TL;DR
- On May 28, 2026 (UTC) / May 31 (Beijing time), OpenClaw released v2026.5.28 stable version (GitHub Release v2026.5.28 + SourceForge 5/30 uploaded OpenClaw-2026.5.28.dmg 40.6 MB / .zip 54.8 MB / source package 45.0 MB + jdon.com 5/28 15:09 first report), the last “stable version” milestone of 2026 H1, more than 2 months after v2026.3.23 emergency fix chain (7/20 article deep-dived).
- Tencent Cloud Developer Community 8/8 13:08 systematic review (cloud.tencent.com/developer/article/2680258, 2260 chars): This release covers Highlights (8 major categories) / Changes (13 items) / Fixes (3 major categories), spanning 11 directions: runtime layer, channel delivery, mobile, plugins, browser, automation, Provider, document processing, CLI, auth, release verification.
- 7 Highlights upgrades: ① Agent + Codex runtime recovery hardening (subagent cwd/workspace separation + hook context prompt-local + session lock timeout release + Codex app-server fault tolerance); ② 7 channel security hardening (Matrix / iMessage / Slack / Discord / WhatsApp / Telegram / Microsoft Teams); ③ Mobile + WebChat experience refresh (iOS Pro UI + hosted push relay + realtime Talk tab + Gateway chat transport + onboarding + WebChat reconnect); ④ Stricter browser / channel / automation input validation (fail fast + preserve intended delivery context); ⑤ Provider expansion (Claude Opus 4.8 + Fal Krea image schema + NVIDIA featured models + MiniMax streaming music + encrypted PDF + voice model catalogs); ⑥ CLI / auth / doctor fail faster (malformed numeric/version reject directly + OAuth token lifetime limit + agent auth health labels clear); ⑦ Plugin + Gateway hot path dedup (install records + config JSON + tool search catalogs + session stores cache reuse).
- 5/28 jdon.com reveals 3 key performance metrics (jdon.com 5/28 15:09): Cold start +14.5% / Hot turn +16.0% / Install package -52.8% (371 → 300 MB) — the first time in OpenClaw history to simultaneously optimize three dimensions: “startup speed + runtime performance + install size”.
- 13 Changes new capabilities (Tencent Cloud 8/8 review): Status displays active subagent details + Diffs default language pack split + ClawHub plugin display name / skill verification / trust surface + iOS development app full refresh + Codex computer-use setup + ClawPDF + encrypted PDF + GitHub Copilot agent runtime + Codex Supervisor plugin package + GitHub Copilot/Tokenjuice plugin externalize + Workboard Agent coordination tools + Discord display commentary in progress drafts + Plugin SDK reply payload sending hook + Policy 3-category checks.
- 3 Fixes stability categories (Tencent Cloud 8/8 review): ① Agents deletion + offline scenario compatibility (optional agents delete Gateway probe auth fail → fallback local config pruning); ② Permission + policy fixes (phone-control mutation authorization tightened + directive persistence authorization policy clarified); ③ Agents + Codex stability (15+ items, subagent cwd/workspace isolation + session lock timeout release + exec abort listeners cleanup + assistant delta streaming + compaction failure recovery + shared app-server state preservation + native hook relay alive + bridge files cleanup + Claude live tool progress preservation).
- 5-step enterprise upgrade path: ① Version evaluation (ROI from v2026.3.x / v2026.4.x to v2026.5.28); ② Backup + verify (openclaw backup create + openclaw backup verify + SourceForge 233.4 MB 7-package set); ③ Gray release (10% → 50% → 100%); ④ Monitor key metrics (cold start time / channel delivery success rate / Codex app-server restart count); ⑤ Rollback plan (v2026.5.28 ↔ v2026.6.3-alpha.1 dual-track backup).
- 6 Defense Checklists: ① Must backup verify before upgrade (prevent upgrade data-loss rejection trigger); ② Codex app-server isolated monitoring (avoid shared runtime being dragged down); ③ Channel whitelist + rate limiting (prevent session event queue self-wait); ④ Plugin SDK boundary audit (reply payload sending hook must verify channel ownership); ⑤ Policy check CI/CD-ized (policy comparison + ingress-channel conformance + sandbox-posture conformance); ⑥ Release logs + artifact retention (failing lanes must produce proof).
