## 2026.6.7
### 亮点
- 频道投递在 Slack、Telegram、外发媒体、静默回复、进度草稿和分页操作结果方面变得更加严格:同频道 Slack 终稿保留在转录中,顶层 `image` 消息工具发送附件媒体,可展开的 Telegram 块引用和卷轴式回复保持投递,显式静默助手回复保持静默,进度草稿启动失败会被报告,频道操作结果页面可以增量获取。(#92498, #92407, #92416, #92281, #92073, #92083, #88993) 感谢 @TurboTheTurtle、@ichirokyoto、@xydigit-sj、@joshavant、@sallyom、@hansraj316 和 @fuller-stack-dev。
- 提供商和模型处理更具韧性:Kimi K2.7 Code 可用,Kimi 原生工具调用 ID 和重放的 `reasoning_content` 已被修复,Mistral 跳过不可读的工具模式,Fireworks 目录参数来自清单,DeepSeek 保留配置的静态传输,提供商回退正确解析,Anthropic 思维链重放已被修复,Anthropic Vertex 停止重新标记传输预算缓存控制。(#92554, #92396, #90242, #90326, #92265, #92293, #92286, #92387) 感谢 @xialonglee、@vincentkoc、@obuchowski、@joshavant 和 @openperf。
- 用户可见的上下文和身份验证边界更安全:飞书不再将提示前言的运行时上下文泄露到回复中,WebSocket 负载处理得到强化,CLI 支撑的 `/btw` 回退默认失败,本地设置信任得到强化,技能工坊符号链接写入在回滚元数据写入前进行了验证和门控。(#92589, #92593, #92226, #92175) 感谢 @jovi2014-cyber、@zhangqueping 和 @joshavant。
- 代理、记忆、Codex、定时任务和更新恢复路径保留了有用的失败信息:无效的插件模型目录被隔离,QMD 启动失败在回退错误下仍可存活,Codex 记忆提示保持注册状态,源消息工具回复不再阻止代理进度,结构化不支持模型错误被分类,心跳/定时任务终端状态被保留,Linux 服务更新干净交接,定时任务状态报告 SQLite 存储路径。(#92564, #92218, #92618, #92350, #92343, #92280, #92231, #92225, #92144) 感谢 @tangtaizong666、@zhbcher、@mushuiyu886、@rubencu、@joshavant 和 @liuhao1024。
- UI、文档、QA、Docker 和发布验证更易信赖:无障碍对比度/焦点/字体修复已落地,空工作板列可以隐藏,设计系统文档已被记录,运行时间监控指向 `/health`,Windows Hub 文档固定已验证的稳定安装程序链接,QA 证据和评分卡分类制品已产出,QA Lab 已集成到 Docker 镜像中,生命周期超时清理在领导者退出后仍能存活。(#89822, #89615, #89827, #55768, #92608, #92605, #91484, #91500, #92087, #92566) 感谢 @BunsDev、@faahim、@liuhao1024、@lzyyzznl、@RomneyDa 和 @jesse-merhi。
### 变更
- QA 和发布验证现在生成评分卡分类和证据制品,拆分插件 ClawHub 发布路径,使用受信任的插件 npm 发布,保持插件发布检查的权威性,并协调根包、可发布插件清单、生成的基线和原生应用版本以适应 2026.6.7 测试版列车。(#91484, #91500) 感谢 @RomneyDa。
- 文档和操作指南现已涵盖 Gateway 运行时间监控、设计系统指南、Windows Hub 稳定版下载固定链接、移除过时的 ClawHub 导航、WhatsApp 入站兼容性以及 doctor/update 进度行为。(#55768, #92608, #89827, #92605) 感谢 @faahim、@liuhao1024、@BunsDev 和 @lzyyzznl。
- Matrix 插件发布元数据与核心测试版列车对齐,并记录版本对齐的变更日志条目用于包发布。
### 修复
- 频道和外发流程在 Slack 转录镜像、Telegram 轮询冲突和瞬态草稿预览失败、外发图片发送、显式静默助手回复、进度草稿启动错误、分页操作结果、WhatsApp 入站别名、本地设置信任以及心跳承诺投递方面保持了用户意图。(#92498, #92281, #92407, #92416, #92073, #92083, #88993, #92175, #92231) 感谢 @TurboTheTurtle、@joshavant、@ichirokyoto、@xydigit-sj、@sallyom、@hansraj316 和 @fuller-stack-dev。
- 提供商、模型和工具重放修复涵盖了 Mistral 不可读模式、Fireworks 清单模型参数、Kimi K2.7 Code/工具调用/推理重放、DeepSeek 传输继承、托管 SecretRef 认证、静态模型回退、被拒的 Anthropic 思维链重放、Anthropic Vertex 缓存控制以及 OTLP 跟踪关联。(#90242, #90326, #92554, #92396, #92265, #92235, #92293, #92286, #92387, #92276) 感谢 @vincentkoc、@obuchowski、@xialonglee、@joshavant 和 @openperf。
- 代理/运行时恢复现可隔离无效的插件模型目录,保留 Codex 记忆提示注册,在源消息工具回复后继续执行,分类结构化不支持模型错误,在回退错误旁报告 QMD 启动失败,保留定时任务超时/取消状态,保持禁用的心跳一次性重试有效,并保持 Linux 服务自动更新可读且已交接。(#92564, #92350, #92343, #92280, #92218, #92618, #92225, #92282, #92144) 感谢 @tangtaizong666、@rubencu、@joshavant、@zhbcher、@mushuiyu886 和 @liuhao1024。
