| Name | Modified | Size | Downloads / Week |
|---|---|---|---|
| Parent folder | |||
| multiple.intoto.jsonl | 2026-08-17 | 23.9 kB | |
| SHA256SUMS | 2026-08-17 | 1.2 kB | |
| observer-org.cdx.json | 2026-08-17 | 42.6 kB | |
| observer.cdx.json | 2026-08-17 | 52.7 kB | |
| observer-org-v1.31.0-win32-x64.zip | 2026-08-17 | 13.2 MB | |
| observer-v1.31.0-darwin-x64.tar.gz | 2026-08-17 | 25.1 MB | |
| observer-v1.31.0-linux-arm64.tar.gz | 2026-08-17 | 26.5 MB | |
| observer-v1.31.0-linux-x64.tar.gz | 2026-08-17 | 28.0 MB | |
| observer-v1.31.0-win32-x64.zip | 2026-08-17 | 50.1 MB | |
| observer-org-v1.31.0-linux-x64.tar.gz | 2026-08-17 | 13.0 MB | |
| observer-org-v1.31.0-darwin-arm64.tar.gz | 2026-08-17 | 12.6 MB | |
| observer-org-v1.31.0-darwin-x64.tar.gz | 2026-08-17 | 13.3 MB | |
| observer-org-v1.31.0-linux-arm64.tar.gz | 2026-08-17 | 12.1 MB | |
| observer-v1.31.0-darwin-arm64.tar.gz | 2026-08-17 | 24.1 MB | |
| README.md | 2026-08-17 | 13.5 kB | |
| v1.31.0 source code.tar.gz | 2026-08-17 | 24.5 MB | |
| v1.31.0 source code.zip | 2026-08-17 | 26.7 MB | |
| Totals: 17 Items | 269.4 MB | 0 | |
Added
- feat(adapter): JetBrains Junie adapter — event-sourced
events.jsonlcapture for JetBrains' Junie coding agent, bringing the supported-tool count to 33. - feat(judge): opt-in Baseten judge provider — a Qwen 2.5 3B Instruct judge behind a budget on/off switch, for admission and eval scoring.
-
docs: adapter count reconciled to 33 — READMEs, package manifests, and in-product copy aligned to the 33 tools folded from the integration registry.
-
feat(plane-a): P1-4 remote-config and cert rotation v1 — server migration 040
org_fleet_remote_config/org_fleet_cert_events; GET/PUT/api/org/fleet/collectors/{id}/config; POST/api/org/fleet/collectors/{id}/certs/rotate(placeholder not_before/ not_after); fleet board gainsremote_config_present/last_cert_event. -
refactor(plane-a): telemetry bundle helper for deployment paths —
telemetry.AssembleBundleis the single seam for capabilities/Doctor/ connector Test connection; handlers no longer construct CH/Parquet/SQLite adapters inline. Full Control Store rewrite (Postgres dialect across orgserver handlers) remains residual (tracker P1-7). -
feat(plane-a): P1-1 FTS filter on ClickHouse query store — additive
model.QueryRequest.TextQuery; ClickHousefts_textcolumn (DedupKey+ ServiceName) +positionCaseInsensitivefilter. Trajectory (obs_traces) explorer remains without FTS — TelemetryQueryStore only. -
feat(plane-a): P1-9 Doctor + demo IaC emit —
POST /api/org/deployment/doctorreturns{ok, probes, ingest_ok, query_matched, detail}(hot/ingest/query/ durable Probe + syntheticdoctor-<uuid>batch when hot configured);GET /api/org/deployment/iacemits static Terraform/Bicep demo templates (CH URL / Blob / ACI open-webui vars, no secrets);/deploymentDoctor + IaC card. -
feat(plane-a): P1-7 ClickHouse HTTP adapter + JSONL durable SoR —
clickhouse.Store(EnsureSchema / IngestBatch / Query / Probe via HTTP JSONEachRow;OBSERVER_CLICKHOUSE_URLorCLICKHOUSE_URL);parquet.Storefilesystem JSONL underOBSERVER_PARQUET_ROOT(engineparquet_object, interim until Arrow); stubs when unset;assembleTelemetryBundleprefers env stores;POST /api/org/deployment/doctorsynthetic ingest+query. -
feat(plane-a): P1-4 fleet inventory + health board v1 — org-scoped collector board (
fleetinventory) with healthy/stale/never_seen;GET /api/org/fleet/collectors; hosted on/deployment. Residual: remote config / cert rotation. -
feat(plane-a): P1-2 entity correlation graph v1 — server migration 039
org_entities/org_entity_edges; Upsert/List/Link/Neighbors; admin APIs +/deploymententity card. Provenance taxonomy unchanged. -
feat(plane-a): P1-9 Phase 2 — connector catalog + capability probes — server migration 038
org_deployment_connectors; catalog CRUD + Test connection via P1-7 capability Probe;/deploymentshows resolved capabilities + connectors. -
feat(plane-a): P0-10 Phase B — targeting, simulate, rollout UX — workspace/environment/service selectors on policy-resource publish (signing-bound); agent GET query attrs;
POST …/simulatefleet preview;/policyrollout panel wired to P1-3 APIs. -
feat(plane-a): P1-7 Phase A — engine ratification + capability seams — designate ClickHouse T1 / Postgres control / SQLite starter / Parquet SoR (harness = validation). Pure
telemetry/model+ five capability contracts + topology resolver; SQLite adapter; ClickHouse/Parquet NotConfigured stubs;GET /api/org/deployment/capabilities. Plan:docs/plans/plane-a-storage-ha-plan.md. -
feat(plane-a): P1-9 Deployment Control Center Phase 1 — server migration 037
org_deployment_wizard;GET/PUTtopology APIs; web2/deploymentwizard (SQLite / ClickHouse-recommended / existing / custom). Connectors, Doctor, IaC residual (P1-7 blocked). Plan:docs/plans/plane-a-deployment-control-center-plan.md. -
feat(plane-a): P0-10 Organization Control Center Phase A — admin HTTP list/show/lint for