- 4 2026 H2 trend predictions: ① Stable release rhythm stable (v2026.5.28 → v2026.6.x → v2026.7.x one stable version every 6 weeks); ② Provider boundary expansion continues (Claude Opus 4.8 → 4.9 / Fal Krea Pro / NVIDIA NIM / MiniMax Lyria / encrypted PDF full coverage); ③ Channel security enters “protocol layer” (Hosted Push Relay turns push into relay layer, Realtime Talk turns voice into protocol layer); ④ Plugin SDK ecosystem-ization (reply payload hook + flatten package types + Plugin SDK package management npm-ized).
1. Today’s Headline: v2026.5.28 Stable Version 8/8 Systematic Review
On August 8, 2026 (Friday), Tencent Cloud Developer Community published a 2260-char systematic review article deep-diving OpenClaw v2026.5.28 stable version (released 2026/5/28 UTC / 5/31 Beijing time).
This is the last “stable version” milestone of 2026 H1, more than 2 months after v2026.3.23 emergency fix chain (7/20 article deep-dived).
1.1 8/8 Review’s “3 Major Categories / 11 Directions” Framework
Tencent Cloud Developer Community (cloud.tencent.com 8/8 13:08) breaks v2026.5.28 into Highlights / Changes / Fixes three major categories, spanning runtime layer, channel delivery, mobile, plugins, browser, automation, Provider, document processing, CLI, auth, release verification 11 directions.
| Category | Sub-direction count | Key upgrades |
|---|---|---|
| Highlights | 7 | Agent/Codex runtime recovery / 7 channel security / mobile refresh / input validation / Provider expansion / CLI failure readability / hot path optimization |
| Changes | 13 | Status subagent details / Diffs language pack / ClawHub trust surface / iOS dev app / ClawPDF / Codex Supervisor / Plugin SDK / Policy 3-category checks |
| Fixes | 3 | Agents deletion compatibility / permission tightening / Agents + Codex 15+ stability |
1.2 5/28 jdon.com First Report “3 Key Performance Metrics”
jdon.com 5/28 15:09 (first report) reveals 3 key performance metrics comparing v2026.5.28 with v2026.5.27:
- Cold start speed +14.5% (Gateway startup + plugin scan)
- Hot turn speed +16.0% (request path + cache reuse)
- Fresh install size -52.8% (371 MB → 300 MB)
This is the first time in OpenClaw history to simultaneously optimize three dimensions: “startup speed + runtime performance + install size”.
1.3 SourceForge 5/30 Uploaded 7-Package Set
SourceForge (sourceforge.net/projects/openclaw.mirror/files/v2026.5.28/) shows 2026/5/30 uploaded 7 files:
| Filename | Size | Downloads | Purpose |
|---|---|---|---|
| OpenClaw-2026.5.28.dmg | 40.6 MB | 4 | macOS installer |
| OpenClaw-2026.5.28.dSYM.zip | 38.5 MB | 8 | macOS debug symbols |
| OpenClaw-2026.5.28.zip | 54.8 MB | 11 | Windows / Linux universal |
| openclaw-2026.5.28-dependency-evidence.zip | 60.4 KB | 2 | Dependency traceability |
| openclaw 2026.5.28 source code.tar.gz | 45.0 MB | 0 | Source code |
| openclaw 2026.5.28 source code.zip | 54.5 MB | 0 | Source code |
| README.md | 15.6 KB | 1 | Install instructions |
Total 233.4 MB / 26 downloads.
2. 7 Highlights Deep Dive
2.1 Agent + Codex Runtime Recovery Hardening (Most Core Upgrade)
Tencent Cloud 8/8 review ranks this as “most core direction”, involving 6 specific improvements:
- subagent continues to keep cwd and workspace separation (prevent boundary crossing)
- hook context keeps prompt-local (no longer diffuses into ranges that shouldn’t be entered)
- session locks release normally on timeout abort (prevent deadlock)
- runtime cleanup doesn’t mistakenly delete still-alive OpenClaw locks (prevent lock leak)
- avoid using stale restart continuation (prevent stale state)
- Codex app-server / helper failure doesn’t drag down shared runtime (prevent avalanche)
Business value: In complex Agent orchestration, runtime interruption recovery, timeout termination, shared state restart scenarios, OpenClaw is now more stable.
2.2 7 Channel Security Hardening
Involves Matrix / iMessage / Slack / Discord / WhatsApp / Telegram / Microsoft Teams 7 channels, specific improvements:
- outbound plugin hooks channel delivery safer
- Matrix room id handling more reliable
- iMessage reactions / approvals handling steadier
- Slack final replies retention mechanism safer
- Discord recovery tool warnings handling more reasonable
- runtime-config message actions session identity parsing more accurate
- WhatsApp profile auth roots keep correct
- Telegram polling steadier
- Microsoft Teams service URL trust checks stricter
Business value: Message delivery context, session identity, platform-side interaction and security boundary are more consistent, reducing cross-session, mis-context, channel mis-delivery.
2.3 Mobile + WebChat Experience Refresh
Involves iOS Pro UI + hosted push relay + realtime Talk tab + Gateway chat transport + onboarding + Talk permissions + WebChat reconnect delivery + session picker 8 sub-items.
Key change: Mobile and chat end are no longer minor tweaks, but state preservation optimization for key scenarios: “reconnect” / “empty search” / “session switch” / “real-time call playback” / “permission” / “gateway session linkage”.
2.4 Stricter Browser / Channel / Automation Input Validation
Involves Browser tool timeouts + viewport and tab indices + Gateway ports + cron retry handling + Discord component ids + schema array refs + Telegram callback pages + channel progress callbacks 8 sub-items.
Core idea: “Fail fast” + preserve intended delivery context.
Business value: Can significantly reduce hidden problems of “looks like executed, but context has actually shifted”.
2.5 Provider / Media / Document Support Further Expansion
6 new capabilities:
- Claude Opus 4.8 (jdon.com 5/28: “Already in model catalog, can use Anthropic authentication and routing to directly call”)
- Fal Krea image schema (select fal in image_generate workflow)
- NVIDIA featured models
- MiniMax streaming music responses
- encrypted PDF extraction
- voice model catalogs
2.6 CLI / Auth / Doctor Fail Faster + Recovery Clearer
Involves malformed numeric/version options reject directly + workspace dotenv provider credentials ignored + heartbeat defaults tightened + OAuth/token lifetimes limited + local service startup requests limited + agent auth health labels clearer + legacy api_key auth profiles auto-migrated + restart guidance executable 8 sub-items.
Business value: Configuration error, parameter error, auth failure, local service abnormal startup scenarios, users can know where the problem is faster.
2.7 Plugin + Gateway Hot Path Dedup
Involves install records + config JSON parsing + tool search catalogs + session stores + manifest model rows + auto-enabled plugin config + browser tokens + viewer assets + release-split external plugin packages 9 sub-items.
Business value: While maintaining cache correctness, reduce duplicate work — both performance optimization and stability optimization.
3. 13 Changes New Capabilities
3.1 Status Output Supports Active Subagent Details
Status can now directly display detailed information of active subagents. For multi-Agent task orchestration, debugging current execution chain, observing work status more intuitive.
3.2 Diffs Default Language Pack Split
Diffs part made two adjustments: ① split the default language pack; ② expand default Diffs language coverage. While maintaining host floor aligned.
3.3 ClawHub Plugin Display Name + Skill Verification + Trust Surface
ClawHub adds plugin display names + skill verification + trust surfaces, making plugins more complete in display, verification, trust expression.
3.4 iOS Development App Full Refresh
iOS part update very concentrated, involving Pro Command + Chat + Agents + Settings + hosted push relay defaults + realtime Talk playback + accessing gateway sessions + diagnostics + chat + realtime Talk 10 sub-items.
3.5 Codex computer-use setup + Multiple Docs Improvements
Docs additions: Codex computer-use setup + paste-token stdin auth setup + macOS gateway sleep troubleshooting + native Codex hook relay recovery + container model auth + install deployment cards + device-token admin gating + CLI setup flow compatibility + Notte cloud browser CDP setup + backport targets 10 sub-items.