- 安装、沙箱、doctor 和安全界面从物化路径渲染 CLI 技能提示,CLI 支撑的 `/btw` 默认失败,解析 doctor SecretRef 预览,诊断被阻塞的外部频道插件,验证并门控技能工坊符号链接写入,在 Node 包安装失败后停止,并保持不受支持的后台服务状态可读。(#92508, #92226, #92229, #86629) 感谢 @brokemac79、@joshavant 和 @brokemac79。
- 发布、CI、E2E、Docker 和依赖门控保持生命周期超时清理存活,将 QA Lab 运行时打包到 Docker 镜像中,更新 esbuild 审计固定,强化 Docker 进程清理,保持插件发布检查权威,移除嘈杂的多余验证脚本,使发布失败范围可控。(#92566, #92087, #92540) 感谢 @RomneyDa 和 @jesse-merhi。
## 2026.6.7
### Highlights
- Channel delivery is tighter across Slack, Telegram, outbound media, silent replies, progress drafts, and paged action results: same-channel Slack finals persist in transcripts, top-level `image` message-tool sends attach media, expandable Telegram blockquotes and spooled replay survive delivery, explicit silent assistant replies stay silent, progress draft startup failures are reported, and channel action result pages can be fetched incrementally. (#92498, #92407, #92416, #92281, #92073, #92083, #88993) Thanks @TurboTheTurtle, @ichirokyoto, @xydigit-sj, @joshavant, @sallyom, @hansraj316, and @fuller-stack-dev.
- Provider and model handling is more resilient: Kimi K2.7 Code is available, Kimi native tool-call ids and replayed `reasoning_content` are repaired, Mistral skips unreadable tool schemas, Fireworks catalog parameters come from manifests, DeepSeek keeps configured static transport, provider fallbacks resolve correctly, Anthropic thinking replay is repaired, and Anthropic Vertex stops re-marking transport-budgeted cache control. (#92554, #92396, #90242, #90326, #92265, #92293, #92286, #92387) Thanks @xialonglee, @vincentkoc, @obuchowski, @joshavant, and @openperf.
- User-visible context and auth boundaries are safer: Feishu no longer leaks prompt-preface runtime context into replies, WebSocket payload handling is hardened, CLI-backed `/btw` fallback fails closed, local setup trust is hardened, and Skill Workshop symlink writes are gated and validated before rollback metadata is written. (#92589, #92593, #92226, #92175) Thanks @jovi2014-cyber, @zhangqueping, and @joshavant.
- Agent, memory, Codex, cron, and update recovery paths preserve the useful failure now: invalid plugin model catalogs are isolated, QMD startup failures survive fallback errors, Codex memory prompts remain registered, source message tool replies no longer stop agent progress, structured unsupported-model errors are classified, heartbeat/cron terminal state is preserved, Linux service updates hand off cleanly, and cron status reports the SQLite store path. (#92564, #92218, #92618, #92350, #92343, #92280, #92231, #92225, #92144) Thanks @tangtaizong666, @zhbcher, @mushuiyu886, @rubencu, @joshavant, and @liuhao1024.
