docs(release): add two missed user-facing changes to the v2026.1005.0 notes (#15251)

<!-- Write all pull request text in Simplified Technical English
(ASD-STE100). -->

## Thinking Path

> - Paperclip is the open source app people use to manage AI agents for
work.
> - The release pipeline promotes a soaked beta to stable. The stable
job publishes `releases/beta/v<beta-version>.md` from `master` as the
GitHub Release body, pinned at dispatch time.
> - Beta `2026.1002.0-beta.0` (source
`467125fafb47a8520856504fecc48d6e32055db1`, 179 commits after
v2026.1001.0) has soaked for more than three days. The stable version
for 2026-10-05 is `v2026.1005.0`.
> - The curated notes from #14928 already carry the correct header,
date, commit count, migration range, environment defaults, and
Contributors section.
> - A pre-dispatch audit of every in-range PR found two self-hosted
user-facing changes that the notes do not cite.
> - This pull request adds those two items before the stable dispatch,
so the public release page is complete.
> - The benefit is that users of external chat and the native runner can
see what changed for them.

## Linked Issues or Issue Description

**Issue type**

Docs: release notes.

**Where is the issue?**

`releases/beta/v2026.1002.0-beta.0.md` on `master`.

**What's wrong?**

Two user-facing changes in `git log
v2026.1001.0..467125fafb47a8520856504fecc48d6e32055db1` are missing from
the notes:

- #13818: Slack- and Discord-origin tasks that lose their review path
now recover with their message bindings intact.
- #13852: native agents get a governed `hire_agent` action with a closed
runtime inheritance allowlist.

Paperclip Cloud tenant changes (#13791, #13922, #14407) stay out of
these notes. The maintainer asked for this, and it matches the curation
in #14928.

**Suggested fix**

Add one clause for each item in the matching section. Change nothing
else.

## What Changed

- Fixes → Scheduler and recovery: added the external-chat review
recovery fix
([#13818](https://github.com/paperclipai/paperclip/pull/13818)).
- Improvements: added the native `hire_agent` action
([#13852](https://github.com/paperclipai/paperclip/pull/13852)).
- No other lines changed. The header `# Paperclip v2026.1005.0`, `>
Released: 2026-10-05`, the 179-commit count, and the Contributors
section were already correct.
- The second commit removes a Paperclip Cloud sentence that the first
commit added. The net diff is the two clauses above.

## Verification

- Docs only. `scripts/release.sh stable --print-version --date
2026-10-05` on `master` prints `2026.1005.0`, which matches the header.
- `git rev-list --count
v2026.1001.0..467125fafb47a8520856504fecc48d6e32055db1` is 179, which
matches the notes.
- All 133 PR numbers cited before this change are in that range. The two
PR numbers added here are also in that range.
- The remaining 40 uncited in-range PRs are CI, tests, evals, lockfile
refreshes, release-notes bookkeeping, a dev-mode-only fix, an internal
prompt-context refactor, and Paperclip Cloud changes.
- Migrations `0284`–`0293` match `packages/db/src/migrations` in the
range. Environment defaults were read from `runner-api-rollout.ts`,
`runner-api-response-limits.ts`, `git-workspace-sync.ts`, and
`workspace-manifest.ts` at the beta source.
- `git shortlog -sn` over the range gives 7 contributors (excluding
`github-actions[bot]`); the external handles are `@MrBlackTongue` and
`@gentslava`.

## Risks

Low. Documentation only. This must merge before the stable dispatch,
because the stable job pins the `master` revision of this file at
dispatch time.

## Model Used

Anthropic Claude Fable 5.1 (`claude-fable-5-1`) via Claude Code, with
tool use and code execution.