3.6 ClawPDF + encrypted PDF + MCP Structured Content
3 PDF and tools capabilities: use ClawPDF for PDF extraction + support encrypted PDF extraction + surface MCP structured content in agent tool results.
3.7 Providers 5-Category Expansion
Claude Opus 4.8 + Fal Krea image model schemas + NVIDIA featured model catalogs + MiniMax streaming music responses + provider-backed voice model catalogs.
3.8 Codex + GitHub Copilot Capability Supplement
GitHub Copilot agent runtime + Codex Supervisor plugin package — incorporating related agent runtime and supervisory workflows further into ecosystem.
3.9 Plugins externalize (On-demand Install)
GitHub Copilot + Tokenjuice two plugins externalized as official install-on-demand plugins, with npm and ClawHub publish metadata.
3.10 Workboard Agent Coordination Tools
Workboard adds tracking active agent work + handing off active agent work — corresponding to Agent collaboration and relay task processing capability enhancement.
3.11 Discord Display commentary in progress drafts
Discord can now display commentary in progress drafts — in live Discord runs scenarios, can see in-progress context earlier.
3.12 Plugin SDK Enhancement
reply payload sending hook (for plugins that need to send channel-owned replies) + flatten package types for SDK declarations.
3.13 Policy 3-Category Checks
policy comparison + ingress-channel conformance + sandbox-posture conformance checks — strategy consistency and sandbox posture verification continues to strengthen.
4. 3 Fixes Stability Categories
4.1 Agents Deletion + Offline Scenario Compatibility
When optional agents delete Gateway probe fails to authenticate, now falls back to local config pruning. This way, even offline installs can delete agents, and won’t mistakenly delete shared workspaces.
4.2 Permission + Policy Fixes
tighten phone-control mutation authorization + clarify directive persistence authorization policy — reduce ambiguity in high-permission operations.
4.3 Agents + Codex 15+ Stability Fixes (This Release’s Largest Fix Workload)
| Fix item | Business value |
|---|---|
| keep spawned agent cwd/workspace state separated | subagent isolation |
| forward ACP spawn attachments | ACP spawn attachment passing |
| keep hook context prompt-local | hook not diffusing |
| release session locks on timeout abort | prevent deadlock |
| runtime teardown releases locks, cleanup doesn’t delete live locks | prevent lock leak |
| avoid session event queue self-wait | queue self-waiting |
| clean up exec abort listeners | abort listener cleanup |
| stream assistant deltas incrementally | assistant delta streaming |
| recover raw missing-thread compaction failures | compaction failure recovery |
| preserve rotated compaction session identity | rotation session identity preservation |
| keep compaction-timeout snapshots continuable | compaction timeout continuable |
| preserve shared app-server state across startup / helper failures | app-server fault tolerance |
| keep native hook relay alive across restarts | hook relay alive |
| prune stale bridge files | bridge files cleanup |
| close native hook relay replacement races | hook relay race fix |
| keep Claude live tool progress visible for watchdog recovery | watchdog visibility |
| suppress abandoned requester completion handoff | orphan request suppression |
Total 17 stability fixes, the largest fix workload in v2026.5.28.
5. 5-Step Enterprise Upgrade Path
5.1 Version Evaluation
ROI from v2026.3.x / v2026.4.x to v2026.5.28:
- Cold start +14.5% / Hot turn +16.0% / Install package -52.8% (jdon.com 5/28 verification)
- 17 Agents + Codex stability fixes (continuation of v2026.3.23 emergency fix chain mentioned in 7/20 article)
- 7 channel security hardening (reduce cross-session + mis-delivery risk)
- 5 Provider expansions (Claude Opus 4.8 + Fal Krea + NVIDIA + MiniMax streaming music + encrypted PDF)
5.2 Backup + Verify
# 1. Backup current config + sessions
openclaw backup create
# 2. Verify backup integrity
openclaw backup verify
# 3. Download v2026.5.28 installer (SourceForge 7-package set)
# https://sourceforge.net/projects/openclaw.mirror/files/v2026.5.28/
# - OpenClaw-2026.5.28.dmg (macOS)
# - OpenClaw-2026.5.28.zip (Windows / Linux)
5.3 Gray Release
Day 1: 10% Gateway upgrade (internal test)
Day 3: 50% Gateway upgrade (gray users)
Day 7: 100% Gateway upgrade (full)
Key monitoring: cold start time, Gateway startup success rate, Codex app-server restart count, channel delivery success rate.
