The Devin CLI shipped between February 27 and March 3 with a security-focused update. The latest version, v3000.3.27, includes a change that enhances the security of the edit, write, apply_patch, and notebook_edit tools.
What shipped
The notes list a single key fix: the edit, write, apply_patch, and notebook_edit tools now refuse to write through a symlink. This prevents an approved edit from being redirected to an unexpected location, improving the overall security of the CLI.
Sources
- Devin CLI Changelog *Fan coverage from Devin Central — not an official Cognition announcement. Devin is a trademark of Cognition.