Devin CLI version 3000.2.17 shipped recently, bringing several key updates to users. The new version allows MCP servers to override the RFC 8707 OAuth resource parameter, which is necessary for identity providers like Microsoft Entra. Additionally, command hooks now receive more detailed information, including the agent’s session ID and a per-turn ID.
What shipped
- MCP servers can now override the OAuth
resourceparameter via a newoauthResourcefield or--oauth-resourceflag, helping users with specific identity providers. - Command hooks receive the agent’s session ID and a per-turn ID, enhancing their functionality.
- Command permission prompts are now more specific, scoping known program runners to the wrapped program.
- Sessions start faster, especially when multiple reconnect at once.
- The
devin migratecommand is available for migrating from legacy Cascade. - Hooks are discovered in ancestor directories, and duplicate skills are surfaced with location prefixes.
The notes list bug fixes only for the remaining changes, including improved support for deleting and renaming files, reduced token costs and latency in long sessions, and resolved issues with shell leakage and hook deduplication.
Sources
Devin CLI Changelog Fan coverage from Devin Central — not an official Cognition announcement. Devin is a trademark of Cognition.