admission.input+egress.routing_guardrail; web2/policygains family tabs (Guard TOML + Plane-A JSON lint→publish) with links to/fleet-state. Targeting/simulate/rollout UX residual. Plan:docs/plans/plane-a-p0-10-org-control-center-v1-plan.md. -
feat(plane-a): P1-3 policy rollout + exceptions v1 (API+CLI) — server migration 036 (
org_policy_rollouts/org_policy_exceptions); canary delivery viapolicyrollout.ResolveDeliveredonGET /api/agent/policy/{family}(named + hash% cohort; waivers force baseline); admin stage/approve/promote/halt/rollback + exception routes; auto-halt frompolicy_statecohort rates; rollback republishes baseline as MAX+1; CLIobserver-org policy-rollout. UI deferred to P0-10. Plan:docs/plans/plane-a-p1-3-policy-rollout-exceptions-plan.md. -
feat(plane-a): P1-1 trajectory explorer v1 (pagination + filters) —
GET /api/org/obs/trajectoriesgains Sessions-stylelimit/offset/totalplus status/source/session_id/model/provider filters over the pushedobs_tracessubstrate. Web2/trajectoriesgains a filter row -
pager. FTS / saved views / live-tail / gateway browse / million-trace remain deferred (P1-7). Plan:
docs/plans/plane-a-p1-1-searchable-trajectory-explorer-plan.md. -
feat(plane-a): P1-10 production self-obs retrofit (Phases A–D) — opt-in
[selfobs](default OFF) builds a credentialed OTLP emit sink inbuildProxy(Shutdown on cleanup). Routing Decide emits sampled DecisionRuns (routing_sample_n, default 32). Admission Admit, online eval (OnlineSampler.OnScored) + CLIobsEvalRun, andobserver adviseemit undersystem_agent. Conformance registry Wired:true for routing/advisor/admission/eval (insight-agent remains P2-7). Plan:docs/plans/plane-a-p1-10-production-retrofit-plan.md. -
feat(plane-a): P0-5 unified policy resource v1 — org distribution for
admission.input+egress.routing_guardrail(agent mig 081 / server mig 035). Signed fetch + CAS-fenced accept, enrolment-generation fence, LKG-before-listener (incl. standaloneobserver proxy start), steady-state poller, layered Org ownership on the shared AdmissionService, and P0-6 reporter widening (accepted_inert/delivered_unaccepted). Pure compilers live ininternal/policyfam/{admission,egress}; wire ininternal/orgclient+cmd/observer/policyresource_wire.go+internal/orgserver/policyresource. Codex BLOCK B1–B11 + SHOULD-FIX SF1–SF8 folded (304 revalidate, LKG pin-required, cache-tree clear on identity change, Cleared outcome slots, accepted_inert↔observe, publish BEGIN IMMEDIATE + in-txn audit, 4KiB description cap). -
feat(dashboard): New Terminal dialog gains a model picker. Per-tool, capability-gated: a grounded
Model ModelSpecrow on the adapter'sinternal/integrationcapability declares HOW a tool takes a model (top-level flag, subcommand-scoped flag, or env var) so no consumer branches on tool name. The picker is seeded from the tool's own local session history (180-day window, recency-ordered) plus the row's grounded known models; an invalid or unsupported value is silently dropped so the tool's own default applies. goose is delivered viaGOOSE_MODEL(env-only, no flag exists); kiro-cli's--modellives under itschatsubcommand. openclaw and droid get no picker at all — neither has a grounded seed-time model mechanism (droid's--modelexists only on its headlessdroid exec, not the interactive launch). -
feat(terminal): New Terminal launches can run inside a bubblewrap filesystem sandbox (Linux + WSL2, opt-in, default off). New
internal/sandbox(bwrap argv composition + a readiness probe) andinternal/workspace(three host-side workspace sources) packages, both pure per CLAUDE.md [#1] — no SQL/HTTP/os-exec, the actualbwrapandgitexec calls live in the one seam,cmd/observer/terminal_sandbox.go. The private root is bwrap-only in v1 (no Docker backend); it shares the host's network namespace, so this does not block or monitor egress — a sandboxed agent can still reach the network exactly like an unsandboxed one, same provider creds and all.~/.observeris bound read-write inside the sandbox on purpose, so the proxy route, hooks, and token capture are unaffected. Workspaces come from one of three host-side git operations before the sandbox starts —live(bind the real project dir),clone-local(git clone --no-hardlinks, so the clone can never hardlink objects back into the real repo), orclone-remote(host-sidegit clone <url>using your ambient auth, gated byallow_remote_clone, off by default) — plus a fourth,worktree, that ships off by default because it needs the main repo's.gitbound read-write and a known pre-existing worktree-attribution bug (findGitRoot) has to be fixed first. Onlyclaude-codehas a grounded per-toolSandboxSpec(its real state directories) in v1; every other adapter is honestly reported as not sandbox-launchable rather than guessed at. A sandboxed launch request that can't actually be satisfied (disabled, backend missing/too old, userns denied, tool unmapped, workspace prep failed) fails the launch outright — there is no silent unsandboxed fallback. Newobserver workspaces ls|rm <id>CLI to inspect/clean up the managed workspace tree (no automatic retention sweep yet in v1). Seedocs/sandboxed-terminals.md.
