Documented changes
24 typed entries
Verified contributors
Credits being verified. Attribution coverage is unknown.
Attribution coverage
attribution not yet verified; history inventory partial.
Install
Scope
Guard v3.35.0 is a stable release published 2026-10-08. Upstream documents: Guard 3.35.0 is a stable release cut from [`7202f09`](https://github.com/hashgraph-online/hol-guard/commit/7202f09d4fe3ad6ab19f111bcb50188856f84b0b). **11 commits • 10 merged pull requests • 2 contributors** since [Guard 3.34.1](https://github.com/hashgraph-online/hol-guard/releases/tag/v3.34.1). Attribution for this release is being verified.
Changes
Added
11- **guard**: Prove Wrangler version, help and whoami reads benign ([#3774](https://github.com/hashgraph-online/hol-guard/pull/3774)) Evidence for: **guard**: Prove Wrangler version, help and whoami reads benign ([#3774](https://github.com/hashgraph-online/hol-guard/pull/3774))
- one of `--version`, `-v`, `--help`, `-h`, `whoami` Evidence for: one of `--version`, `-v`, `--help`, `-h`, `whoami`
- one to three lowercase subcommand words followed by `--help` or `-h` (for example `wrangler d1 execute --help`) Evidence for: one to three lowercase subcommand words followed by `--help` or `-h` (for example `wrangler d1 execute --help`)
- **gauntlet**: Run the native Luna route at medium effort by default ([#3767](https://github.com/hashgraph-online/hol-guard/pull/3767)) Evidence for: **gauntlet**: Run the native Luna route at medium effort by default ([#3767](https://github.com/hashgraph-online/hol-guard/pull/3767))
- The runner gives the adapter its effort through the adapter's private environment. The adapter uses that effort as the Oh My Pi thinking level, rejects any request with a different `reasoning_effort`, and reports the… Evidence for: The runner gives the adapter its effort through the adapter's private environment. The adapter uses that effort as the Oh My Pi thinking level, rejects any request with a different `reasoning_effort`, and reports the…
- Only `medium` and `high` are accepted on this route. Any other value is rejected before anything starts. Evidence for: Only `medium` and `high` are accepted on this route. Any other value is rejected before anything starts.
- Evidence records the effort in the provider identity: `openai-codex/gpt-5.6-luna/ via pinned-omp-native-luna-stream-v2`. The loopback request model name is now `native-luna`. Evidence for: Evidence records the effort in the provider identity: `openai-codex/gpt-5.6-luna/ via pinned-omp-native-luna-stream-v2`. The loopback request model name is now `native-luna`.
- **gauntlet**: Run catalog cases in parallel with --jobs ([#3765](https://github.com/hashgraph-online/hol-guard/pull/3765)) Evidence for: **gauntlet**: Run catalog cases in parallel with --jobs ([#3765](https://github.com/hashgraph-online/hol-guard/pull/3765))
- `--jobs 1` keeps the existing in-process sequential path unchanged. Evidence for: `--jobs 1` keeps the existing in-process sequential path unchanged.
- With `--jobs` above 1, each case runs `run_case` in its own worker process. That process has a private Guard home, daemon and native resident, fixtures, loopback relay and collector, OMP process group, and evidence… Evidence for: With `--jobs` above 1, each case runs `run_case` in its own worker process. That process has a private Guard home, daemon and native resident, fixtures, loopback relay and collector, OMP process group, and evidence…
- `summary.json`, `summary.md` and the hook-latency aggregate are built in catalog order whatever order the cases finish in. `verify` and `pack` are unchanged. The only new summary field is an informational `jobs`, and… Evidence for: `summary.json`, `summary.md` and the hook-latency aggregate are built in catalog order whatever order the cases finish in. `verify` and `pack` are unchanged. The only new summary field is an informational `jobs`, and…
Fixed
9- **guard**: Contain test runs wrapped in a workspace cd or output filter ([#3775](https://github.com/hashgraph-online/hol-guard/pull/3775)) Evidence for: **guard**: Contain test runs wrapped in a workspace cd or output filter ([#3775](https://github.com/hashgraph-online/hol-guard/pull/3775))
- a single trailing `| tail -N` or `| head -N` (or `-n N`), with an optional `2>&1` on the producer Evidence for: a single trailing `| tail -N` or `| head -N` (or `-n N`), with an optional `2>&1` on the producer