5.4 Monitor Key Metrics
| Metric | Target | Monitoring method |
|---|---|---|
| Cold start time | < 2s | Gateway metrics |
| Channel delivery success rate | ≥ 99.5% | channel logs |
| Codex app-server restart count | ≤ 1/day | runtime metrics |
| Agent session lock timeout rate | ≤ 0.1% | session store |
| Plugin SDK hook call success rate | ≥ 99% | plugin telemetry |
5.5 Rollback Plan
Keep v2026.5.28 ↔ v2026.6.3-alpha.1 dual-track backup. If during 7-day gray release appears:
- Cold start time instead slows → immediate rollback v2026.6.3-alpha.1
- Codex app-server restart count > 5/day → rollback
- Channel delivery success rate < 99% → rollback
6. 6 Defense Checklists
- Must backup verify before upgrade: v2026.5.28 introduces schema-upgrade data-loss rejection (#110453 / #113367 / #113453 / #113473 / #113580 mentioned in 7/2 GitHub Releases), backup integrity must be verified before upgrade.
- Codex app-server isolated monitoring: Avoid shared runtime being dragged down (this Fixes #12 key fix).
- Channel whitelist + rate limiting: Prevent session event queue self-wait (Fixes #6 key fix).
- Plugin SDK boundary audit: reply payload sending hook must verify channel ownership (Changes #12 key extension).
- Policy check CI/CD-ized: policy comparison + ingress-channel conformance + sandbox-posture conformance (Changes #13 three-category checks).
- Release logs + artifact retention: failing lanes must produce proof (Highlights #8 release verification “failure provable”).
7. 4 Trend Predictions (2026 H2)
- Stable release rhythm stable: v2026.5.28 → v2026.6.x → v2026.7.x one stable version every 6 weeks (8/6 released v2026.7.1-2 + 385K Star confirms rhythm stable).
- Provider boundary expansion continues: Claude Opus 4.8 → 4.9 / Fal Krea Pro / NVIDIA NIM / MiniMax Lyria / encrypted PDF full coverage — model catalog upgrades from “tool set” to “ecosystem set”.
- Channel security enters “protocol layer”: Hosted Push Relay turns push into relay layer, Realtime Talk turns voice into protocol layer — channel security no longer just “patch”, but “protocol”.
- Plugin SDK ecosystem-ization: reply payload hook + flatten package types + Plugin SDK package management npm-ized — plugin ecosystem upgrades from “single file” to “SDK governance”.
FAQ (High-Frequency Questions Direct Answer)
Q1: What is the relationship between v2026.5.28 and v2026.3.23 emergency fix chain?
A: v2026.3.23 (7/20 article deep-dived) is OpenClaw 2026/3 “emergency fix chain”, fixing a group of RCE / CSP / OAuth proxy issues; v2026.5.28 is 2026/5 “stable version milestone”, adding 7 Highlights + 13 Changes + 17 Fixes on top of v2026.3.23. Relationship: v2026.3.23 = emergency fix, v2026.5.28 = stable sedimentation.
Q2: Why can v2026.5.28 install package shrink by 52.8%?
A: ① Dependency graph re-combing (remove redundant transitive dependencies); ② Externalize partial plugins (GitHub Copilot + Tokenjuice changed to on-demand install); ③ Compile product simplification (remove legacy polyfills). Total from 371 MB to 300 MB.
Q3: How to call Claude Opus 4.8 in v2026.5.28?
A: Directly call through Anthropic’s authentication and routing (Anthropic official auth + v2026.5.28 model catalog). When configuring provider in OpenClaw, select anthropic/claude-opus-4.8, same path as previous Claude Sonnet 4.5 / Opus 4.6.
Q4: What is Hosted Push Relay? Difference from iOS Push?
A: Hosted Push Relay is OpenClaw’s self-built push relay layer, turning push capability into “stable relay service” (similar to APNs but operated by OpenClaw official), solving iOS Push reachability issues in mainland China + overseas multi-region. Difference from iOS Push: ① Not dependent on APNs; ② Supports fallback; ③ Built-in retry + dead-letter recovery.
Q5: What are the risks of directly upgrading from v2026.4.x to v2026.5.28?
A: Main risk is schema upgrade data loss (v2026.5.28 introduces schema-upgrade data-loss rejection). Upgrade path: ① First backup verify; ② First upgrade to v2026.4.9 (includes Memory system compatibility layer); ③ Then upgrade to v2026.5.28. Direct skip-level upgrade may cause schema incompatibility.
Q6: What is the role of Codex Supervisor plugin?
A: Codex Supervisor is the plugin package newly added by OpenClaw v2026.5.28, used for delegated Codex workflows. Simple: ① Main Codex session monitoring; ② Sub Codex session delegated execution; ③ Failure auto-retry + reporting. Suitable for complex multi-step Codex tasks.
Key Terminology
- v2026.5.28 stable version: OpenClaw 2026/5/28 released, 5/31 Beijing time online “stable version” milestone, last stable version of 2026 H1.
- Agent runtime recovery: OpenClaw v2026.5.28 Highlights #1, involving subagent isolation / session lock / Codex app-server fault tolerance 6 improvements.
- Hosted Push Relay: OpenClaw v2026.5.28 Changes #4, turning push capability into stable relay layer, solving iOS Push reachability issues in mainland China + overseas multi-region.
- Realtime Talk: OpenClaw v2026.5.28 Changes #4 sub-item, evolving from text chat to real-time voice interaction, involving playback + permissions + chat transport.
- ClawPDF: OpenClaw v2026.5.28 Changes #6, unified PDF extraction tool, supports encrypted PDF (encrypted PDF extraction).
- Plugin SDK: OpenClaw v2026.5.28 Changes #12, adds reply payload sending hook + flatten package types, handing extension capability to developer ecosystem.
- Codex Supervisor: OpenClaw v2026.5.28 Changes #8, plugin package for delegated Codex workflows, supports main session monitoring + sub session delegated execution.
- MiniMax streaming music responses: OpenClaw v2026.5.28 Changes #7, streaming music reply capability through MiniMax API, landmark expansion of Provider boundary.
References
Official Documentation
- OpenClaw GitHub Releases v2026.5.28(2026/5/28 UTC)
- OpenClaw GitHub Releases v2026.5.28-beta.2(5/28 23:20)
- OpenClaw SourceForge v2026.5.28 file list(2026/5/30 uploaded)
- OpenClaw GitHub Releases v2026.6.3-alpha.1(2026/6/3 03:53)
Media Reports
- Tencent Cloud Developer Community “openclaw v2026.5.28 Released: Agent Recovery Steadier, Channel Security Comprehensively Enhanced, Mobile Refreshed, Provider Capability Expanded”(8/8 13:08, 2260 chars)
- jdon.com “OpenClaw v2026.5.28 Smaller and Faster, Supports Claude Opus 4.8”(5/28 15:09, first reported 3 key performance metrics)
- CSDN “OpenClaw 2026.5.28 Released”(5/31 reposted)
Historical Comparison
- 7/20 Article “OpenClaw v2026.3.23 Milestone Release Deep Dive”(v2026.3.23 emergency fix chain)
- 8/6 Article “OpenClaw v2026.7.1-2 + 385K GitHub Stars + 3.22M Weekly Downloads”(stable version after v2026.5.28)
- 7/12 Article “OpenClaw Security Black Hole: 3 RCE High-Risk CVEs”(17 stability items fixed in v2026.5.28)
This article is based on 7 independent sources cross-verified (Tencent Cloud Developer Community 8/8 13:08 + jdon.com 5/28 15:09 + SourceForge 5/30 + GitHub Releases v2026.5.28 / v2026.5.28-beta.2 / v2026.6.3-alpha.1 + CSDN 5/31 reposted). All data are annotated with sources; organized by Boao Intelligence team.
