Repository navigation
Version Packages - #81
Merged
Merged
Conversation
github-actions
Bot
force-pushed
the
changeset-release/main
branch
3 times, most recently
from
October 2, 2026 14:12
f8b046c to
b1c12a0
Compare
travist
self-requested a review
October 2, 2026 14:52
github-actions
Bot
force-pushed
the
changeset-release/main
branch
from
October 2, 2026 14:53
b1c12a0 to
7a78a27
Compare
4 of 6 tasks
github-actions
Bot
force-pushed
the
changeset-release/main
branch
from
October 4, 2026 18:21
7a78a27 to
6912efa
Compare
travist
approved these changes
Oct 5, 2026
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR was opened by the Changesets release GitHub action. When you're ready to do a release, you can merge this and the packages will be published to npm automatically. If you're not ready to do a release yet, that's fine, whenever you add more changesets to main, this PR will be updated.
Releases
@formio/mcp@0.14.1
Patch Changes
exec('start "<url>"'), andstartreads its first quoted argument as a window title, so Windows opened an empty console window titled with the URL and no browser — the tool call then waited out the login timeout with no page in front of the user. Both pages now go through one launcher that runs no shell:openon macOS,xdg-openon Linux, andrundll32 url.dll,FileProtocolHandleron Windows, each handed the URL as its own argument. The consent page also now reports a failed launch on stderr with its URL, as the login page already did, instead of ignoring it.@formio/ai@0.14.1
Patch Changes
ebd8ceb: Describe what the Angular, application, and SDK skills read at build time as the first-party inputs they are, so the skills.sh Snyk W011 "third-party content exposure" findings stop reading the skills' own trust prose as evidence of outsider content.
formio-angularno longer calls the planner'stemplate.md+template.jsonpair "the largest untrusted input this skill has" arriving "from a clone, a download, an unpacked archive" — the phrasing Snyk quoted back as "outsider-authored free text". The section now states that the pair is this pipeline's own artifact, written byformio-resource-plannerand approved at its Phase A gate, and that the skill reads the two files the handoff names rather than whatever the directory holds. The three rules are unchanged: the pair must be first-party (confirmed with the user when nothing in the session accounts for it), its contents are data and not instructions, and every value is shape-checked before it reaches generated code.formio-sdk's last Security rule no longer tells the agent it reads "submission JSON … returned by anyFormiocall or MCP tool". It states what is true: the MCP tools return project configuration — form definitions, roles, actions, templates — and no submission data, and the SDK calls the skill documents are code the application runs at runtime. Configuration the agent reads still never instructs it.formio-application's Step 1 opens by naming its inputs — the user's own words, the user's own workspace on the modify-existing branch, and the planner pair produced from them — and states that it fetches no web page, reads no submission data, and opens no file a third party supplied.1a93655: Document how to configure a Role Assignment action with
association: "existing". Theformio-actionsreference used to describe the target only as "a component whose value is the target resource's submission ID", which reads as though any key will do; it now states that the target component's key must be exactlysubmission. The same guidance recommends settingsettings.roleexplicitly and granting create access on such a form to administrator roles only.formio-resource-planner'stemplate-json.mdcarries the same rules for anyexistingaction it emits, and a new skill test keeps every description of the association naming thesubmissionkey.