- **guard**: Stop asking approval for bounded waits and read-only probes ([#3773](https://github.com/hashgraph-online/hol-guard/pull/3773)) Evidence for: **guard**: Stop asking approval for bounded waits and read-only probes ([#3773](https://github.com/hashgraph-online/hol-guard/pull/3773))
- **Waits:** `sleep` was capped at 60 seconds, so loops like `sleep 240 && echo done` needed approval. Literal waits up to one hour are now proven inert. The total across chained sleeps is capped at one hour, with at… Evidence for: **Waits:** `sleep` was capped at 60 seconds, so loops like `sleep 240 && echo done` needed approval. Literal waits up to one hour are now proven inert. The total across chained sleeps is capped at one hour, with at…
- **Read-only probes:** `uptime`, `pgrep` with listing and matching flags (`-f -l -a -i -x -n -o -c`) plus one pattern, `node --version` / `-v`, `python3 --version` / `-V`, and `git worktree list [--porcelain]` are now… Evidence for: **Read-only probes:** `uptime`, `pgrep` with listing and matching flags (`-f -l -a -i -x -n -o -c`) plus one pattern, `node --version` / `-v`, `python3 --version` / `-V`, and `git worktree list [--porcelain]` are now…
- **windows**: Restore the native build and parallel Gauntlet workers ([#3771](https://github.com/hashgraph-online/hol-guard/pull/3771)) Evidence for: **windows**: Restore the native build and parallel Gauntlet workers ([#3771](https://github.com/hashgraph-online/hol-guard/pull/3771))
- 1. `hol-guard-runtime` no longer compiles for Windows.** The new resident diagnostics sink (#3701) passes its open `File` to `is_single_link_file`, which takes a `&Path`: Evidence for: 1. `hol-guard-runtime` no longer compiles for Windows.** The new resident diagnostics sink (#3701) passes its open `File` to `is_single_link_file`, which takes a `&Path`:
- **ci**: Reuse native source compiler for shard wheel builds ([#3701](https://github.com/hashgraph-online/hol-guard/pull/3701)) Evidence for: **ci**: Reuse native source compiler for shard wheel builds ([#3701](https://github.com/hashgraph-online/hol-guard/pull/3701))
- **gauntlet**: Run the native Luna route on Windows ([#3759](https://github.com/hashgraph-online/hol-guard/pull/3759)) Evidence for: **gauntlet**: Run the native Luna route on Windows ([#3759](https://github.com/hashgraph-online/hol-guard/pull/3759))
Other changes
4- Documented change: Guard 3.35.0 is a stable release cut from [`7202f09`](https://github.com/hashgraph-online/hol-guard/commit/7202f09d4fe3ad6ab19f111bcb50188856f84b0b). **11 commits • 10 merged pull requests • 2 contributors** since [Guard 3.34.1](https://github.com/hashgraph-online/hol-guard/releases/tag/v3.34.1). Evidence for: Documented change: Guard 3.35.0 is a stable release cut from [`7202f09`](https://github.com/hashgraph-online/hol-guard/commit/7202f09d4fe3ad6ab19f111bcb50188856f84b0b). **11 commits • 10 merged pull requests • 2 contributors** since [Guard 3.34.1](https://github.com/hashgraph-online/hol-guard/releases/tag/v3.34.1).
- **release**: Compile in parallel and start Desktop signing sooner ([`87a5329`](https://github.com/hashgraph-online/hol-guard/commit/87a532952ab75ea87d04ebd05489c9de5c71131f)) Evidence for: **release**: Compile in parallel and start Desktop signing sooner ([`87a5329`](https://github.com/hashgraph-online/hol-guard/commit/87a532952ab75ea87d04ebd05489c9de5c71131f))
- **gauntlet**: Prove the deletion floor holds under an installed business policy ([#3766](https://github.com/hashgraph-online/hol-guard/pull/3766)) Evidence for: **gauntlet**: Prove the deletion floor holds under an installed business policy ([#3766](https://github.com/hashgraph-online/hol-guard/pull/3766))
- **release**: 3.35.0 ([#3768](https://github.com/hashgraph-online/hol-guard/pull/3768)) Evidence for: **release**: 3.35.0 ([#3768](https://github.com/hashgraph-online/hol-guard/pull/3768))
Upgrade and compatibility
None documented.
Compare with the previous release
Predecessor on the same channel: v3.34.1
Verified contributors
Credits derive from public pull-request authorship, verified commit authorship, or verified co-authorship — never from thanks text or release metadata. Each distinct contributor is listed once; the evidence ledger paginates every published credit record.
Evidence ledger0 credits
No credits are published for this release yet.