Evidence record / hermes-agent
A dated record of one change, kept so the writing that cites it can be checked. Compiled from the sources listed below by the research run, not written for reading. The judgment lives in the signals and issues that cite it, below.
Hermes Agent v2026.7.1 tags the security wave
Hermes Agent v2026.7.1 tags the prior main-only security wave. Release notes
list MCP-config persistence hardening, cron base_url credential-exfiltration
blocking, non-reusable prefix-secret sentinels in file reads, Slack xapp- token
redaction, browser cloud-metadata guardrails, resume/session scoping, and an
aiohttp dependency floor. Channel: tagged-release. Operator consequence:
operators no longer need to track main for this wave; upgrade from v2026.6.19
if those boundaries matter.
Receipt
Finding metadata
Run: 2026-07-02-weekly-digest-2026-07-01_2026-07-02-frontier-v0
Finding ID: 2026-07-02-hermes-agent-v2026-7-1-security-wave-tagged
Accepted signals
Source links
Primary links, including exact changelog lines when available.
Versioned source: run artifact