Every seat in a room is sent a brief: the standing instructions about how to lead, how to review, how to treat a fetched page or a tool's description, when to ask. The Prompt Editor shows what is yours and keeps the shipped brief out of the editor on purpose, so this page is where the shipped brief is accounted for. The version in force is 2026-09-17.2; the Mac stamps each turn's receipt with it and with a hash of the whole assembled prompt, so an audit can prove two runs saw the same instructions without exposing anyone's prompt.
Changes
| Version | Date | What changed |
|---|---|---|
| 2026-09-17.2 | 2026-09-17 | A slide deck is made with the make_deck tool, which draws the .pptx and a preview of it; the brief no longer points a lead at python-pptx and a script. |
| 2026-09-17.1 | 2026-09-17 | The warden's question and the guardrails' refusal sentence are fixed texts; the lead is told when a fetched page was read through its own pass rather than handed over whole. |
| 2026-09-16.2 | 2026-09-16 | The lead is told once that an MCP tool's name and description are the server's words, data about the tool and never instructions (row 146). |
| 2026-09-16.1 | 2026-09-16 | A folder's instruction files are described as the project's conventions, allowed by the person for the folder, and never authority over the person's own instructions or the room's rules (row 169). |
| before | 2026-09-15 | Changes before the changelog began are in the repository's history under desktop/lib/orchestrator.js and are not listed here. |
What the hash covers
The system text a seat received on a turn: the brief, the person's own rules for that role, the project's instruction files it was allowed to read, the memory block, and the notes the room added for that run. Not the conversation. Two turns with the same hash saw the same instructions.