## Checklist

- [x] I have included a thinking path that traces from project context
to this change
- [x] I have specified the model used (with version and capability
details)
- [x] I have checked ROADMAP.md and confirmed this PR does not duplicate
planned core work
- [x] I have searched GitHub for duplicate or related PRs and linked
them above
- [x] I have either (a) linked existing issues with `Fixes: #` / `Closes
#` / `Refs #` OR (b) described the issue in-PR following the relevant
issue template
- [x] I have not referenced internal/instance-local Paperclip issues or
links (only public GitHub `#NNN` / `github.com/paperclipai/paperclip`
URLs)
- [x] My branch name describes the change (e.g. `docs/...`, `fix/...`)
and contains no internal Paperclip ticket id or instance-derived details
- [x] I have run tests locally and they pass (docs only; no tests apply)
- [x] I have added or updated tests where applicable (none apply)
- [x] I have updated relevant documentation to reflect my changes
- [x] I have considered and documented any risks above
- [ ] All Paperclip CI gates are green (re-running on the second commit)
- [ ] Greptile is 5/5 with no open P2s, recommendations, or follow-ups
(first commit passed with zero threads; re-running)
- [x] I will address all Greptile and reviewer comments before
requesting merge

🤖 Generated with [Claude Code](https://claude.com/claude-code)

