Release History
This page is generated from the repository changelog so release documentation stays aligned with published versions.
All notable changes to BoardReadyOps are recorded here.
Unreleased
1.33.0 (2026-08-22)
Features
1.32.1 (2026-08-22)
Bug Fixes
1.32.0 (2026-08-21)
Features
Bug Fixes
- ci: bind target SHA in Actions OIDC audience (#454) (a3fd3bf)
- ci: keep maintenance contract portable (#460) (03cae04)
- ci: make Renovate validation hermetic (#459) (35419cc)
- core: trust scoped production checkout (#458) (eadca80)
1.31.6 (2026-08-19)
Bug Fixes
- deps: make Renovate store isolation hermetic (#436) (f41d620)
- deps: stabilize Renovate CI runtime (#438) (3e790e0)
1.31.5 (2026-08-19)
Bug Fixes
- deps: isolate Renovate pnpm store (#435) (6b10f95)
- deps: keep Renovate updates deterministic (#433) (536ef54)
1.31.4 (2026-08-19)
Bug Fixes
1.31.3 (2026-08-18)
Bug Fixes
1.31.2 (2026-08-18)
Bug Fixes
1.31.1 (2026-08-17)
Bug Fixes
1.31.0 (2026-08-17)
Features
- core: persist artifact evidence metadata (#391) (e1acd38)
- core: surface artifact deletion lifecycle (#360) (1f080b8), closes #26
- report: link dashboard to GitHub Actions runs (#358) (e58fcdb)
Bug Fixes
- ci: fail pre-push checks closed (#397) (df7723c)
- ci: force Mergify in-place queue checks (#366) (e2a346c)
- ci: isolate source guards from mutation runs (#407) (aadfa8a)
- ci: reduce compatibility drift complexity (#372) (d25671b)
- ci: reduce i18n check complexity (#373) (ff9d203)
- ci: reduce synthetic canary complexity (#386) (2c47cc6)
- ci: reduce worker fleet load complexity (#374) (505a686)
- ci: regenerate dependency artifacts in Renovate (#406) (341098e)
- ci: remediate Sonar and Mergify findings (#364) (3ee4b08)
- ci: resolve npm pack via Node installation (#367) (48f9a9d)
- ci: retry transient Corepack bootstrap (#356) (2d6a8ca)
- ci: simplify npm pack metadata branching (#399) (9e6a3e7)
- cli: keep fix plan sorting immutable (#394) (a506d10)
- cli: reduce DNP fix planning complexity (#369) (4024ac6)
- cli: reduce run command complexity (#375) (46d13ff)
- core: keep pcb area sorting immutable (#396) (711a152)
- core: keep release file sorting immutable (#401) (c922131)
- core: keep runner fleet sorting immutable (#393) (4065c7f)
- core: keep sexpr stack traversal immutable (#395) (918fcb8)
- core: preserve verified runner artifacts (#359) (4757691), closes #26
- core: reduce artifact capability complexity (#380) (b781ca5)
- core: reduce artifact stream complexity (#381) (593e778)
- core: reduce artifact upload complexity (#379) (fe04596)
- core: reduce BOM MPN fix complexity (#384) (d4b99e1)
- core: reduce check-run reconciliation complexity (#382) (075b330)
- core: reduce lifecycle executor complexity (#371) (2df087b)
- core: reduce repository setup complexity (#378) (e0d47b5)
- core: reduce repository setup probe complexity (#385) (0eaa50c)
- core: reduce result route complexity (#387) (ad9f6af)
- core: reduce run summary complexity (#370) (27dbc18)
- core: reduce runner claim complexity (#376) (94a2a61)
- core: reduce runner worker complexity (#383) (9aa6860)
- core: reduce setup probe callback complexity (#368) (ae00c9d)
- core: reduce Sonar complexity in core parsers (#365) (49b1e83)
- core: reduce webhook lifecycle complexity (#377) (734a8e9)
- core: simplify runner request text comparison (#400) (0a4dea9)
- core: simplify STM32 designator fallback (#398) (d661c44)
- core: use semantic live status output (#392) (10d5248)
- deps: patch deepmerge-ts in Prisma config (#409) (7d3e2d5)
- deps: remove vulnerable extract-zip path (#408) (800ebcd)
- deps: update vulnerable nanoid to 3.3.18 (#402) (48be1f9)
1.30.3 (2026-08-09)
Bug Fixes
- cli: add metadata-only runner artifact mode (#352) (5a7fba3)
- cli: cancel in-flight runner analysis on shutdown (#351) (6fb5ee9), refs #41
- core: clean crash-orphaned runner workspaces (#353) (39af849)
- deps: pin patched nanoid transitive (#350) (37cb00c)
- release: harden npm trusted publishing (#348) (fffa1cd), refs #334
- release: pin npm publish to main workflow identity (#354) (78aeeb4), refs #334
1.30.2 (2026-08-08)
Bug Fixes
- ci: harden toolchain bootstrap isolation (#342) (204ebf5)
- ci: restore dependency vulnerability gates (#336) (257f16e)
- ci: use Git-compatible null config paths (#340) (2944474)
1.30.1 (2026-08-05)
Bug Fixes
- core: preserve directory symlinks in portable copies (#328) (157b4a5)
- quality: resolve SonarQube code smells and refactor cognitive complexity (#320) (48eaf5c)
1.30.0 (2026-08-03)
Features
1.29.0 (2026-08-02)
Features
1.28.0 (2026-08-02)
Features
1.27.1 (2026-08-02)
Bug Fixes
- release: make binary uploads resumable (#311) (e026df9), closes #310
- release: repair assets for older tags (#313) (df3186b), closes #310
1.27.0 (2026-08-02)
Features
1.26.1 (2026-08-02)
Bug Fixes
1.26.0 (2026-08-02)
Features
1.25.1 (2026-08-01)
Bug Fixes
- ci: keep release pull request history verified (#298) (a00cde0)
- ci: satisfy release rewrite reliability checks (#299) (4b89274)
- core: retain bounded control-plane history (#295) (7218206)
1.25.0 (2026-08-01)
Features
- core: validate representative control-plane load (#293) (75c38ea)
- core: verify PostgreSQL backup restores (#290) (ea38a8b)
Bug Fixes
- ci: pin readiness workflow to v1.24.1 (#288) (1d8bd78)
- core: make backup verification CLI runnable (#291) (01c42c3)
1.24.1 (2026-08-01)
Bug Fixes
- core: force safe-mode workspace cleanup (#284) (a4e7a0f)
- core: purge terminal ephemeral records (#282) (27b1de4)
- core: restrict safe-mode runtime extensions (#286) (5d49715), refs #42
- core: surface trust restrictions in GitHub (#285) (8eb870d), refs #42
- web: bind dashboard reads to tenant scope (#287) (6812cef)
1.24.0 (2026-07-31)
Features
- core: add reconnectable run refresh (#273) (d3c1a01)
- core: handle GitHub App setup handoff (#274) (e8d01b1), closes #16
- core: persist release-run trust mode (#272) (00a5c1b)
Bug Fixes
- core: bind callbacks to trust snapshots (#281) (485ff4e)
- core: bind runner leases to trust snapshots (#278) (a9691f0), refs #42
- core: expire stale control-plane credentials (#280) (96013db)
- core: fail private dashboards closed (#276) (cb9cfdc)
- core: purge expired runner request nonces (#277) (2d8ce0f), refs #44
- core: suppress safe-mode artifact uploads (#279) (aa0a83d), refs #42
1.23.0 (2026-07-30)
Features
- cloud: add repository setup and readiness flow (#269) (66f6f45)
- scale run investigation dashboard (#266) (cf8327a), closes #221
1.22.0 (2026-07-29)
Features
1.21.0 (2026-07-29)
Features
- core: configure artifact capability expiry (#261) (d40b366), relates to #44
- core: configure webhook retention (#259) (62db74f), relates to #44
1.20.0 (2026-07-29)
Features
- core: add tenant-scoped audit export (#252) (dd5868e)
- core: audit artifact download starts (#254) (32454f9)
- core: audit GitHub App lifecycle changes (#255) (ba36ebd)
- core: audit installation suspension lifecycle (#256) (588ed06)
- core: audit replaced artifact records (#258) (7c111e1)
- core: expose release decision audit summary (#257) (7cf8ed8)
1.19.0 (2026-07-27)
Features
- ci: add cloud coverage and monorepo verification (#230) (78e1ab5)
- ci: add reproducible repository toolchain (#228) (71a694f), closes #220
- ci: add synthetic target-repository canaries (#238) (8e73aee)
- cloud: emit control-plane SLI snapshots (#214) (a61e88a)
- core: add control-plane SLO alerting (#235) (7eb6bb7)
- core: add tenant-scoped dead-letter operator API (#233) (d696f20)
- core: add versioned release-run transitions (#242) (9b4e6aa)
- core: guard Check Run creation transitions (#245) (4dba216)
- core: guard release-run supersession (#247) (2266b4c)
- core: guard runner lease transitions (#249) (1aae59b)
- core: guard runner result transitions (#248) (3ebca30)
- core: guard workflow dispatch transitions (#244) (710fbbb)
- core: guard workflow reconciliation transitions (#246) (9749ce6)
- core: reconcile GitHub Check Run drift (#236) (2d07e25)
- core: reconcile missed GitHub workflow callbacks (#234) (1f8253d)
- core: reconcile webhook inbox and lifecycle job drift (#237) (284b483)
Bug Fixes
- ci: harden supply-chain and container policies (#231) (a7b5ed0)
- ci: make NOTICE verification immutable (#223) (9262984)
- ci: persist solo-maintainer review policy (#232) (1e7adcf)
- deps: patch OSV dependency findings (#240) (4078861)
- deps: update dependency next to v16.2.11 [security] (#229) (63d0771)
- governance: require reviewed main pull requests (#224) (4cae73f)
- governance: restore signed commit enforcement (#225) (7a44e1f)
- security: add aggregate merge gate (#226) (02038db)
1.18.0 (2026-07-22)
Features
1.17.0 (2026-07-22)
Features
1.16.0 (2026-07-22)
Features
- cloud: dispatch transactional outbox effects (#208) (3146836), closes #188
- db: add atomic release-run outbox producer (#207) (e8721d1)
- db: add transactional outbox foundation (#205) (e919758)
Bug Fixes
1.15.0 (2026-07-22)
Features
1.14.0 (2026-07-21)
Features
- ci: add dependency and security automation (#193) (63e259e)
- ci: expand Codecov observability (#201) (ae27422)
- ci: provision admin database URL (#183) (b5c9ab3)
- ci: run readiness in target repositories (843d0ca)
- ci: standardize workflow security linting (#202) (a073226)
- core: durably accept GitHub webhooks (#198) (cd1f6a9)
- core: establish VPS-independent cloud runtime foundation (#192) (ac58985)
- report: improve PR readiness output (#200) (6909e6b)
Bug Fixes
- ci: enable repository config scoping (27e40cf)
- ci: enable repository project scoping (6c1fc5c)
- ci: pin resolvable Renovate action (#195) (b75e4c1)
- ci: support rollout policy files (#186) (6c2a7b2)
1.13.0 (2026-07-14)
Features
Bug Fixes
1.12.1 (2026-07-13)
Bug Fixes
- ci: restore clean web Docker builds (#179) (0bfb14e)
- ci: restore Sonar main quality gate (#177) (31299d0)
1.12.0 (2026-07-13)
Features
1.11.0 (2026-07-13)
Features
- runner: add artifact capability and upload routes (#160) (3ea6e42)
- runner: add artifact upload capability store (#159) (921c4b0)
- runner: add self-hosted activation endpoint (#164) (72c1e8c)
- runner: add self-hosted enrollment store (#163) (7cfaadf)
- runner: add signed claim and lease routes (#158) (3c99ecf)
- runner: add signed lease protocol foundation (#155) (5ecae92)
- runner: add signed terminal result route (#162) (c26a459)
- runner: add transactional lease store (#157) (e520dda)
- runner: authorize signed terminal results (#161) (94b0e5f)
1.10.0 (2026-07-12)
Features
Bug Fixes
1.9.0 (2026-07-12)
Features
1.8.4 (2026-07-11)
Bug Fixes
1.8.3 (2026-07-11)
Bug Fixes
1.8.2 (2026-07-11)
Bug Fixes
- core: persist runner results atomically (#137) (f3b83df)
- core: reject superseded runner results (#139) (7d67ea3)
1.8.1 (2026-07-11)
Bug Fixes
- ci: accept npm 12 pack metadata (#134) (552596d)
- ci: parse npm 12 package maps (#135) (ab72c61)
- ci: verify npm tarballs directly (#132) (741df47)
1.8.0 (2026-07-11)
Features
- adapters: add Zephyr, ESP-IDF, and STM32CubeMX firmware contract adapters (#74) (1580cdc), closes #40
- add cloud database bootstrap migrations (#68) (6596105)
- add GitHub App lifecycle persistence ports (#65) (46c0228)
- add readiness runner workflow (f0c5daf)
- add readiness workflow lifecycle dispatch hooks (70a1d8c)
- add self-hosted cloud skeleton (#61) (56a571d)
- bom: add approved alternates schema and suppress single-source risk for documented substitutes (#75) (8ea5063), closes #36
- bom: add bom.risk-score rule and BOM supply-chain risk summary (#76) (7451205), closes #37
- bom: add component identity normalization and conflict detection (#78) (2af8e5a)
- bom: lifecycle status abstraction and unknown-lifecycle rule (closes #38) (10e58cb)
- bom: supplier intelligence plugin interface and static provider (closes #39) (7451dec)
- core: render hosted release run details (#113) (f5ca4a3)
- core: rule pack architecture with defineRulePack and 5 built-in presets (closes #50, closes #51) (5080332)
- core: serve signed artifact downloads (#115) (5bbf126)
- create PR readiness check run lifecycle (94944ed)
- db: add self-hosted runner registration foundation (#118) (55c64c8)
- db: add tenant-scoped audit log foundation (#119) (5b5abec)
- docs: shareable public demo scenarios with pre-generated reports (closes #49) (29db629)
- github-app: add private repo and fork PR safe mode (#117) (e967381)
- normalize GitHub App lifecycle events (#64) (5c60432)
- persist GitHub webhook lifecycle actions (#66) (ab060c1)
- persist GitHub webhook lifecycle actions (#67) (2b88cc5)
- release: add prototype/pilot/production release modes (#77) (0e15675), closes #31
- release: add release manifest schema, checksums.txt, and manifest coverage verification (#81) (eb647b6)
- release: run diff comparison and release history trend analysis (closes #27, closes #29) (5da9e97)
- report: standardize report contracts with evidence schema, SARIF tags, and JUnit timestamp (#79) (4717933)
- rules: add manufacturing.package-completeness rule (#80) (1b6d13a), closes #30
- runner: add fail-closed runner mode configuration (#120) (2bfd090)
- runner: sign callbacks and publish product readiness output (#116) (f812274)
- vendors: add generic preset profiles for prototype, assembly-ready, and production (#82) (8b0c06c), closes #32
- wire web runner client into GitHub webhook lifecycle (1589257), closes #21
Bug Fixes
- add runtime JS check run client (cb6dae6)
- ci: make release preflight reproducible (#131) (8e86187)
- ci: use release token for release pull requests (#129) (160aa63)
- copy scripts into web Docker deps stage (#70) (cc86032)
- core: authenticate runner callbacks with GitHub OIDC (#128) (7a3b6cf)
- core: support file-backed runtime secrets (#126) (9a6d679)
- core: tolerate unavailable readiness comments (#127) (ed83e7b)
- github-app: make release rollout opt-in by config (#109) (eeb9f6e)
- make cloud releases immutable (#124) (875baf8)
- make webhook lifecycle store resolvable by Next (#69) (44a219c)
- quiet idempotent deploy cleanup (#125) (7bf4078)
- relink repository installation on upsert (7ec3820)
- restrict BoardReadyOps checks to enabled repositories (ccec5d4)
- return pg query results (79bf78b)
- upsert PR webhook state before enqueue (#98) (6a00f94)
1.7.2 (2026-06-28)
Bug Fixes
- ci: rebuild dist in release-please regeneration step (a8283df)
- release: prevent version leaks from breaking the release pipeline (1def6ea)
1.7.1 (2026-06-27)
Bug Fixes
- resolve GC duplicate code, coverage thresholds, stale dist bundle (680f751)
1.7.0 (2026-06-24)
Features
- expand vendor fabrication profiles (12ae7b5), closes #236
- harden release channels and add agent planning output (#241) (bc6ad51)
- harden report finding identity (#248) (bc4a02f)
- harden waiver governance (974fa56)
- run KiCad jobsets during release prepare (#246) (d82d847)
1.6.2 (2026-06-23)
Documentation
1.6.0 (2026-06-23)
Features
- action: add app-style release review pull request comment (#228) (f9f6960)
- adapters: add firmware contract adapter ecosystem with Arduino adapter (#225) (2aae098)
- bom: add RoHS/REACH compliance intelligence (#224) (7d1a1db)
- cli: add generate command for first-party KiCad outputs (#211) (1e81a46)
- core: add configurable release policy engine (#219) (a73a832)
- core: add waivers and approval workflow (#220) (61507fa)
- release: add manufacturer handoff package command (#215) (42fb449), closes #196
- release: add release prepare workflow command (#212) (b52c947)
- release: add release-to-release diff engine (#218) (1ad6cdd), closes #199
- release: add signed manifest provenance and verification (#222) (a9e0945)
- release: upgrade evidence bundle to structured v2 release record (#214) (99495b9), closes #195
- report: add explainable vendor readiness score (#216) (f7f4314)
- report: turn the HTML report into a release dashboard (#217) (d3263d0), closes #198
- rules: expand DFM/DFA rule corpus (#223) (f343017)
Bug Fixes
Documentation
1.5.2 (2026-06-21)
Documentation
- add DeepWiki badge (f790a0a)
1.5.1 (2026-06-21)
Bug Fixes
1.5.0 (2026-06-21)
Features
- add first DFM and DFA rules (#175) (18e4095)
- add hierarchical schematic graph (#172) (f0de008), closes #157
- add release evidence bundles (131d6b6)
- add release evidence bundles (f2210e8)
- add typed KiCad project model (#170) (c3fc247), closes #156
- add vendor profiles (3bd1034)
- add vendor profiles (4615be6)
- core: add plugin permission model (#185) (b2ea35d)
- rules: add firmware pin contract check (#186) (6be16a3)
Bug Fixes
Performance
Documentation
- clarify release readiness positioning (#182) (b59bfbb)
- improve dark navigation accessibility (#187) (31d0c9f)
Tests
CI
- avoid blocking on stale review threads (#184) (15f0522)
- route checks by change risk (#183) (c4654b4)
1.4.6 (2026-06-16)
Bug Fixes
- cli: remove unused exports flagged by knip (830415a)
1.4.5 (2026-06-15)
Bug Fixes
- deps: resolve transitive npm audit findings (47845c0)
- deps: update esbuild to 0.28.1 to fix GHSA-gv7w-rqvm-qjhr (high) (ef014e0)
- resolve CHANGELOG, pnpm 11.5.3, action output paths, refresh docs (f4ab558)
Code Refactoring
- cli,report,docs: split oversized modules, retire kicad plugin, refresh release docs (936ec68)
1.4.4 (2026-06-09)
Bug Fixes
- add --repo flag to gh workflow run in release-please to avoid dispatch failure (3190ec0)
- ci: use INPUT_* env vars, align Node 24, build local tarball for PRs (b5d85ba)
Documentation
- update stale version references to v1.4.3 (6f66c4b)
CI
- align branch protection ruleset with live GitHub configuration (c1eb9e3)
1.4.3 (2026-06-05)
Bug Fixes
- ci: restore npm publish release handoff (#120) (45c41a0)
- ci: skip floating tags for manual npm backfills (6fcb644)
- ci: support historical npm backfills (#121) (0975629)
- regenerate dist bundles and release history for v1.4.2 (#112) (4dd98c5)
1.4.2 (2026-06-04)
Bug Fixes
- regenerate dist bundles and release history for v1.4.1 (2734365)
1.4.1 (2026-06-03)
Bug Fixes
- restore Unreleased section in CHANGELOG.md (1c0da85)
- restore Unreleased section in CHANGELOG.md (05fbc8d)
- simulate unavailable kicad-cli in gate requirement test (c19c0fc)
- simulate unavailable kicad-cli in gate requirement test (69d26b5)
CI
- add branch protection ruleset for main (a21a4ef)
- add branch protection ruleset for main (9f0367c)
- add branch protection ruleset for main (#107) (a21a4ef)
1.4.0 (2026-06-03)
Features
- cli: define stable JSON diagnostics contract with status and exitCode (b90be1a)
Bug Fixes
- align UV_VERSION in publish-npm.yml and disable prerelease in release-please-config (c64f1e3)
- repair CHANGELOG Unreleased positioning and regenerate dist/docs (b90be1a)
- repair CHANGELOG Unreleased positioning and regenerate dist/docs after release-please merge (d83cfb4)
- skip kicad-plugin integration tests when plugin dir not present (327deca)
- update action-inputs-docs generator source to v1.3.0 so gc passes (aa49679)
Code Refactoring
- split more-coverage.test.ts into domain-specific coverage files (b86b10b)
CI
- docs: replace manual Pages deploy with actions/deploy-pages@v5.0.0 (161e58c)
- pin all workflow runners from ubuntu-latest to ubuntu-24.04 (f60294f)
- remove 4 redundant workflow files consolidated into security.yml and ci.yml (79706e5)
1.3.0 (2026-06-03)
Features
1.2.3 (2026-06-03)
Bug Fixes
- stabilize v1.2.2 release CI (dist, KiCad metadata, CHANGELOG) (adb7bb1)
CI
1.2.2 (2026-06-02)
Bug Fixes
Documentation
- Normalize release history, generated plugin SDK API docs, and stale-doc verification (#50).
CI
- Update UV_VERSION 0.9.14 to 0.11.16 (#58).
- Upgrade pnpm 11.1.3 to 11.3.0 (#60).
- Remove KiCad 9.x from integration and container matrices (#59).
- Enforce zizmor advisory scan by removing
continue-on-error(#61). - Extract docs Python dependencies to
docs/requirements.txt(#62).
1.2.1 (2026-06-02)
Bug Fixes
Documentation
- plan docs toolchain lifecycle (#86) (fe20a0e)
- release: normalize release history and sdk api (#87) (d5e0bad)
Tests
1.2.0 (2026-05-30)
CI
- Add manual npm publish dispatch and release-tag retry paths (11113be, 2132170, 6b9b9e0).
- Make npm publish retry idempotent and harden manual tag repair (7aacbed, a791ffe).
- Add manual container publish dispatch for already-published versions (704b2ec).
Documentation
- Record v1.1.0 package parity verification (#69).
Dependencies
- Update knip to v6.14.2 and pin dependency versions (#71, 3724c78).
- Update non-major Vitest and coverage packages to v4.1.7 (#76).
Maintenance
1.1.0 (2026-05-26)
Features
- Add fabrication diffs in PR comments and validate the GitHub Action marketplace listing (0d9dc32, 85a4dc7).
- Add CLI fix automation, doctor diagnostics, and i18n infrastructure (dad705b, 514d606, #21).
- Add finding remediation metadata, gate semantics, suppressions, baselines, structured logging, notifier hooks, and multi-project workspace support (1bca167, 8c8a9bf, 846357f, 6b10f13, c535bed, 8c27166).
- Add plugin SDK and loader plus the KiCad PCM editor plugin (0589294, 96eb42a).
- Add binary distribution and full container Action release pipelines (485c25c, 71f83b0).
- Add accessible HTML reports, CycloneDX hardware SBOM output, enriched SARIF context, richer rule metadata, and manufacturing output explanations (#20, #31, #17, 0773732, 533938c).
Bug Fixes
- Emit configured JUnit reports (ee4846f).
Documentation
- Add license compliance notices, structure verifier documentation, and contributing governance docs (6087066, cf14cf7, 95852af).
- Record clean consumer channel verification, reference synchronization, and copy-paste audit gates (5667f1b, 4efcd6d, d3e74b0).
Tests
- Align CLI version expectations, add fixture regression coverage, cover cross-platform paths, enforce docs accessibility, and add coverage and mutation gates (90478fc, e692578, #19, da3a370, 9446b77).
CI
- Enforce compatibility matrix drift, action example pinning, Node version coverage, Scorecard publishing, Trivy pin repair, binary release asset hardening, and release self-validation (#33, 02b55c5, aa52ed6, 800feb1, d8e7ac4, a049987, 8e5bdbd, 42a4a5d).
1.0.2 (2026-05-21)
Maintenance
- Refresh generated artifacts and mark the CLI bundle executable (1cdcdcf, c77df5c).
- Align release metadata for v1.0.2 (15e7890, 9210bca).
1.0.1 (2026-05-21)
Maintenance
1.0.0 (2026-05-21)
Added
- Initial BoardReadyOps CLI and GitHub Action release for KiCad hardware production-readiness checks.
- KiCad DRC/ERC normalization, BOM checks, pinmap validation, manufacturing checks, design sanity checks, release preflight rules, and JSON/SARIF/Markdown/JUnit report outputs.
- Node 24 GitHub Action runtime, committed CLI/action bundles, coverage gates, mutation testing, property tests, SBOM generation, Gitleaks, OSV, CodeQL, Scorecard, Trivy, and npm provenance release workflows.