTED_REQUIREMENTS.read_text(encoding="utf-8")
generated = generated_requirements.read_text(encoding="utf-8")
if committed == generated:
return 0

print(
"Regenerate .github/security-audit-requirements.txt with the documented "
"uv pip compile command.",
file=sys.stderr,
)
return 1


if __name__ == "__main__":
raise SystemExit(main())
Loading
Loading