|
1 | 1 | ## Highlights |
2 | 2 |
|
3 | | -### Executor Desktop (mac, windows, linux) |
| 3 | +### More reliable connected tools |
4 | 4 |
|
5 | | -The CLI's web UI now ships as a native desktop app. Same gateway, same UI, same sources — packaged with the Bun-compiled server bundled inside the Electron app so there's no Node install, no `executor web` running in your terminal, no port to remember. |
6 | | - |
7 | | -- Drag-to-Applications DMG with the Executor icon. Auto-updates via `electron-updater` directly from GitHub releases. |
8 | | -- macOS builds are signed with a Developer ID Application cert and notarized through the App Store Connect API — first launch is a single click, no Gatekeeper dance. |
9 | | -- State lives at `~/.executor/` — the same path the CLI uses. Sources, secrets, and policies set up in `executor web` show up in the desktop app and vice versa. |
10 | | -- Linux: AppImage / deb / rpm for x64 and arm64. Windows: `.exe` (currently unsigned — code-signing pipeline in flight). |
11 | | - |
12 | | -Downloads land on each [GitHub release](https://github.com/RhysSullivan/executor/releases/latest) under the `executor-desktop-*` assets. |
| 5 | +- OpenAPI, GraphQL, and MCP tools now return structured authentication failures with recovery guidance instead of opaque internal errors. |
| 6 | +- OAuth popups now complete more reliably in Chrome by preserving the callback channel through the same-origin completion page. |
| 7 | +- OAuth Dynamic Client Registration data is reused across retries and reconnects, including scopes, so providers are not asked to register duplicate clients. |
| 8 | +- MCP tool output schemas now match the actual invocation result envelope, including `content`, `structuredContent`, `_meta`, and `isError`. |
13 | 9 |
|
14 | 10 | ## UI |
15 | 11 |
|
16 | | -- Sidebar now shows a "Beta" pill next to the executor wordmark. |
| 12 | +- No UI-only changes in this patch. |
17 | 13 |
|
18 | 14 | ## Fixes |
19 | 15 |
|
20 | | -- Source configuration is no longer replayed from or written back to `executor.jsonc`; local source state stays in the shared Executor database while `executor.jsonc` continues to load plugin entries. |
| 16 | +- Auth failures from secret-backed and OAuth-backed tools now include model-visible next steps for missing credentials, missing secrets, expired OAuth connections, upstream 401/403 responses, and MCP per-user isolation cases. |
| 17 | +- Retrying OAuth sign-in no longer starts an avoidable second Dynamic Client Registration request. |
| 18 | +- Reconnecting an OAuth source keeps the previously registered DCR scope list intact. |
| 19 | +- MCP sources now describe output types as Executor's full successful `CallToolResult` data shape instead of only the upstream `structuredContent` schema. |
| 20 | + |
| 21 | +## Breaking changes |
| 22 | + |
| 23 | +None. |
0 commit comments