- UI, docs, QA, Docker, and release proof are easier to trust: accessibility contrast/focus/font fixes landed, empty Workboard columns can hide, the design-system docs are documented, uptime monitors are pointed at `/health`, Windows Hub docs pin the verified stable installer links, QA evidence and scorecard taxonomy artifacts are produced, QA Lab is bundled into Docker images, and lifecycle timeout cleanup survives leader exit. (#89822, #89615, #89827, #55768, #92608, #92605, #91484, #91500, #92087, #92566) Thanks @BunsDev, @faahim, @liuhao1024, @lzyyzznl, @RomneyDa, and @jesse-merhi.
### Changes
- QA and release validation now emit scorecard taxonomy and evidence artifacts, split plugin ClawHub publishing paths, use trusted plugin npm publishing, keep plugin publish checks authoritative, and align the root package, publishable plugin manifests, generated baselines, and native app versions for the 2026.6.7 beta train. (#91484, #91500) Thanks @RomneyDa.
- Docs and operator guidance now cover Gateway uptime monitoring, design-system guidance, Windows Hub stable download pins, removed stale ClawHub navigation, WhatsApp inbound compatibility, and doctor/update progress behavior. (#55768, #92608, #89827, #92605) Thanks @faahim, @liuhao1024, @BunsDev, and @lzyyzznl.
- Matrix plugin release metadata is aligned with the core beta train and records the version-alignment changelog entry for package publication.
### Fixes
- Channels and outbound flows preserve user intent across Slack transcript mirrors, Telegram polling conflicts and transient draft-preview failures, outbound image sends, explicit silent assistant replies, progress-draft startup errors, paged action results, WhatsApp inbound aliases, local setup trust, and heartbeat commitment delivery. (#92498, #92281, #92407, #92416, #92073, #92083, #88993, #92175, #92231) Thanks @TurboTheTurtle, @joshavant, @ichirokyoto, @xydigit-sj, @sallyom, @hansraj316, and @fuller-stack-dev.
- Provider, model, and tool replay fixes cover unreadable Mistral schemas, Fireworks manifest model parameters, Kimi K2.7 Code/tool-call/reasoning replay, DeepSeek transport inheritance, managed SecretRef auth, static model fallbacks, rejected Anthropic thinking replay, Anthropic Vertex cache control, and OTLP trace correlation. (#90242, #90326, #92554, #92396, #92265, #92235, #92293, #92286, #92387, #92276) Thanks @vincentkoc, @obuchowski, @xialonglee, @joshavant, and @openperf.
- Agent/runtime recovery now isolates invalid plugin model catalogs, preserves Codex memory prompt registration, continues after source message tool replies, classifies structured unsupported-model errors, reports QMD startup failures beside fallback errors, preserves cron timeout/cancel state, keeps disabled heartbeat one-shot retries working, and keeps Linux service auto-updates readable and handed off. (#92564, #92350, #92343, #92280, #92218, #92618, #92225, #92282, #92144) Thanks @tangtaizong666, @rubencu, @joshavant, @zhbcher, @mushuiyu886, and @liuhao1024.
- Install, sandbox, doctor, and security surfaces render CLI skill prompts from materialized paths, fail closed for CLI-backed `/btw`, resolve doctor SecretRef previews, diagnose blocked external channel plugins, validate and gate Skill Workshop symlink writes, stop after failed Node package installs, and keep unsupported daemon service status readable. (#92508, #92226, #92229, #86629) Thanks @brokemac79, @joshavant, and @brokemac79.
- Release, CI, E2E, Docker, and dependency gates keep lifecycle timeout cleanup alive, bundle QA Lab runtime in Docker images, update the esbuild audit pin, harden Docker process cleanup, keep plugin publish checks authoritative, and remove noisy redundant proof scripts so release failures stay bounded. (#92566, #92087, #92540) Thanks @RomneyDa and @jesse-merhi.