v2.2.6
最新Latest重点更新Highlights
- Google Antigravity CLI 提供商 — 原生支持
agyCLI 运行时,自动探测并启用stream-json流水线、实时转录流式传输、通过--conversation <id>恢复会话以及下一轮引导能力,配合流式边界聚合与运行时沙箱隔离加固(#874、#894、#896)。Google Antigravity CLI provider — Native runtime support for theagyCLI with auto-detection,stream-jsonpipeline, live transcript streaming, conversation resumption via--conversation <id>, and next-turn steering, hardened by runtime sandbox isolation and step-boundary streaming aggregation (#874,#894,#896). - 工单交互式决策小组件 — 工单评论与时间线中支持 single-select、multi-select 与 confirm-action 组件,配备乐观并发锁、审计日志、工作区级特性开关、
mopheus-ticket-widgets内置技能以及精简提示词微规范(#860、#907)。Interactive decision widgets for tickets — Single-select, multi-select, and confirm-action widgets in ticket comments and timelines with optimistic concurrency locks, audit log, workspace feature flag, themopheus-ticket-widgetsbuiltin skill, and a slim-prompt micro-spec (#860,#907). - 工作区分域用户配置文件 — 环境变量与配置文件按工作区隔离存储,加密保存,提供服务端模板、二进制预览以及
mopheus user env/mopheus user config-fileCLI 命令(#901、#885)。Workspace-scoped user profiles — Environment variables and configuration files are isolated per workspace with encrypted values, server-owned templates, binary previews, and themopheus user env/mopheus user config-fileCLI surface (#901,#885). - 守护进程默认启用文件系统沙箱 — 守护进程默认激活文件系统沙箱,需通过
MOPHEUS_DAEMON_SANDBOX=false|0|off显式关闭,新策略在重启与回归测试中得到保留(#906、#843)。Filesystem sandbox enabled by default — The daemon now activates the filesystem sandbox unless explicitly opted out viaMOPHEUS_DAEMON_SANDBOX=false|0|off; the new policy survives restarts and is covered by regression tests (#906,#843). - 作业 Quartz 计划触发器 — 新增
cron_dialect=quartz触发器,支持?月份/星期语义、可选startAt/expiresAt边界、可视化计划编辑器与未来运行预览,并补齐方言感知的 CLI 帮助(#884)。Quartz schedule triggers for jobs — Addcron_dialect=quartztriggers with?day-of-month/day-of-week semantics, optionalstartAt/expiresAtboundaries, an interactive schedule editor with future-run previews, and dialect-aware CLI help (#884). - 凭据与认证信息脱敏 — 智能体输出会脱敏内嵌凭据,认证环境变量在写入日志前被屏蔽,集成审计表不再泄露敏感标签(系列安全加固)。Credential and auth redaction — Agent output redacts embedded credentials, auth environment values are masked before logging, and the integration audit table no longer leaks sensitive labels (security hardening series).
- 通道异步外发与作用域执行 — 通道通过统一生命周期流异步发送消息,移除不可重试的媒体门禁,并强制执行智能体作用域(
#911及通道重构)。Channel async outbound delivery and scope enforcement — Channels ship messages asynchronously through a centralized lifecycle flow, drop non-retryable media gates, and enforce agent execution scope (#911, channel refactors). - Worktree 注册中心 —
mopheus repo worktree list|prune协调 bare-repo sidecar 元数据,支持按工作区与工单选择子集,并对脏/未推送 worktree 安全复用或驱逐(#905)。Retained worktree registry —mopheus repo worktree list|prunereconciles bare-repo sidecar metadata, supports per-workspace and per-ticket selectors, and safely reuses or evicts worktrees with dirty/unpushed detection (#905). - 评论触发器预览与标签化体验 — 工单展示实时评论触发器预览,在标题下方渲染创建者与创建时间,并以共享规范常量统一 "我的工单" 筛选(
#909、#923、#921)。Comment trigger previews and label-driven UX — Tickets expose live comment trigger previews, render the ticket creator and creation timestamp below the title, and standardize the My Tickets filter on a shared canonical constant set (#909,#923,#921). - 自动化任务的结构化收件箱卡片 — 自动化作业运行与智能体任务失败通知升级为结构化卡片,附带快捷操作与转录直链(
#868、#840)。Structured inbox cards for automated runs — Automated job-run and agent-task failure notifications now ship structured cards with quick actions and a direct transcript link (#868,#840).
