Release Notes & Roadmap
Track stable releases and major architecture milestones.
v1.0.1: Security Detectors & Hardening Latest
Released August 2026
- New Security Detectors (37 Total Rules): Added SHIELD-034 (Insecure Agent Checkpoints), SHIELD-035 (Unauthenticated MCP SSE Transports), SHIELD-036 (Tool Response Prompt Injection), and SHIELD-037 (Agent Memory Poisoning).
- Fuzzing & Property Testing: Continuous fuzz targets with
cargo-fuzzand generative property testing viaproptest. - Benchmarking Suite: Micro-benchmarks powered by
criterionfor sub-50ms deterministic scan verification. - Strict Standards Compliance: Validated SARIF 2.1.0 output schema and zero-defect security auditing.
v1.0.0: General Availability (GA)
Released August 2026
- Interprocedural Call-Graph Taint Engine: Cross-function and cross-method taint propagation tracking tool parameters through helper functions into execution sinks in Python and TypeScript.
- Declarative Custom Rules Engine: Author organization-specific rules in
.agentshield/rules/*.yamlwith regex, globs, banned dependencies, and tool matchers. - Automated Remediation (
agentshield fix): 1-click and IDE lightbulb fixes for unsafe deserializers and unpinned dependencies. - MCP Runtime Guard Reverse Proxy: Real-time stdio and HTTP/SSE reverse proxy with live JSON-RPC inspection and stream secret sanitization.
- VS Code Extension v1.0.0: Inline findings, lightbulb code actions, and interactive suppressions.