---------

Co-authored-by: devinfoley <139239+devinfoley@users.noreply.github.com>
Co-authored-by: Paperclip <noreply@paperclip.ing>
Co-authored-by: Claude Fable 5.1 <noreply@anthropic.com>
This commit is contained in:
authored and GitHub committed 2026-10-05 13:57:57 -07:00
1 parent 41c1431d66
commit e9d64ec1be
1 file changed
+2 -2
+2 -2
View File
@@ -26,14 +26,14 @@ Paperclip v2026.1005.0 carries 179 commits, promoted from `2026.1002.0-beta.0`.
- **Native runner and sessions** — Tool outcomes survive shutdown and restart instead of recording a false failure ([#14734](https://github.com/paperclipai/paperclip/pull/14734)); failed warm sessions are retired before their sandbox stops ([#14747](https://github.com/paperclipai/paperclip/pull/14747)) and recovered cleanup honors the run's terminal outcome ([#14767](https://github.com/paperclipai/paperclip/pull/14767)); switching a task to a warm lifecycle acquires a reusable lease ([#14187](https://github.com/paperclipai/paperclip/pull/14187)); the OpenCode event stream stays open across turns ([#14582](https://github.com/paperclipai/paperclip/pull/14582)) and delivers its shutdown settlement ([#14668](https://github.com/paperclipai/paperclip/pull/14668)); Codex account notifications no longer abort a turn ([#13902](https://github.com/paperclipai/paperclip/pull/13902)); Claude and Codex quota exhaustion is classified for the proper backoff ([#13831](https://github.com/paperclipai/paperclip/pull/13831), [#13945](https://github.com/paperclipai/paperclip/pull/13945)); ACP terminal failures keep their redacted provider diagnostics ([#14573](https://github.com/paperclipai/paperclip/pull/14573)) and identity guards name the failed check ([#14481](https://github.com/paperclipai/paperclip/pull/14481)); the native journal read limit is 256 MiB everywhere ([#14711](https://github.com/paperclipai/paperclip/pull/14711)); pending finalization of an accepted result is protected from the stale-lock sweep ([#14219](https://github.com/paperclipai/paperclip/pull/14219)); adapters expose a verified provider stop before workspace restoration ([#14311](https://github.com/paperclipai/paperclip/pull/14311)); warm sessions keep running under managed GitHub access ([#13815](https://github.com/paperclipai/paperclip/pull/13815)); and a run that hits a provider authentication failure offers an inline connection card in the task so the user can repair and continue ([#14629](https://github.com/paperclipai/paperclip/pull/14629)).
- **Sandboxes and workspaces** — Daytona commands stay alive after the log socket closes ([#14799](https://github.com/paperclipai/paperclip/pull/14799)), confirmed container loss is recognized when resuming leases ([1f3ff75d](https://github.com/paperclipai/paperclip/commit/1f3ff75d334ddfbb06d49c1033ec2b89be594e20)), failed allocations are cleaned up ([#13979](https://github.com/paperclipai/paperclip/pull/13979)), and provider acquisition timeouts honor the driver's default ([#14097](https://github.com/paperclipai/paperclip/pull/14097)). ACP input delivery retries after a gateway 502 without duplicating input ([#14485](https://github.com/paperclipai/paperclip/pull/14485)), oversized launch payloads and duplicated wake context no longer fail with `E2BIG` ([#13793](https://github.com/paperclipai/paperclip/pull/13793), [#13891](https://github.com/paperclipai/paperclip/pull/13891)), process proxies close after remote exit ([#13777](https://github.com/paperclipai/paperclip/pull/13777)), and relative symlinks in secondary repositories are preserved ([#13953](https://github.com/paperclipai/paperclip/pull/13953)). Workspace exports finalize and recover safely ([#14402](https://github.com/paperclipai/paperclip/pull/14402)), restore failures keep the adapter's result and record what failed ([#14035](https://github.com/paperclipai/paperclip/pull/14035), [#14064](https://github.com/paperclipai/paperclip/pull/14064)), large Git snapshots stream through disk manifests instead of hitting a 1 MiB output limit ([#14194](https://github.com/paperclipai/paperclip/pull/14194), [#14253](https://github.com/paperclipai/paperclip/pull/14253)), readiness checks accept larger status output ([#14414](https://github.com/paperclipai/paperclip/pull/14414)), background scans stop refreshing the Git index ([#14666](https://github.com/paperclipai/paperclip/pull/14666)), partial task overrides retain project setup commands ([#14502](https://github.com/paperclipai/paperclip/pull/14502)), and repository-free low-trust tasks get a private directory ([#14766](https://github.com/paperclipai/paperclip/pull/14766)).