新增New
- Antigravity CLI 提供商,含
stream-json流水线、转录流、会话恢复,以及提供商选择页的agy品牌图标(#874)。Antigravity CLI provider withstream-jsonpipeline, transcript streaming, conversation resumption, andagybrand logo in the provider picker (#874). - 交互式决策小组件,含乐观状态、审计日志、React 组件、多语言本地化以及
mopheus-ticket-widgets内置技能(#860)。Interactive decision widgets with optimistic state, audit log, React components, multilingual localization, and amopheus-ticket-widgetsbuiltin skill (#860). - 工作区分域用户环境变量与配置文件,加密存储、服务端模板、二进制只读预览(
#901)。Workspace-scoped user environment variables and configuration files with encrypted storage, server-owned templates, and binary read-only previews (#901). - Quartz 计划触发器、可视化计划编辑器、未来运行预览 API、本地化人类可读计划文案(
#884)。Quartz schedule triggers, multi-select schedule editor, future-run preview API, and locale-aware humanized schedule text (#884). - Worktree 注册中心 CLI 与本地守护 list/prune 端点,按工作区隔离(
#905)。Retained worktree registry CLI plus local daemon list/prune endpoints with workspace scope (#905). - 通道异步外发,统一生命周期 outbound 流。Async outbound channel delivery with a centralized lifecycle outbound flow.
- 工单评论触发器预览(
#909)。Comment trigger previews in ticket timelines (#909). mop ticket create与mop ticket update新增--label/--labels选项(#918)。--labeland--labelsflags onmop ticket createandmop ticket update(#918).mop chat channel list用于检查通道绑定与提供商作用域。mop chat channel listto inspect channel bindings and provider scoping.mop feature list/mop feature check命令以及只读mop profile子命令族(list、show)(#858及后续)。mop feature listandmop feature checkcommands plus a read-onlymop profilefamily (list,show) (#858and follow-up).mop守护升级流程,支持清单驱动的原子化重装。mopdaemon upgrade flow with manifest-driven atomic reinstall.- 工作区分域邮件配置与派发委托,工作区设置中显示附件大小限制。Workspace-scoped email configuration and dispatch delegation plus an attachment-limit summary in workspace settings.
- 作业运行通知卡片,含结构化详情与直链入口(
#868)。Job run notification cards with structured details and a direct link to the originating run (#868). - 智能体任务失败通知,含"查看转录"快捷入口并在收件箱列出失败运行(
#840)。Agent task failure notifications with a "view transcript" action and listing of failed runs in the inbox (#840). - 工单创建者显示名与创建时间渲染在标题下方(
#923)。Ticket creator display name and creation timestamp rendered below the title (#923). - 智能体头像显示在 Web 智能体列表中。Agent avatars in the web agent list.
- 聊天主题支持会话 ID 一键复制。Topic session-id copy button in chat.
- CLI 支持长聊天消息输入;聊天支持智能体会话路由与提供商感知的选择。Long chat message input on the CLI; agent chat routing for sessions with provider-aware selection.
- 决策小组件微规范内联至精简提示词,并随附
mopheus-ticket-widgets技能参考(#907)。Decision widget micro-spec inlined in the slim prompt and themopheus-ticket-widgetsskill reference (#907). - 沙箱挂载计划修复与守护进程显式沙箱退出值(
#843、#906)。Sandbox mount plan fix and explicit daemon sandbox opt-out values (#843,#906). - 沙箱凭据隔离、profile 恢复记录隔离、Antigravity 运行时沙箱隔离(
#894)。Sandbox credential isolation, profile recovery isolation, and Antigravity runtime sandbox isolation (#894). - 提供商会话 ID 的订阅级传播及跨重启持久化(
#885)。Subscription propagation for provider session IDs and persistence across restarts (#885). - "我的工单" 默认切换至全工作区作用域与规范筛选常量(
#921)。My Tickets default-to-all-scope toggle and canonical filter constants (#921). - 分域用户快捷命令、Pi 提供商 RPC 迁移以及 Antigravity 品牌图标。Scoped user shortcut commands, Pi provider RPC migration, and the Antigravity brand logo.
