github Arch-Network/arch-node v0.11.0
Release v0.11.0

3 hours ago

Release v0.11.0
Arch Network v0.11.0 (2026-09-28)
Compare: v0.10.0...v0.11.0

Date range: 2026-09-14 → 2026-09-28

Stats: 226 files changed, 8395 insertions(+), 3000 deletions(-)

Top impact areas: e2e-tests (45), roast (23), examples (21), validator (12), o11y (12), programs (10), tpu (7), db_utils (7), sdk (6), program (6), dkg (6), structs (5), resharing (5), db_core (5), bootnode (5), transaction_pool (4), runtime (4), crypto (4), testing_suite (3), ha (3)

Highlights

This release addresses multiple security findings from an external audit, focusing on ROAST protocol hardening, transaction replay prevention, and stake/token program safety. Key fixes include ROAST committee authorization enforcement, transaction identity binding to block execution, and commitment pool admission bounds to prevent resource exhaustion.

Validator infrastructure received significant improvements to resharing and DKG mechanisms, including validation of dealer verification shares, caching of dealing at resharing signer, and handling of leaving epoch membership. State synchronization for out-of-order messages was added to improve protocol resilience.

Runtime safety was enhanced with lamport sum overflow prevention, database read fault handling that aborts execution instead of committing receipts, and Bitcoin transaction replay height and txid invariant enforcement. Multiple loader and program-level fixes prevent double-setting of transaction-to-sign and enforce proper authority checks.

Observability improvements include new ROAST metrics, inclusion of tenant/network ID in database rows, and enhanced error handling across the o11y subsystem. Build performance was improved through dependency graph cleanup and feature unification.

Added

  • ROAST metrics tracking for coordinator and signer operations
  • Tenant/network ID inclusion in database rows for multi-tenant support
  • State synchronization mechanism for handling out-of-order ROAST messages
  • Commitment pool bounds and response admission limits (ROAST-05)
  • Ledger-level transaction replay check rejecting already-included txids
  • Validation of dealer verification shares during resharing
  • Caching of dealing at resharing signer for improved performance
  • Fixed signature range assignment for each Bitcoin transaction
  • Recent txids test coverage in db_utils
  • Pruning queue test coverage in db_utils

Changed

  • Refactored TPU to share block execution mechanics across coordinator paths
  • Removed unused dependencies across the entire workspace
  • Unified dependency features and cleaned up dependency graph for faster compilation
  • Updated vote instruction handling to support pubkey package updates
  • Improved error handling in o11y client and server components
  • Enhanced resharing leader and signer logic with better state management
  • Modified ROAST coordinator to use next epoch member count for polynomial degree
  • Refactored Bitcoin transaction broadcast and signature handling
  • Updated bootnode context and event handling for network pubkey management

Fixed

  • Reject already-included txids at ledger level to prevent transaction replay
  • Drop already-pruned heights from block GC queue to prevent processing errors
  • Return error instead of panicking on result/transaction count mismatch in submit_block_to_btc
  • Skip vote accounts with invalid node keys in vote_account_peers
  • Truncate stored log lines on UTF-8 character boundary to prevent corruption
  • Reject second SetTransactionToSign within one instruction in loader
  • Clamp logs and failure message when post-processing checks fail in TPU
  • Never overwrite cached Bitcoin tx bytes in SetTransactionToSign
  • Require authority to close system-owned token accounts
  • Clear close authority when transferring native account ownership
  • Require stake account signature to withdraw from Uninitialized stake
  • Prevent lamport sum overflow during transaction processing
  • Abort block execution on database read faults instead of committing invalid receipts
  • Enforce Bitcoin replay height and txid invariants across the system
  • Bind block transaction identities to execution (ROAST-03)
  • Enforce ROAST committee authorization (ROAST-02)
  • Remove sender from session_ids before marking malicious for wrong share count
  • Handle leaving epoch membership correctly in resharing protocol

Performance and Observability

  • Cut compilation time through dependency graph cleanup and feature unification
  • Added comprehensive ROAST metrics for monitoring protocol health
  • Included tenant/network ID in database rows for improved multi-tenant observability
  • Enhanced error messages in o11y subsystem with better context
  • Improved logging for ROAST coordinator and signer state transitions

RPC and API Changes

No breaking RPC changes in this release. SDK wire format remains compatible with v0.10.0.

Breaking Changes

None known.

Migration Guidance

No action required for node operators or SDK consumers. All changes are backward compatible at the RPC and wire protocol level. Operators should monitor the new ROAST metrics to gain visibility into consensus performance.

Documentation

  • Updated README.md with current project information
  • Enhanced API stability tests in program and sdk crates
  • Added RPC wire format compatibility tests

Contributors (v0.10.0 → v0.11.0)

Amine ElQaraoui, Rahul Subramaniyam

Don't miss a new arch-node release

NewReleases is sending notifications on new releases.