Fixed
-
fix(watcher): New Terminal install→launch capture for Muse/Prime (and peers). The watcher used to freeze its fsnotify root set at daemon start via one-shot
Detected(), and entered permanent idle mode when no session directories existed yet. Installing Muse/Prime (or any transcript-only adapter) from the New Terminal dialog and launching immediately left that session invisible until a daemon restart.Watcher.RefreshRootsnow hot-adds newly-existing roots into the live watch set and Scans; the dashboard kicks it (with a short retry schedule) after guided install and after a successful launch; the poller's full-scan pass also re-applies roots so CLI installs recover without a dashboard kick. Emptyenabled_adapters = []still detects nothing. -
fix(launchers): every
observer <tool>launcher now faithfully passes arbitrary flags through to the wrapped CLI.observer claude --model sonnetpreviously died on a silently-swallowed unknown-flag rejection (exit 1, no output); passthrough only worked when a positional preceded the flag or after--. All 24 launcher verbs now parse their own wrapper-reserved flags manually (DisableFlagParsing+ a shared parser) and forward every other token verbatim, in order. Wrapper-owned flags (--resume,--continue-from/--carryand the handoff family,--attach/--no-attach/--no-proxy,--verify,--config,--proxy,--<tool>-path, codex's process-control flags, copilot-cli's--model) keep their existing meaning and are never forwarded; malformed wrapper-flag usage now errors loudly instead of silently. Positional-first and--invocations behave byte-identically to before. Known trade-off: shell completion no longer suggests wrapper flag names on these subcommands (a cobraDisableFlagParsinglimitation).
Downloads
Pre-built binaries for each supported platform are attached below. Linux variants bundle antigravity-bridge.exe next to the observer binary for WSL2 users of the Antigravity adapter.
| Platform | Asset |
|---|---|
| Linux x86_64 | observer-v1.31.0-linux-x64.tar.gz |
| Linux arm64 | observer-v1.31.0-linux-arm64.tar.gz |
| macOS x86_64 (Intel) | observer-v1.31.0-darwin-x64.tar.gz |
| macOS arm64 (Apple Silicon) | observer-v1.31.0-darwin-arm64.tar.gz |
| Windows x86_64 | observer-v1.31.0-win32-x64.zip |
Verify with sha256sum -c SHA256SUMS (or shasum -a 256 -c SHA256SUMS on macOS) from the directory containing the downloads.
Also available via npm: npm install -g @superbased/observer@1.31.0
Org server (Docker)
The self-hosted org server ships as a Docker image and as per-platform observer-org-v1.31.0-* archives (attached below).
:::bash
docker pull ghcr.io/superbasedapp/observer-org:v1.31.0
The image is keyless-signed with cosign. Verify it:
:::bash
cosign verify ghcr.io/superbasedapp/observer-org:v1.31.0 \
--certificate-identity-regexp 'https://github.com/marmutapp/superbased-observer-private/.*' \
--certificate-oidc-issuer https://token.actions.githubusercontent.com
Supply chain
CycloneDX SBOMs are attached: observer.cdx.json and observer-org.cdx.json.
SLSA Level 3 build provenance for the binaries is attached below as a *.intoto.jsonl attestation. The build runs on the private origin repo, so pass that as the source when verifying an extracted binary with slsa-verifier v2.7.0 or newer (older versions fail with unexpected tlog entry type: expected intoto:0.0.2, got dsse:0.0.1):
:::bash
slsa-verifier verify-artifact ./observer \
--provenance-path *.intoto.jsonl \
--source-uri github.com/marmutapp/superbased-observer-private