Greenfield setup promises a starter backlog it never generates — new projects always end setup with 0 tasks
Hub data load OOM-kills the dashboard process — every in-flight request returns a Caddy 502
Cross-member state leaks into per-member plan gates — stale-review gate and cycle lineage are not scoped to the planning member
Guard commitReleaseProjection's cycles upsert against rewriting a completed cycle
v0.402.21
Keep MCP tool schemas compatible with strict providers such as ZCode by removing unsupported schema keywords before advertising tools
Let release managers finish an already-merged release from a clean checkout at the exact origin/main commit, including when a merged cycle branch remains in another worktree
v0.402.20
Pin the canonical admin origin in the Content Security Policy so production RSC requests do not depend on an optional build variable
v0.402.19
Allow the canonical admin origin in the Content Security Policy so admin React Server Component requests are not blocked
v0.402.18
Scope review_list to the caller's assignments and active cycle by default, while preserving the shared queue behind explicit team scope
Show cycle, assignee, and reviewer context for pending and rework reviews
v0.402.17
Preserve and reconcile deployment verification receipts during workspace releases
Require durable BUILD HANDOFF evidence before cycle tasks can be completed or released
Verify all 17 critical production routes through one typed production qualification contract
v0.402.16
Scope release readiness, evidence, handoff, and metrics checks to the caller's exact server-stored cycle roster
Prevent another contributor's legacy tasks from blocking a same-numbered cycle release
v0.402.15
Register per-user, per-computer hosted workspace bindings so remote PAPI writes resolve the correct local directory
Route workspace binding, task creation, and task status transitions through one canonical production implementation
Remove source-scraped parity gates and reclassify mocked integration/smoke tests as unit coverage
Enforce real production-path evidence for parity, integration, hosted, smoke, E2E, and production-path claims
v0.402.14
Credentials must name their project: nullable api_keys.project_id + project-scoped key minting + resolution precedence + scoped Reset
MCP tooling for project self-service — let a stuck user's own LLM resolve friction directly
FTUE: new users don't understand cycle/plan or that PAPI isn't agentic
GitHub connect: can't link multiple GitHub accounts, and repo-link attempted via chat didn't actually persist
Board page doesn't update in real time like Hub/Cycle does
Persist deployment verification when release reconciles an already-merged contributor PR