Summary Two CLI/tool updates detected and applied to pkg/constants/constants.go. Workflows recompiled (177/177 files updated).
Tool Previous New Change MCP Gateway (gh-aw-mcpg) v0.1.20 v0.1.22 +2 releases APM (microsoft/APM) v0.8.2 v0.8.3 +1 release
Update MCP Gateway v0.1.20 → v0.1.22 Released 2026-03-21 (two releases within the same day).
Breaking Changes None
Key Features v0.1.21 — TLS support, blocked-users/approval-labels, expanded test coverage:
v0.1.22 — Comprehensive guard tool coverage and proxy router expansion:
22 GitHub MCP read tools now have explicit integrity/secrecy labels (previously falling through to default catch-all):
Actions: get_job_logs (marked secret — logs may contain leaked tokens) User Context: get_me, get_teams, get_team_members Discussions: list_discussions, get_discussion, get_discussion_comments, list_discussion_categories Gists: list_gists, get_gist Git: get_repository_tree Labels: list_label Notifications: list_notifications, get_notification_details Projects: projects_list, projects_get Security Advisories: 4 advisory tools Search: search_orgs Repos: list_starred_repositories 22 new REST routes + 5 GraphQL patterns added to proxy router (feat: guard tool coverage for GitHub MCP server + proxy router expansion gh-aw-mcpg#2291 ) 37 new unit tests for newly labeled tools View Full Changelog v0.1.21 What's Changed fix: address proxy TLS review feedback — permissions, wildcard address, shell arg parsing, test compile (fix: address proxy TLS review feedback — permissions, wildcard address, shell arg parsing, test compile gh-aw-mcpg#2233 ) feat: proxy mode TLS support and container-native entrypoint (feat: proxy mode TLS support and container-native entrypoint gh-aw-mcpg#2231 ) feat: implement blocked-users and approval-labels in GitHub guard (feat: implement blocked-users and approval-labels in GitHub guard gh-aw-mcpg#2241 ) fix: resolve duplicate test functions, nil panic, and missing Makefile target (fix: resolve duplicate test functions, nil panic, and missing Makefile target gh-aw-mcpg#2267 ) fix: correct baseline_scope for scoped integrity labels and discussion tool integrity (fix: correct baseline_scope for scoped integrity labels and discussion tool integrity gh-aw-mcpg#2281 ) feat: add guard tool coverage for 22 missing GitHub MCP server tools (feat: add guard tool coverage for 22 missing GitHub MCP server tools gh-aw-mcpg#2280 ) Add daily GitHub guard coverage checker workflow (Add daily GitHub guard coverage checker workflow (MCP + CLI) gh-aw-mcpg#2279 ) Multiple debug logging improvements and test coverage additions v0.1.22 What's Changed Full Changelog v0.1.20→v0.1.21: github/gh-aw-mcpg@v0.1.20...v0.1.21
Full Changelog v0.1.21→v0.1.22: github/gh-aw-mcpg@v0.1.21...v0.1.22
Impact Assessment Risk : Medium — security labeling improvements and new proxy routes affect guard policy enforcement behaviorAffects : MCP Gateway sandbox container, guard tool coverage, proxy mode TLSDocker Image : ghcr.io/github/gh-aw-mcpg:v0.1.22Package Links Update APM v0.8.2 → v0.8.3 Released 2026-03-20.
Breaking Changes None
Key Features View Full Changelog What's Changed Full Changelog: microsoft/apm@v0.8.2...v0.8.3
Impact Assessment Risk : Low — features addition, security fix for BOM handlingAffects : APM (Agent Package Manager) CLI used in microsoft/apm-action stepsPackage Links No Changes The following tools had no version changes:
Claude Code: latest (2.1.81 on NPM) Copilot CLI: latest (1.0.10 on NPM) Codex: latest (0.116.0 on NPM) GitHub MCP Server: v0.32.0 (unchanged) Playwright MCP: 0.0.68 (unchanged) Playwright Browser: v1.58.2 (unchanged) References:
Generated by CLI Version Checker · ◷
Summary
Two CLI/tool updates detected and applied to
pkg/constants/constants.go. Workflows recompiled (177/177 files updated).Update MCP Gateway v0.1.20 → v0.1.22
Released 2026-03-21 (two releases within the same day).
Breaking Changes
None
Key Features
v0.1.21 — TLS support, blocked-users/approval-labels, expanded test coverage:
blocked-usersandapproval-labelsin GitHub guard (feat: implement blocked-users and approval-labels in GitHub guard gh-aw-mcpg#2241)v0.1.22 — Comprehensive guard tool coverage and proxy router expansion:
get_job_logs(markedsecret— logs may contain leaked tokens)get_me,get_teams,get_team_memberslist_discussions,get_discussion,get_discussion_comments,list_discussion_categorieslist_gists,get_gistget_repository_treelist_labellist_notifications,get_notification_detailsprojects_list,projects_getsearch_orgslist_starred_repositoriesView Full Changelog
v0.1.21 What's Changed
v0.1.22 What's Changed
Full Changelog v0.1.20→v0.1.21: github/gh-aw-mcpg@v0.1.20...v0.1.21
Full Changelog v0.1.21→v0.1.22: github/gh-aw-mcpg@v0.1.21...v0.1.22
Impact Assessment
ghcr.io/github/gh-aw-mcpg:v0.1.22Package Links
Update APM v0.8.2 → v0.8.3
Released 2026-03-20.
Breaking Changes
None
Key Features
apm pack --format plugin,apm init --plugin, devDependencies support (feat: Plugin coexistence —apm pack --format plugin,apm init --plugin, devDependencies microsoft/apm#379).vscode/directory fallback (feat: improve VS Code runtime detection with .vscode/ directory fallback microsoft/apm#359)strip_dangerous(fix(security): preserve leading BOM in strip_dangerous microsoft/apm#372)aka.ms/apm-unixandaka.ms/apm-windowsshort URLs (Use aka.ms/apm-unix and aka.ms/apm-windows short URLs for install scripts microsoft/apm#384)DependencyReferencethrough download pipeline (fix: preserve DependencyReference through download pipeline (#382) microsoft/apm#383)View Full Changelog
What's Changed
compile,audit, and planned drift behavior (Align CLI docs with currentcompile,audit, and planned drift behavior microsoft/apm#373)apm pack --format plugin,apm init --plugin, devDependencies (feat: Plugin coexistence —apm pack --format plugin,apm init --plugin, devDependencies microsoft/apm#379)Full Changelog: microsoft/apm@v0.8.2...v0.8.3
Impact Assessment
microsoft/apm-actionstepsPackage Links
No Changes
The following tools had no version changes:
latest(2.1.81 on NPM)latest(1.0.10 on NPM)latest(0.116.0 on NPM)References: