agent-swarm.devagent-swarm.dev
Releases

Release Notes — Week of September 14 to September 21, 2026

Across 84 commits, Swarm Extensions v1 adds customization controls alongside task-outcome coordination, routing explanations, and reliability improvements.

Highlights

  • Customize swarm behavior with Swarm Extensions v1. Managed hook bundles give teams a way to adapt swarm behavior, with management available through REST, MCP, and the dashboard. Lead agents can control the extension lifecycle, while operators can restrict and audit lead activation. This brings customization and its operational controls into the same system, making extension management accessible to both agents and the people running them. See #1441, #1544, and #1546.

  • Resume dependent work when task outcomes arrive. Deferred tasks can wake when a watched task settles and can wait for multiple task outcomes before continuing. A coordinating agent can defer its continuation around the work it depends on, making handoffs explicit for tasks such as combining several workers' results into one deliverable. See #1474 and #1510.

  • Understand why a worker received a task. Routing now records reasons and snapshots from the time of the decision. It also distinguishes declared routing from engine defaults. Operators investigating an unexpected assignment have evidence of how the selection happened, and agents can inspect whether routing was explicitly requested. See #1482 and #1507.

Improvements

  • Search and browser evidence. A new Serply integration and search skill expand agents' research tools. Full workers can also record agent-browser QA sessions, giving reviewers a recording to inspect alongside written findings. See #1515 and #1548.

  • More complete installations. Helm adds an HTTPS shortcut and local agent-fs storage options, and installs every Full Swarm profile by default. Compose includes all agent roles and persists generated identities. Automation templates are available on install, with zero-configuration seeded automations automatically enabled and a swarm update-check schedule added. See #1468, #1487, #1490, #1486, and #1501.

  • Configuration changes take effect more predictably. Embedding configuration now applies on reload without a restart. Saved swarm configuration takes precedence over deployment environment values at boot. Enabled production feature flags also become deployment defaults, so operators should review effective configuration when upgrading. See #1533, #1517, and #1536.

  • Faster dashboard input. The UI adds a notification bell and Slack Connect invitation prompts, supports sending on Enter, and accepts pasted files. Slack Work Object flexpane support is available as an opt-in capability. See #1508, #1500, and #1493.

  • Clearer agent handoffs. Task-specific tool preloading is opt-in. Lead delegation prompts default to automatic follow-ups, and blocked-waiting progress updates nudge agents toward deferring work. Seeded communication guidance favors concise replies and task outputs. See #1483, #1476, #1472, #1470, and #1489.

  • Session-scoped ACP credentials. ACP provider credentials use ephemeral session tokens, with token permissions enforced and revocation failures exposed. See #1417 and #1481.

Bug Fixes

  • Scheduler continuity. The scheduler claims each occurrence before dispatch. Waiters follow deferred and superseded work, and cancelled waits wake. Deferral also works with schema-validated output. Setup-blocked automation fires now produce alerts, and unused setup requirements no longer block legacy schedules. See #1522, #1485, #1526, #1469, #1475, and #1478.

  • Slack delivery and readability. Outcome delivery gains fallback and bounded retries. Deferred continuation outcomes can arrive without delegation; deferral messages retain their meaning and omit misleading ETAs. Buffered follow-ups include attachments, and Markdown links preserve attachment paths and labels. See #1535, #1531, #1509, #1539, #1492, and #1506.

  • Worker recovery and tool correctness. Credential reports retry so parked workers can recover, and Claude version probes are bounded before session creation. Valid MCP inputs work across harnesses, leading skill invocations are preserved, and leaked progress parameters are recovered before persistence. Scripts reject non-JSON API responses to avoid false success. See #1504, #1496, #1465, #1461, #1545, and #1523.

  • Self-hosted storage. Compose fixes the API data-volume mount, pins image versions, routes agent-fs previews through HTTPS, and pulls MinIO images from Quay. Agent-fs updates improve search reliability. See #1529, #1525, #1499, and #1516.

  • Dashboard and contact discovery. Read Slack Connect notifications stay read across page loads. Prompt attachments open in their file viewer, and attachment URLs preserve existing escapes. AgentMail archives inbound webhooks for more complete contact discovery. See #1527, #1503, #1514, and #1549.

  • Development defaults and profile validation. Development helpers remove weak credential defaults, and the docs site's Next.js dependency receives a security patch. New heartbeat tracked items now require an expiry. See #1512, #1479, and #1458.

On this page