Skip to content

chore(release): bastion 0.2.5 - #8

Merged
Ch4s3 merged 1 commit into
mainfrom
claude/release-0.2.5
Aug 11, 2026
Merged

Ch4s3 merged 1 commit into
mainfrom
claude/release-0.2.5

Conversation

@Ch4s3

@Ch4s3 Ch4s3 commented Aug 11, 2026

Copy link
Copy Markdown
Contributor

Ships #7.

Why a release, not just the merge

Same reason as 0.2.4: forgepm resolves bastion from the registry (bastion = "0.2.4"), so its CI typechecks the published 0.2.4 sources and fails on exactly the errors #7 fixed:

bastion/lib/security/crypto.march:77,258,332   List(Int) / String mismatch
bastion/lib/security/hkdf.march:37,37,49       expected String but got List(...)

A git dep is not an alternative here — this repo is private, and forgepm's CI clones git deps anonymously. That was tried and rejected with failed to clone ... exit 128.

What 0.2.5 contains

  • Public Bytes API instead of the constructor, for march#247 (array-backed Bytes)
  • Capability declarations march main now enforces in three separate places — typecheck, the codegen ceiling check, and import propagation
  • Drops needs IO.File, IO.Dir, which are not capabilities in march's lattice and never granted anything

One line: version = "0.2.4" → "0.2.5".

Verification

369 tests, 0 failures against march main (cbb8346e — the revision CI resolves).

Ships #7: the public-Bytes-API migration for march#247 (array-backed Bytes),
and the capability declarations march main now enforces at typecheck, codegen
ceiling, and import propagation.

Needed as a RELEASE, not just a merge — same reason as 0.2.4: forgepm resolves
bastion from the registry (`bastion = "0.2.4"`), so its CI still typechecks the
published 0.2.4 sources and fails on exactly the errors #7 fixed. A git dep is
not an alternative here: this repo is private and forgepm's CI clones git deps
anonymously.

Verified against march main (cbb8346e): 369 tests, 0 failures.
@Ch4s3
Ch4s3 merged commit fa937b5 into main Aug 11, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant