Skip to content
Agents tracked: 258 Downloads (7d): 219M up 6.1% GitHub stars: 5.5M VS Code installs: 148M Releases (7d): 327 Agent status: 1 with issues Updated Oct 7, 2026

HolmesGPT changelog: what's new each month

Every stable HolmesGPT release summarised by month: the highlights, new features, improvements, fixes and anything you need to act on. 3 months covered; the current month updates daily.

September 2026

2 releases: 0.41.0 → 0.42.0

September brought security improvements, better skill management, and expanded integration capabilities. The month focused on reliability, authentication handling, and support for new diagnostic scenarios.

Highlights

  • Skills synced from git now refresh in real-time without requiring restarts.
  • JWT tokens are automatically refreshed before expiration to prevent authentication failures.
  • New configurable timeout options for New Relic integrations.
  • Added GPU node diagnostics for Kubernetes environments.
  • Multiple security patches applied to address CVEs.

New

  • Conversation links now included in system prompts for better context.
  • GPU node diagnostics support in kubernetes-remediation toolset.
  • Namespace-scoped RBAC helm value for confined Holmes installations.
  • MCP structured content support with optional parameter filtering.

Improved

  • Supabase API key retrieval now uses caching with local fallback for reliability.
  • JWT token refresh mechanism prevents expiration-related authentication issues.
  • Coralogix UI permalinks now work correctly in US2 and other regions.
  • Git-synced skills use first-class skillrepos for better management.

Fixed

  • Coralogix region-specific permalink generation for US2 and other regions.
  • Kubernetes-remediation file-read policy defaults hardened in Helm configuration.
  • MCP toolset test fixture no longer exposes project slugs.
  • Null optional parameters in MCP structured content now properly dropped.

August 2026

4 releases: 0.38.1 → 0.40.0

August brought security hardening, documentation expansion, and integration updates to HolmesGPT. The month focused on fixing vulnerabilities, removing experimental features, and improving cross-platform compatibility.

Action needed
  • Experimental Azure SQL toolset removed
  • MariaDB MCP integration removed; use native MariaDB datasource instead
  • Stale Sonnet 4.0/4.5 model recommendations removed from documentation

Highlights

  • Fixed multiple command injection vulnerabilities in Kubernetes and cloud toolsets
  • Added GitHub App support for multiple organizations in the GitHub MCP addon
  • Removed experimental Azure SQL toolset and consolidated MariaDB integration
  • Enhanced OAuth flow with RFC 8707 resource indicator support for MCP
  • Fixed Windows Docker build compatibility with manifest pinning

New

  • GitHub App credentials support for pulling skills
  • RFC 8707 resource indicator support in MCP OAuth flow
  • Atlassian Rovo MCP integration documentation
  • Cross-cluster tools documentation
  • Bitbucket instructions for loading custom skills
  • LLM eval for AKS --query command injection detection

Improved

  • kubectl-run toolset hardened to run commands without a host shell
  • Tool memory limit logging when OOM killed
  • GitHub MCP addon now supports GitHub App installed on multiple organizations
  • Docker build manifest handling for Windows clones

Fixed

  • Command injection vulnerability in Kubernetes toolset
  • Command injection vulnerabilities in slab, kubevela, inspektorgadget, and aks toolsets
  • SSRF vulnerability in internet/fetchwebpage and connectivitycheck toolsets
  • Operator image startup by removing holmes package dependency
  • Behavior-guard permissions evaluation setup

July 2026

4 releases: 0.35.0 → 0.38.0

July brought performance improvements, enhanced security patching, and expanded integration capabilities to HolmesGPT. The month focused on operational visibility, reducing token usage, and strengthening authentication options.

Action needed
  • Removed KRR resource recommendation features.

Highlights

  • Reduced system prompt and tool description sizes by 50-60%, lowering token consumption.
  • Added remote tool call approval workflows for better operational control.
  • Implemented new /api/info endpoint for operational visibility and monitoring.
  • Extended support for Langfuse in OpenTelemetry tracing and pre-acquired Azure tokens.
  • Made conversation-worker slot exhaustion visible to help diagnose capacity issues.

New

  • JSON logging format support for log scrapers.
  • Langfuse integration with OpenTelemetry tracing.
  • /api/info endpoint for operational visibility.
  • Remote tool call approval workflows.
  • Support for pre-acquired AZUREADTOKEN for Entra ID authentication.
  • Kubernetes MCP OAuth information added to data sources.
  • Multi-instance-capable data source marking in catalog.
  • Slack channel-history context recovery evaluations.

Improved

  • Reduced system prompt and tool description sizes by approximately 50-60% to lower token usage.
  • Switched Holmes image to Alpine base for smaller container footprint.
  • Bound conversation and tool-call claiming to worker capacity.
  • GitHub MCP PAT path now uses native HTTP mode.
  • Consolidated Datadog and Elasticsearch/OpenSearch data source catalog cards.
  • Made conversation-worker slot exhaustion visible and bounded reconnect sign-in.
  • Clarified namespace requirements for Holmes service account setup.
  • Updated requestsource field documentation with taxonomy cross-references.

Fixed

  • Security patch: bumped litellm to 1.89.0 to address CVE-2026-49468.
  • Fixed Holmes operator health checks when using VertexAI/Gemini.
  • Fixed wrong icon display for SQL Server and other database subtypes.
  • Fixed log filter leaks in parallel test execution.
  • Corrected tampered-signature test validation.

Summaries are written automatically from the official release notes (full changelog ↗); check the original notes before relying on a detail. HolmesGPT: pricing, features and alternatives · All changelogs