v0.18.1-internal.1
First internal team release. Internal Windows and WSL2/Linux evaluation release, based on published v0.18.1.
This build adds internal-release readiness fixes on top of v0.18.1:
- Release packaging now derives the release-notes filename from the
workspace version (root
Cargo.toml) instead of a hardcoded path, so the packaged notes always match the shipped binary. - The
server upgradecommand family now reports failures with non-zero exit codes;ayx server upgrade applyis clearly marked simulation-only in its output. - Preview scaffolds under
ayx tools workspace *are labeled as preview. - Secret redaction in error output is hardened.
- The temporary MongoDB password file used by
ayx serverMongoDB subcommands now gets Windows ACL hardening. - The global
--no-inputflag is now enforced for all confirmation prompts. ayx onboard --output jsonnow emits clean JSON on stdout.ayx one workspace adminsnow answers correctly: it calls the dedicatedGET /v4/workspaces/{workspaceId}/adminsendpoint instead of the people list (which silently ignores the admin filter). Live-verified.ayx telemetry jobs running|history|topno longer fail with a parse error against the live job library (numeric ids are now tolerated). Live-verified.- Envelope redaction no longer wipes credential metadata keys
(
access_token_present,token_endpoint_url, doctor claims summaries), soayx one doctor authdiagnostics are readable again — while secret values themselves are redacted more aggressively than before.
Demo-relevant surface
Section titled “Demo-relevant surface”ayx one workflows, ayx one connections, ayx one scheduling,
ayx one job-groups, ayx one workspace, and ayx telemetry jobs have
been live-validated against a real Alteryx One workspace: the env-gated
live smoke suite passes 75/75 with zero skips on the reference tenant.
First-time setup
Section titled “First-time setup”-
Extract the platform artifact, put the included
ayx/ayx.exeon your PATH, and runayx onboard. -
Paste the Alteryx One workspace URL when prompted.
-
Choose Log in now.
-
Enter the emailed one-time passcode and workspace password. After a successful interactive login, accept the default
Save this workspace password securely for future logins? [Y/n]prompt if this profile should reuse the password on future logins. -
Verify the connection:
ayx one auth statusayx one workspace current
Credentials use the operating-system secure store by default. Plaintext profile storage is an explicit, affirmative fallback and should not be used for ordinary internal workspaces.
Recovery
Section titled “Recovery”Do not automatically retry a login when the CLI says an OTP send or PAT mint may have committed. Preserve the profile and inspect the redacted error. If a fresh login is required, use the independently characterized Legacy flow:
ayx one login --auth-flow legacyDo not send OTPs, passwords, tokens, profile files, or keyring exports with a support report. Include the version, operating system, command, rollout selection, and redacted error text instead.
Platform scope
Section titled “Platform scope”This internal release is a target-platform evaluation build for native Windows and WSL2/Linux. Apple/macOS validation and distribution are deferred.