Documented changes
29 typed entries
Verified contributors
Credits being verified. Attribution coverage is unknown.
Attribution coverage
attribution not yet verified; history inventory partial.
Install
Scope
Guard v3.27.0 is a stable release published 2026-10-06. Upstream documents: Guard 3.27.0 is a stable release cut from [`bb849cf`](https://github.com/hashgraph-online/hol-guard/commit/bb849cfe482b67fda85dd8bfebee8f2883715fd8). **21 commits • 20 merged pull requests • 6 contributors** since [Guard 3.26.0](https://github.com/hashgraph-online/hol-guard/releases/tag/v3.26.0). Its comparison base is v3.26.0. Attribution for this release is being verified.
Changes
Added
13- **guard**: RTM-030 — resident apply_stored_package_policy op ([#3653](https://github.com/hashgraph-online/hol-guard/pull/3653)) Evidence for: **guard**: RTM-030 — resident apply_stored_package_policy op ([#3653](https://github.com/hashgraph-online/hol-guard/pull/3653))
- Stacked on #3645** — rebase to `main` after that squash-merges; the diff is Evidence for: Stacked on #3645** — rebase to `main` after that squash-merges; the diff is
- **guard**: RTM-030b-1 — resident OAuth credential authority (scoped secret resolution + fingerprint parity) ([#3645](https://github.com/hashgraph-online/hol-guard/pull/3645)) Evidence for: **guard**: RTM-030b-1 — resident OAuth credential authority (scoped secret resolution + fingerprint parity) ([#3645](https://github.com/hashgraph-online/hol-guard/pull/3645))
- **mcp**: Add external AsDecided server contribution ([#3579](https://github.com/hashgraph-online/hol-guard/pull/3579)) Evidence for: **mcp**: Add external AsDecided server contribution ([#3579](https://github.com/hashgraph-online/hol-guard/pull/3579))
- **guard**: RTM-030a — resident guard-sync transport (OAuth read, DPoP, ureq HTTPS) ([#3634](https://github.com/hashgraph-online/hol-guard/pull/3634)) Evidence for: **guard**: RTM-030a — resident guard-sync transport (OAuth read, DPoP, ureq HTTPS) ([#3634](https://github.com/hashgraph-online/hol-guard/pull/3634))
- **guard**: RTM-023 — native MCP child-I/O ownership + tools/list catalog boundary ([#3613](https://github.com/hashgraph-online/hol-guard/pull/3613)) Evidence for: **guard**: RTM-023 — native MCP child-I/O ownership + tools/list catalog boundary ([#3613](https://github.com/hashgraph-online/hol-guard/pull/3613))
- **extensions**: Add command protection for blkcp ([#3062](https://github.com/hashgraph-online/hol-guard/pull/3062)) Evidence for: **extensions**: Add command protection for blkcp ([#3062](https://github.com/hashgraph-online/hol-guard/pull/3062))
- **mcp**: Own persistent MCP child lifecycle in the native runtime ([#3564](https://github.com/hashgraph-online/hol-guard/pull/3564)) Evidence for: **mcp**: Own persistent MCP child lifecycle in the native runtime ([#3564](https://github.com/hashgraph-online/hol-guard/pull/3564))
- Add the `mcp-stdio-session-v1` resident operation so the native runtime owns the persistent MCP child lifecycle (`open`/`send`/`recv`/`close`/`cancel`), correlation, newline framing, and teardown instead of a per-proxy… Evidence for: Add the `mcp-stdio-session-v1` resident operation so the native runtime owns the persistent MCP child lifecycle (`open`/`send`/`recv`/`close`/`cancel`), correlation, newline framing, and teardown instead of a per-proxy…
- Wire `proxy/runtime_mcp.py` `_NativeMcpChildIo`/`_NativeChildProcess` adapters and `_start_process` to drive the resident session native-first, preserving the existing strict-JSON and catalog-poison gate. Evidence for: Wire `proxy/runtime_mcp.py` `_NativeMcpChildIo`/`_NativeChildProcess` adapters and `_start_process` to drive the resident session native-first, preserving the existing strict-JSON and catalog-poison gate.
- Add the `policy_decision_lookup` resident op and `guard-contracts` DTOs so the policy store resolves decisions natively. Evidence for: Add the `policy_decision_lookup` resident op and `guard-contracts` DTOs so the policy store resolves decisions natively.
