What shipped on OpenVibe.Trade

Every change deployed to OpenVibe, newest first. Each line is a commit from the OpenVibers repositories, linked to the change itself. When enough have gathered, or a large feature lands, they are written up as Patch notes on openvibe.blog. JSON: /api/v1/changelog.

2026-09-24

62e21fcThe shared update system and one account UI, on the OpenVibe Frame (openvibe-shared 1.11.0, openvibe/frame): the home shows what shipped, /updates is the shared log and the footer links it; the shared navbar handles sign in and out…OpenVibers · 07:55 UTC
ff9afd0CI calls the shared test workflow (Track Q): OpenVibe.Shared .github/workflows/test.yml@f5e7e73 (install, node --check over server/ and scripts/, npm test, openvibe-contracts-check) instead of a copy of those stepsOpenVibers · 07:55 UTC
7f418d2openvibe-publishing v0.2.2 (shares the openvibe-shared v1.5.1 copy instead of installing v1.0.0 alongside)OpenVibers · 02:33 UTC
46f1eebSECURITY.md: how to report a vulnerability ([email protected], 7-day reply, scope, supported versions)OpenVibers · 02:33 UTC

2026-09-23

62ea99copenvibe-shared v1.5.1, openvibe-contracts v0.33.0OpenVibers · 23:17 UTC
b0012e9openvibe-shared v1.5.0 (Track R release manifest), openvibe-contracts v0.32.0, openvibe-sdk v0.5.0OpenVibers · 22:27 UTC
ddbc60cCI: run the shared security workflow (gitleaks secret scan + dependency audit, Track Q)OpenVibers · 19:33 UTC
f314778Docs: STATUS.json and README match production (2026-09-23)OpenVibers · 18:32 UTC
9a55644Events webhook requires signature v2 (replay window); openvibe-sdk v0.4.0OpenVibers · 17:02 UTC
0eb925fApp and module tokens act only for their on_behalf_of person; sandbox tokens refusedOpenVibers · 16:37 UTC
3a25d07nginx: client address headers only from $remote_addr (realip). X-Forwarded-For was appended to and CF-Connecting-IP passed through from the client, so a request reaching the origin without Cloudflare (DNS-only host or the bare IP) chose…OpenVibers · 16:14 UTC
5cac5a8openvibe-publishing v0.2.1 (ReDoS fixes in ssr markdown)OpenVibers · 16:07 UTC
5267927openvibe-contracts v0.22.0 (trade manifest and capabilities released); contracts check is blockingOpenVibers · 03:25 UTC
4d40b52OpenVibe.Trade service (Wave 19): informational only per ADR-025 — instruments and aliases with deterministic resolution, immutable timestamped observations (no observation, no number), per-source freshness with stale-since, SEC filings…OpenVibers · 03:24 UTC
2a9f446README (purpose, owns, does not own, depends on, acceptance, launch rule, threat review), STATUS alpha W19, .env.example, deploy (systemd unit, nginx vhost on 4860), CI on Node 22.22.1 (contracts check continue-on-error until release)…OpenVibers · 03:24 UTC

2026-09-21

998e3c8Charter: OpenVibe.Trade as defined in the OpenVibe realignment plan (placeholder, no code yet)OpenVibers · 16:19 UTC