From the grok-build-updates department:
The "hardened tool growing" release.
TL;DR β 1.0.41 β 1.0.45 with Remote Control tunnel hardening, permission-rules crate, MCP config merge, workspace daemon owns folder sandbox, end-to-end test builder, Agent Host daemon startup, session leader message fix, parallel tool lanes, Windows clipboard serialization, context-window step in model picker, and 100+ other changes.
So much meat, where's the fat?
π Top changes
β’ Remote Control tunnel claim kept through reconnects; pushed once per failed daemon start
β’ Permission-rules crate: types, parser, compiled policy, shell-parsing modules moved
β’ MCP server config merged from multiple sources
β’ Workspace daemon owns per-folder sandbox (proxy lifecycle, violation reporting, control)
β’ End-to-end test builder with headless/terminal modes, shared fixtures, model scripting
π§ What did they fix?
β’ Serialize clipboard operations on Windows
β’ Stop session leader from dropping client messages (with leader-mode e2e coverage)
β’ Remove compact instructions from Grok Build
β’ Remove leftover unicode tables of contents and empty terminal-sequence filter test
β’ Clean up terminal helpers and leftover table-of-contents banners
β’ Retarget agent keep-rules to current source
β’ Delete month-old doc dumps and retarget living docs
β’ Pin theme while asserting slash-command color
β’ Re-copy agent skill definitions, take names from full path, honor disable-user-invocation
β New Behavior Alert
β’ Push Remote Control status once per failed daemon start; release tunnel claim in one place
β’ Make connection toast visible to rest of crate, matching session follow
β’ Apply queue actions to prompts held behind another device's turn
β’ Move permission rule loader into its own crate
β’ Keep Remote Control tunnel claim through reconnects; pick up record saved elsewhere
β’ Pre-stop lifecycle broker with handler registry
β’ Take privacy mode from daemon's auth update reply
β’ Keep another device's turn and its question card together
β’ Add end-to-end test builder with headless/terminal modes, shared fixtures, model scripting
β’ Merge MCP server config from multiple sources
β’ Send compact transcript for session recap on grok-4.5 at low effort
β’ Send only last turn for turn summary on grok-4.5 at low effort
β’ Record unpair requests in mock Remote Control relay
β’ Send images to a session on another computer
β’ Move remote settings cache into cloud config
β’ Answer questions from another device's turn on a remote session
β’ Tidy Remote Control layout and tests
β’ Leave oversized logs out of per-turn session archive
β’ Send session reasoning effort on compaction requests
β’ Publish every login change on a watch
β’ Show per-model notice banner above the prompt
β’ Re-expose subagent type on spawn so plugin and user agent types can be selected
β’ Answer suggest requests so Tab completes in shell mode on daemon route
β’ Let workspace daemon own per-folder sandbox (proxy lifecycle, violation reporting, sandbox control)
β’ Move approved device to paired list immediately
β’ Hold network requests and ask before allowing egress, with per-call credentials
β’ Render MCP result's structured content once when text block already carries it
β’ Sync managed cloud config
β’ Close symlink-following sandbox paths; make Always-reject stick
β’ Re-read HTTP MCP bearer token from file on every request
β’ Mark Agent Host gaps on each e2e test; add status command
β’ Let one Grok window per computer run Remote Control tunnel
β’ Move folder trust decision into shared config types
β’ Classify managed policy trust, including tamper
β’ Color Ask mode composer flag and border green
β’ Move agent host inline tests into sibling test files
β’ Carry model choice as one type
β’ Show "Waiting on N subagent(s)" while parent turn blocked
β’ Stub project-directory classifier in upload tests
β’ Render Agent Host monitor rows as Poll
β’ Start Agent Host daemon with host server when capability enabled
β’ Return MCP server details for settings reads
β’ Hold a send while another device's turn runs on remote session
β’ Stop pushing shell deny entries to Agent Host daemon
β’ Answer headless questions the same way the shell does
β’ Run sandbox tests only where sandbox applies; say so when skipped
β’ Tag another device's turn updates with its prompt id
β’ Deliver sandbox violation cards through permission hook; one replay of allowed result
β’ Show another device's turn as running on remote session
β’ Tell session refused for missing key to reopen after pairing
β’ Recover batch memory consolidation from cleanup and plan conflicts; keep search pages from repeating hits
β’ Wait out busy fork parent instead of declining fork
β’ Run parallel tool calls in per-path lanes keyed by server-advertised path
β’ Cut per-user terminal VM start latency with faster mount polling, batched tokens, parallel start mounts
β’ Chain context-window step between model and effort in model picker
β’ Import Claude settings
β’ Parse requirements.toml sections into typed settings
β’ Match relative permission rules against physical working directory as well as lexical path
β’ Cancel every held prompt when closed tab cancels its session
β’ Keep refused send-now prompt as Esc target
β’ Ignore tunnel stop that was never requested
β’ Name computer when it refuses prompt as invalid
β’ Word remote prompt refusal with no message by status code
β’ Word blank prompt refusal without blaming target
β’ Word empty remote prompt refusal for user
β’ Name computer to update when older Grok refuses images
β
-2026-09-23 f0e3be1100ef5252488e3be8bb0e91cf68d8c305
+2026-09-29 2bdd1d6a6369de0e8c68132ea4539e9abd9e14a8
PKGNAME: 1.0.41 β 1.0.45
files: 991 changed; +129569 / β27951
NOTE: Assisted by AI on the dig; human editor engaged.