- **ci**: Add trusted change planner and shadow required aggregate ([#3610](https://github.com/hashgraph-online/hol-guard/pull/3610)) Evidence for: **ci**: Add trusted change planner and shadow required aggregate ([#3610](https://github.com/hashgraph-online/hol-guard/pull/3610))
- Add the KeibiDrop command extension ([#2936](https://github.com/hashgraph-online/hol-guard/pull/2936)) Evidence for: Add the KeibiDrop command extension ([#2936](https://github.com/hashgraph-online/hol-guard/pull/2936))
Improved
1- **extensions**: Move trust classification to per-extension bindings ([#3652](https://github.com/hashgraph-online/hol-guard/pull/3652)) Evidence for: **extensions**: Move trust classification to per-extension bindings ([#3652](https://github.com/hashgraph-online/hol-guard/pull/3652))
Fixed
12- **guard**: Fail closed for Hermes pre-tool worker errors ([#3661](https://github.com/hashgraph-online/hol-guard/pull/3661)) Evidence for: **guard**: Fail closed for Hermes pre-tool worker errors ([#3661](https://github.com/hashgraph-online/hol-guard/pull/3661))
- **guard**: Empty availability response is not a deny + cover exit-code mapper ([#3654](https://github.com/hashgraph-online/hol-guard/pull/3654)) Evidence for: **guard**: Empty availability response is not a deny + cover exit-code mapper ([#3654](https://github.com/hashgraph-online/hol-guard/pull/3654))
- **guard**: Fail-closed rc when native hook authority unavailable + relax archive timing flake ([#3647](https://github.com/hashgraph-online/hol-guard/pull/3647)) Evidence for: **guard**: Fail-closed rc when native hook authority unavailable + relax archive timing flake ([#3647](https://github.com/hashgraph-online/hol-guard/pull/3647))
- **ci**: Repair product regressions breaking main test suite ([#3641](https://github.com/hashgraph-online/hol-guard/pull/3641)) Evidence for: **ci**: Repair product regressions breaking main test suite ([#3641](https://github.com/hashgraph-online/hol-guard/pull/3641))
- **ci**: Allow skipped change planner in required aggregate on push ([#3628](https://github.com/hashgraph-online/hol-guard/pull/3628)) Evidence for: **ci**: Allow skipped change planner in required aggregate on push ([#3628](https://github.com/hashgraph-online/hol-guard/pull/3628))
- **ci**: Treat skipped change planner as expected on push runs ([#3625](https://github.com/hashgraph-online/hol-guard/pull/3625)) Evidence for: **ci**: Treat skipped change planner as expected on push runs ([#3625](https://github.com/hashgraph-online/hol-guard/pull/3625))
- **approval**: Restore disabled gate setup and accurate review labels ([#3621](https://github.com/hashgraph-online/hol-guard/pull/3621)) Evidence for: **approval**: Restore disabled gate setup and accurate review labels ([#3621](https://github.com/hashgraph-online/hol-guard/pull/3621))
- **omp**: Prepare Guard protection before reviewing prompts ([`ab20104`](https://github.com/hashgraph-online/hol-guard/commit/ab20104e095c2ff9e20ba1abdc982640dc4b2c3a)) Evidence for: **omp**: Prepare Guard protection before reviewing prompts ([`ab20104`](https://github.com/hashgraph-online/hol-guard/commit/ab20104e095c2ff9e20ba1abdc982640dc4b2c3a))
- **zcode**: Install hooks on both ZCode config surfaces ([#3605](https://github.com/hashgraph-online/hol-guard/pull/3605)) Evidence for: **zcode**: Install hooks on both ZCode config surfaces ([#3605](https://github.com/hashgraph-online/hol-guard/pull/3605))
- Install Guard-managed ZCode hooks on both user-scope surfaces: `~/.zcode/cli/config.json` (Desktop app hook source) and `~/.zcode/cli/setting.json` (npm CLI hook source after its one-time settings migration).… Evidence for: Install Guard-managed ZCode hooks on both user-scope surfaces: `~/.zcode/cli/config.json` (Desktop app hook source) and `~/.zcode/cli/setting.json` (npm CLI hook source after its one-time settings migration).…
- Set `hooks.enabled: true` on both surfaces on install; each surface only executes hook entries after its own config opts in, and prior values are recorded per file in the install state and restored on uninstall. Evidence for: Set `hooks.enabled: true` on both surfaces on install; each surface only executes hook entries after its own config opts in, and prior values are recorded per file in the install state and restored on uninstall.
- Prune managed entries from both files on uninstall, dropping a root-only `hooks` object only when Guard introduced it (the npm CLI's default skeleton ships one). Evidence for: Prune managed entries from both files on uninstall, dropping a root-only `hooks` object only when Guard introduced it (the npm CLI's default skeleton ships one).
Other changes
3- Documented change: Guard 3.27.0 is a stable release cut from [`bb849cf`](https://github.com/hashgraph-online/hol-guard/commit/bb849cfe482b67fda85dd8bfebee8f2883715fd8). **21 commits • 20 merged pull requests • 6 contributors** since [Guard 3.26.0](https://github.com/hashgraph-online/hol-guard/releases/tag/v3.26.0). Evidence for: Documented change: Guard 3.27.0 is a stable release cut from [`bb849cf`](https://github.com/hashgraph-online/hol-guard/commit/bb849cfe482b67fda85dd8bfebee8f2883715fd8). **21 commits • 20 merged pull requests • 6 contributors** since [Guard 3.26.0](https://github.com/hashgraph-online/hol-guard/releases/tag/v3.26.0).
- **gauntlet**: Clarify synthetic protection fixture context ([#3588](https://github.com/hashgraph-online/hol-guard/pull/3588)) Evidence for: **gauntlet**: Clarify synthetic protection fixture context ([#3588](https://github.com/hashgraph-online/hol-guard/pull/3588))
- **release**: 3.27.0 ([#3622](https://github.com/hashgraph-online/hol-guard/pull/3622)) Evidence for: **release**: 3.27.0 ([#3622](https://github.com/hashgraph-online/hol-guard/pull/3622))
Upgrade and compatibility
None documented.
Compare with the previous release
Predecessor on the same channel: v3.26.0
Verified contributors
Credits derive from public pull-request authorship, verified commit authorship, or verified co-authorship — never from thanks text or release metadata. Each distinct contributor is listed once; the evidence ledger paginates every published credit record.
Evidence ledger0 credits
No credits are published for this release yet.