- CLI
job create --cron-dialect quartz支持start-at与expires-at边界。CLIjob create --cron-dialect quartzwithstart-atandexpires-atboundaries. docs/blog新增 Mopheus Chat 与 Event Jobs 中文 ChatOps 集成指南。Chinese ChatOps integration guide for Mopheus Chat and Event Jobs indocs/blog.- 提供商集成指南与 Antigravity 提供商文档,覆盖 EN/ZH/JA。Provider integration guide and Antigravity provider documentation in EN/ZH/JA.
- 项目文档新增安全边界指南。Security boundaries guide in the project documentation.
改进Improved
- 守护进程默认启用文件系统沙箱,仅可通过显式环境变量关闭(
#906)。Daemon defaults the filesystem sandbox to enabled; only an explicit environment opt-out disables it (#906). - 收件箱通知以正交工具栏重新设计,新增取消归档与分域批量操作;自动化作业与智能体失败通知升级为带快捷入口的结构化卡片(
#868、#840)。Inbox notifications rearchitected around an orthogonal toolbar with unarchive and scoped batch actions; automated job-run and agent-task failures now ship structured cards with quick actions (#868,#840). - 通道外发改用异步执行并集中键/原因注册;强制执行智能体作用域,移除不可重试的媒体门禁(
#911)。Channel outbound delivery is asynchronous with centralized key/reason registries; agent execution scope is enforced and non-retryable media gates are dropped (#911). mopprofile 与配置文件按全局基线 + 工作区覆盖解析;模板由服务端下发,移除客户端硬编码(#901)。mopprofiles and config files resolve a global baseline plus workspace overrides by path; templates come from the server instead of client-side hard-coding (#901).- 守护工作任务的跨重启状态持久化、Claude 缓存延迟清理、沙箱凭据与 profile 恢复记录按工作区隔离。Daemon worker tasks persist their state across restarts, defer Claude cache cleanup, and isolate sandbox credentials and profile recovery records.
- 技能搜索使用 CJK 友好的多关键词构造器;工单列表上下文菜单与详情操作改用精简布局(
#900)。Skill search uses a CJK-friendly multi-term builder; ticket list context menu and detail actions use a streamlined layout (#900). - 智能体创建向导支持对话式创建流程与内置提示模板;工作区引导保留 7 步流程,迁移可幂等重跑。Agent-builder wizard supports conversational AI agent creation with bundled prompt templates; workspace onboarding remains a 7-step flow with idempotent re-runs.
- 提供商会话来源与任务历史元数据贯穿规范会话记录,辅助助手消息去重。Provider session source and task history metadata now flow through the canonical session record for assistant-message dedup.
- 工作区文件中心的 grid/table 视图偏好跨导航持久化。Workspace files hub preference for grid/table view is persisted across navigation.
- 提供商工作区状态按智能体隔离,MCP 用量按租户统计。Provider workspace state is isolated per agent so MCP usage tracking stays per-tenant.
- Antigravity 流式文本增量在步骤边界聚合以减少开销(
#896)。Antigravity streaming text deltas aggregate at step boundaries to reduce overhead (#896). - Antigravity 运行时在沙箱内保留原生 HOME,并在流中断时恢复新会话。Antigravity runtime preserves the native HOME under sandbox and recovers fresh sessions on stream interrupt.
修复Fixed
- 智能体输出脱敏内嵌凭据;认证环境变量写入日志前被屏蔽(
fix(security)系列)。Agent output redacts embedded credentials; auth environment values are masked before logging (fix(security)series). - 集成审计表不再泄露敏感标签。Integration audit table no longer leaks sensitive labels.
- 通道媒体门禁不再阻塞可重试投递,并尊重智能体作用域(
#911)。Channel media gates no longer block retryable deliveries and respect agent execution scope (#911). - 通道会话来源元数据在规范会话记录中保持一致。Channel session source metadata is consistently recorded across the canonical session record.
- 工单讨论时间线支持引用回复与统一活动历史。Ticket discussion timeline supports quote replies and a unified activity history.
- 移动端作业弹窗在 Mopheus 壳内可正常滚动。Mobile job dialog scrolls correctly inside the Mopheus shell.
- 作业受让人按工作区隔离,跨工作区触发不会误触发。Job assignees are isolated by workspace so cross-workspace triggers cannot fire.
- 作业 cron 表达式空字段改用 Quartz 兼容通配符,避免计划停摆。Job cron expressions with empty cron fields now use Quartz-compatible wildcards so schedules never stall.
- 评论 ID 在组件选择中正确往返,浮动提交栏保留用户状态。Comment IDs round-trip through widget choices so the floating submission bar preserves user state.
- 失败的智能体任务运行在收件箱中展示,并提供转录入口(
#840)。Failed agent task runs surface in the inbox with a transcript action instead of being hidden (#840). - 工单执行运行行恢复"快速停止"按钮。Quick stop button is restored on the ticket execution run row.
- 工作区引导跳过时不再导致页面
pointer-events卡死(#846)。Onboarding wizard no longer leaves the body with stuckpointer-eventsafter skipping (#846). - Antigravity 流式中断后保留已完成回合,并使用新会话恢复。Antigravity streaming interruptions preserve completed turns and recover with a fresh session.
- Pi 提供商经由 RPC 恢复会话并进行能力校验(
#887)。Pi provider resumes sessions via RPC with capability checks (#887). - Antigravity 运行时捕获提前退出,并在沙箱内保留原生 HOME。Antigravity runtime captures premature exits and preserves the native HOME under sandbox.
- 工作区销毁时同步清理 worktree sidecar 与 CodeGraph 快照。Workspace teardown cleanly removes worktree sidecars and CodeGraph snapshots.
- 工作区沙箱设置在守护重启与显式退出值下保持有效(
#906)。Workspace sandbox settings survive background daemon restarts and explicit opt-out values (#906). - 沙箱凭据与宿主机隔离;profile 恢复记录按工作区隔离。Sandbox credentials are isolated from the host; profile recovery records are isolated per workspace.
安全Security
- 守护进程默认启用文件系统沙箱(
#906)。Filesystem sandbox enabled by default for the daemon (#906). - 智能体输出脱敏内嵌凭据;认证环境变量在日志与审计表中被屏蔽(
fix(security)系列)。Agent output redacts embedded credentials; auth environment values are masked in logs and audit tables (fix(security)series). - 沙箱凭据、profile 恢复记录与 Antigravity 运行时状态与宿主机隔离。Sandbox credentials, profile recovery records, and Antigravity runtime state are isolated from the host.
- 提供商工作区状态按智能体分区,避免跨工作区数据通过提供商缓存泄露。Provider workspace state is partitioned per agent so cross-workspace data does not leak through provider caches.
升级说明Upgrade Notes
- 守护进程默认启用文件系统沙箱。如过去通过环境变量关闭,请显式设置
MOPHEUS_DAEMON_SANDBOX=false(或0/off,不区分大小写);否则将保持新默认。The daemon now enables the filesystem sandbox by default. Operators that previously disabled it via environment must explicitly setMOPHEUS_DAEMON_SANDBOX=false(or0/off, case-insensitive) on the daemon process; otherwise sandboxing stays on and matches the new default. - 工作区分域用户环境变量与配置文件需要本次新增的 schema 迁移。已有全局配置保持为基线,工作区覆盖在迁移完成后生效。Workspace-scoped user environment variables and configuration files require the schema bump introduced in this release. Pre-existing global profiles remain the baseline; new workspace overrides take effect after migration.
- Quartz 计划触发器按触发器粒度选择开启;既有 Standard 五字段触发器保持原行为,存在 Quartz 行时回滚迁移会被拒绝,以保证持久化表达式可读。Quartz schedule triggers are opt-in per trigger. Existing Standard five-field triggers continue to use the legacy grammar; reverting a migration is refused while Quartz rows exist to keep persisted expressions readable.
- 交互式决策小组件依赖工作区
widget特性开关;关闭或未配置时评论降级为标准语法高亮代码块。Interactive decision widgets require thewidgetworkspace feature flag; comments degrade to standard syntax-highlighted code blocks when the flag is disabled or unset. - 使用 Antigravity 提供商需在环境中有可调用的
agy(或通过MOPHEUS_ANTIGRAVITY_PATH指定),且 CLI 支持--input-format stream-json --output-format stream-json --dangerously-skip-permissions。Antigravity CLI is required atagy(orMOPHEUS_ANTIGRAVITY_PATH) to use the new provider; the CLI must be invokable with--input-format stream-json --output-format stream-json --dangerously-skip-permissions.
