Changelog
- b346ac0 Add support for trusted_domains to forward proxy mode (#297)
- 57abaa4 Improve scanner coverage for encoded payloads and cross-transport DLP (#315)
- 2dcb48f chore(deps): bump requests (#300)
- b261e8e ci: bump the ci-actions group across 1 directory with 6 updates (#331)
- 872bdf7 ci: fix deprecated goreleaser format field (formats plural) (#332)
- 0b1257a deps: bump the go-deps group with 3 updates (#326)
- 8841118 feat: A2A protocol scanning foundation — types, field walker, detection (#316)
- 40bcc17 feat: MCP binary integrity and denial-of-wallet detection (#310)
- a561070 feat: MCP tool provenance and profile-then-lock baseline (#311)
- 2dfaf58 feat: add SecureIQLab Docker Compose test harness (#318)
- 20ea349 feat: add exempt_domains to response scanning (#305)
- f8a41e5 feat: add pipelock assess command for signed security assessments (#296)
- 789079b feat: add session admin API for adaptive enforcement recovery (#308)
- 71a2d51 feat: canary token detection and simulate expansion (#313)
- 9794e35 feat: compliance evidence mappings and trust attestation (#314)
- b418d3c feat: flight recorder and agent bill of materials (#309)
- fb2e4ce feat: implement MCP redirect handlers (fetch-proxy + quarantine-write) (#307)
- 4e3d355 feat: policy capture and replay engine (#319)
- fe1384a feat: session manifest and signed decision records (#312)
- defc715 fix(assess): HTML report with visual hierarchy and remediation (#306)
- e268702 fix: add best_effort mode for file sentry in MCP proxy (#292)
- 68cac04 fix: autonomous block_all recovery for adaptive enforcement (#304)
- 04dcfec fix: classify scanner results to prevent adaptive enforcement death spiral (#295)
- 41ef558 fix: scan redirect handler output through DLP pipeline (#323)
- 63c6a2f fix: structured exit codes and subprocess error handling (#320)
- 04589d8 fix: v2.1.0 RC test findings and feature wiring (#328)
- 2f9784c fix: v2.1.0 polish — audit logging, transport tests, config validation (#321)
- da95706 refactor: extract shared escalation recording helper (#290)
- cb2e784 refactor: introduce MCPProxyOpts to replace long MCP proxy parameter lists (#294)
- 76ee281 refactor: split 91-file CLI god package into 10 subpackages (#303)
- baa13bf refactor: split config.Validate, DRY audit logger, coverage boost (#322)
- 96609f6 security: redact secrets and server names from assess evidence (#301)