- **Scheduler and recovery** — A queued run whose claim is permanently rejected is cancelled instead of crash-looping the server ([#14738](https://github.com/paperclipai/paperclip/pull/14738)); wakes that arrive during a drain stay queued and interrupted corrective runs get a transient retry ([#14028](https://github.com/paperclipai/paperclip/pull/14028)); an issue whose run has spent its retry budget is escalated to a visible blocked state rather than skipped forever ([#14046](https://github.com/paperclipai/paperclip/pull/14046)); continuation and retry budgets use persisted state ([#13888](https://github.com/paperclipai/paperclip/pull/13888)); task ownership is claimed atomically with queued runs ([#13973](https://github.com/paperclipai/paperclip/pull/13973)); obsolete continuations are cancelled before dispatch ([#13761](https://github.com/paperclipai/paperclip/pull/13761)); a status reply that still lists blocking work keeps the task moving ([#14626](https://github.com/paperclipai/paperclip/pull/14626)); Done and Cancelled tasks keep their assignee on release ([#14561](https://github.com/paperclipai/paperclip/pull/14561)); interaction continuations stay scoped to their task ([ded156a9](https://github.com/paperclipai/paperclip/commit/ded156a9045d59cf8705847271c8c03b1b58c8b2)) and question recipients are derived and validated ([#14742](https://github.com/paperclipai/paperclip/pull/14742)); remote Grok runs stop before queued messages continue ([#14100](https://github.com/paperclipai/paperclip/pull/14100)); run-identity locks no longer deadlock with audit inserts ([#14478](https://github.com/paperclipai/paperclip/pull/14478)); and ambiguous database disconnects are no longer replayed ([#14773](https://github.com/paperclipai/paperclip/pull/14773)).
- **Scheduler and recovery** — A queued run whose claim is permanently rejected is cancelled instead of crash-looping the server ([#14738](https://github.com/paperclipai/paperclip/pull/14738)); wakes that arrive during a drain stay queued and interrupted corrective runs get a transient retry ([#14028](https://github.com/paperclipai/paperclip/pull/14028)); an issue whose run has spent its retry budget is escalated to a visible blocked state rather than skipped forever ([#14046](https://github.com/paperclipai/paperclip/pull/14046)); continuation and retry budgets use persisted state ([#13888](https://github.com/paperclipai/paperclip/pull/13888)); task ownership is claimed atomically with queued runs ([#13973](https://github.com/paperclipai/paperclip/pull/13973)); obsolete continuations are cancelled before dispatch ([#13761](https://github.com/paperclipai/paperclip/pull/13761)); a status reply that still lists blocking work keeps the task moving ([#14626](https://github.com/paperclipai/paperclip/pull/14626)); Done and Cancelled tasks keep their assignee on release ([#14561](https://github.com/paperclipai/paperclip/pull/14561)); interaction continuations stay scoped to their task ([ded156a9](https://github.com/paperclipai/paperclip/commit/ded156a9045d59cf8705847271c8c03b1b58c8b2)) and question recipients are derived and validated ([#14742](https://github.com/paperclipai/paperclip/pull/14742)); Slack- and Discord-origin tasks that lose their review path recover with their message bindings intact instead of failing the recovery authorization check ([#13818](https://github.com/paperclipai/paperclip/pull/13818)); remote Grok runs stop before queued messages continue ([#14100](https://github.com/paperclipai/paperclip/pull/14100)); run-identity locks no longer deadlock with audit inserts ([#14478](https://github.com/paperclipai/paperclip/pull/14478)); and ambiguous database disconnects are no longer replayed ([#14773](https://github.com/paperclipai/paperclip/pull/14773)).
- **Connections and apps** — OAuth sign-in challenges and reconnect states return 422 instead of being reported as crashes ([#13786](https://github.com/paperclipai/paperclip/pull/13786), [#13794](https://github.com/paperclipai/paperclip/pull/13794)); MCP OAuth setup explains failed or cancelled consent ([#13855](https://github.com/paperclipai/paperclip/pull/13855)); a disabled Slack MCP app gets actionable setup instructions ([a7d3b17a](https://github.com/paperclipai/paperclip/commit/a7d3b17a970a305e9b2cc2bebc2b16950e8bd31f)); broker and AgentMail failures keep allowlisted reason codes ([#14098](https://github.com/paperclipai/paperclip/pull/14098), [#14768](https://github.com/paperclipai/paperclip/pull/14768)); Google Chat and the Docs, Sheets, Slides, and Calendar profiles request fewer scopes ([#13820](https://github.com/paperclipai/paperclip/pull/13820), [#14740](https://github.com/paperclipai/paperclip/pull/14740)); work products validate their execution-workspace reference ([#14063](https://github.com/paperclipai/paperclip/pull/14063)); and malformed CLI auth challenge IDs return 400 ([#14095](https://github.com/paperclipai/paperclip/pull/14095)).
- **Board UI** — The board recovers during server restarts with a connection message and retries, keeping open editors mounted ([#14560](https://github.com/paperclipai/paperclip/pull/14560)), and offers a retry screen when the app fails before React starts ([#13970](https://github.com/paperclipai/paperclip/pull/13970)). Code highlighting no longer crashes on a Lezer version mismatch ([a3749aac](https://github.com/paperclipai/paperclip/commit/a3749aac4680a901fa0fe1cc898907887abc9908)), destructive confirm buttons are readable in the light theme ([#14328](https://github.com/paperclipai/paperclip/pull/14328)), mobile pickers stay in view above the keyboard and scroll by touch ([#14022](https://github.com/paperclipai/paperclip/pull/14022), [#14249](https://github.com/paperclipai/paperclip/pull/14249), [#14250](https://github.com/paperclipai/paperclip/pull/14250), [#14599](https://github.com/paperclipai/paperclip/pull/14599)), newer drafts survive receipt cleanup ([#14332](https://github.com/paperclipai/paperclip/pull/14332)), other users' failed runs stay out of Mine ([#14572](https://github.com/paperclipai/paperclip/pull/14572)), "Recovery needed" is distinguished from "Recovery in progress" ([#14326](https://github.com/paperclipai/paperclip/pull/14326)) and a misleading Retry no longer appears when recovery is blocked ([#13775](https://github.com/paperclipai/paperclip/pull/13775)), new artifacts register a tab without opening the panel ([#14193](https://github.com/paperclipai/paperclip/pull/14193)), the Tasks panel shows ancestors ([#13823](https://github.com/paperclipai/paperclip/pull/13823)), and task content appears sooner with parallel server reads ([#14727](https://github.com/paperclipai/paperclip/pull/14727)). Also: property icons align with avatars ([#13319](https://github.com/paperclipai/paperclip/pull/13319)), runner commentary aligns with replies ([#14716](https://github.com/paperclipai/paperclip/pull/14716)), project save indicators stack below their label ([#14765](https://github.com/paperclipai/paperclip/pull/14765)), archiving a company navigates away ([#13846](https://github.com/paperclipai/paperclip/pull/13846)), experimental settings are alphabetized with empty groups hidden ([#13905](https://github.com/paperclipai/paperclip/pull/13905)), and the Cursor adapter picks the real error over a trace notice ([#14636](https://github.com/paperclipai/paperclip/pull/14636)).
- **Observability** — Browser errors carry `SENTRY_ENVIRONMENT` ([#13784](https://github.com/paperclipai/paperclip/pull/13784)) and bounded component context ([#13904](https://github.com/paperclipai/paperclip/pull/13904)); run errors are isolated from later exceptions and a runtime capability header is redacted ([#13826](https://github.com/paperclipai/paperclip/pull/13826)); and run failure reports retain exit details, stacks, causes, runtime activity, and restore classification ([#14575](https://github.com/paperclipai/paperclip/pull/14575), [#14585](https://github.com/paperclipai/paperclip/pull/14585), [#14665](https://github.com/paperclipai/paperclip/pull/14665), [#14639](https://github.com/paperclipai/paperclip/pull/14639), [#14787](https://github.com/paperclipai/paperclip/pull/14787)).
## Improvements
- The account menu drops its profile rows for a header link and gains an Invite shortcut ([#14480](https://github.com/paperclipai/paperclip/pull/14480)); plugins can supply an organization switcher ([#13832](https://github.com/paperclipai/paperclip/pull/13832), [#13854](https://github.com/paperclipai/paperclip/pull/13854)); `PAPERCLIP_HIDDEN_SETTINGS` accepts a wildcard with named exceptions so new experimental flags stay hidden automatically ([#13980](https://github.com/paperclipai/paperclip/pull/13980)) and a `workspaces.isolation` key hides isolation controls ([#13907](https://github.com/paperclipai/paperclip/pull/13907)); the native runner gains a shared rich-ACP transport foundation for upcoming Cursor, GitHub Copilot, and Pi providers ([#14430](https://github.com/paperclipai/paperclip/pull/14430)); the coordination skill no longer tells agents to escalate through managers instead of asking the human who can act ([#14188](https://github.com/paperclipai/paperclip/pull/14188)); worktree seed-source failures explain the supported setups ([#14795](https://github.com/paperclipai/paperclip/pull/14795)); Google Workspace connectors are temporarily hidden from the Connections page while Google OAuth verification is pending, with saved connections and runtime access untouched ([#14774](https://github.com/paperclipai/paperclip/pull/14774)); and the README is refreshed with current harnesses, guide links, and an npx-first Quickstart ([#14741](https://github.com/paperclipai/paperclip/pull/14741), [#14744](https://github.com/paperclipai/paperclip/pull/14744)).
- The account menu drops its profile rows for a header link and gains an Invite shortcut ([#14480](https://github.com/paperclipai/paperclip/pull/14480)); plugins can supply an organization switcher ([#13832](https://github.com/paperclipai/paperclip/pull/13832), [#13854](https://github.com/paperclipai/paperclip/pull/13854)); `PAPERCLIP_HIDDEN_SETTINGS` accepts a wildcard with named exceptions so new experimental flags stay hidden automatically ([#13980](https://github.com/paperclipai/paperclip/pull/13980)) and a `workspaces.isolation` key hides isolation controls ([#13907](https://github.com/paperclipai/paperclip/pull/13907)); the native runner gains a shared rich-ACP transport foundation for upcoming Cursor, GitHub Copilot, and Pi providers ([#14430](https://github.com/paperclipai/paperclip/pull/14430)); native agents can hire teammates through a governed `hire_agent` action that inherits the caller's runtime configuration from a closed allowlist ([#13852](https://github.com/paperclipai/paperclip/pull/13852)); the coordination skill no longer tells agents to escalate through managers instead of asking the human who can act ([#14188](https://github.com/paperclipai/paperclip/pull/14188)); worktree seed-source failures explain the supported setups ([#14795](https://github.com/paperclipai/paperclip/pull/14795)); Google Workspace connectors are temporarily hidden from the Connections page while Google OAuth verification is pending, with saved connections and runtime access untouched ([#14774](https://github.com/paperclipai/paperclip/pull/14774)); and the README is refreshed with current harnesses, guide links, and an npx-first Quickstart ([#14741](https://github.com/paperclipai/paperclip/pull/14741), [#14744](https://github.com/paperclipai/paperclip/pull/14744)).
## Upgrade Guide