{
"@context": "https://schema.org",
"@type": "BlogPosting",
"headline": "OpenClaw v2026.5.28 Stable Release Deep Dive: Agent Runtime Recovery Hardening + 7 Channel Security Upgrades + Claude Opus 4.8 / MiniMax Music Streaming / 7 Provider Expansions",
"datePublished": "2026-08-08T13:00:00+08:00",
"dateModified": "2026-08-08T13:00:00+08:00",
"author": {
"@type": "Organization",
"name": "铂傲智能",
"url": "https://www.boaoai.cn/"
},
"publisher": {
"@type": "Organization",
"name": "铂傲智能",
"logo": {
"@type": "ImageObject",
"url": "https://www.boaoai.cn/images/logo.png"
}
},
"description": "On May 28, 2026, OpenClaw released v2026.5.28 stable version, with Tencent Cloud Developer Community publishing a 2260-char deep-dive systematic review on 8/8. This release covers Highlights / Changes / Fixes in three major categories: ① Agent + Codex runtime recovery hardening; ② 7 channel security hardening; ③ Provider expansion (Claude Opus 4.8 / Fal Krea / NVIDIA / MiniMax streaming music / encrypted PDF); ④ Mobile + WebChat experience refresh; ⑤ Performance optimization (cold start +14.5% / hot turn +16.0% / install package -52.8%).",
"keywords": "OpenClaw, v2026.5.28, Agent runtime recovery, channel security, Claude Opus 4.8, MiniMax music streaming, hosted push relay, Plugin SDK, ClawPDF, stable milestone"
}
{
"@context": "https://schema.org",
"@type": "BreadcrumbList",
"itemListElement": [
{
"@type": "ListItem",
"position": 1,
"name": "Home",
"item": "https://www.boaoai.cn/"
},
{
"@type": "ListItem",
"position": 2,
"name": "News",
"item": "https://www.boaoai.cn/news/"
},
{
"@type": "ListItem",
"position": 3,
"name": "OpenClaw v2026.5.28 Stable Release Deep Dive",
"item": "https://www.boaoai.cn/news/2026-08-08-openclaw-v2026-5-28-stable-release-deep-dive/"
}
]
}
{
"@context": "https://schema.org",
"@type": "FAQPage",
"mainEntity": [
{
"@type": "Question",
"name": "What is the relationship between v2026.5.28 and v2026.3.23 emergency fix chain?",
"acceptedAnswer": {
"@type": "Answer",
"text": "v2026.3.23 is OpenClaw 2026/3 'emergency fix chain', fixing a group of RCE / CSP / OAuth proxy issues; v2026.5.28 is 2026/5 'stable version milestone', adding 7 Highlights + 13 Changes + 17 Fixes on top of v2026.3.23. Relationship: v2026.3.23 = emergency fix, v2026.5.28 = stable sedimentation."
}
},
{
"@type": "Question",
"name": "Why can v2026.5.28 install package shrink by 52.8%?",
"acceptedAnswer": {
"@type": "Answer",
"text": "① Dependency graph re-combing (remove redundant transitive dependencies); ② Externalize partial plugins (GitHub Copilot + Tokenjuice changed to on-demand install); ③ Compile product simplification (remove legacy polyfills). Total from 371 MB to 300 MB."
}
},
{
"@type": "Question",
"name": "How to call Claude Opus 4.8 in v2026.5.28?",
"acceptedAnswer": {
"@type": "Answer",
"text": "Directly call through Anthropic's authentication and routing (Anthropic official auth + v2026.5.28 model catalog). When configuring provider in OpenClaw, select anthropic/claude-opus-4.8, same path as previous Claude Sonnet 4.5 / Opus 4.6."
}
},
{
"@type": "Question",
"name": "What is Hosted Push Relay? Difference from iOS Push?",
"acceptedAnswer": {
"@type": "Answer",
"text": "Hosted Push Relay is OpenClaw's self-built push relay layer, turning push capability into 'stable relay service' (similar to APNs but operated by OpenClaw official), solving iOS Push reachability issues in mainland China + overseas multi-region. Difference from iOS Push: ① Not dependent on APNs; ② Supports fallback; ③ Built-in retry + dead-letter recovery."
}
},
{
"@type": "Question",
"name": "What are the risks of directly upgrading from v2026.4.x to v2026.5.28?",
"acceptedAnswer": {
"@type": "Answer",
"text": "Main risk is schema upgrade data loss (v2026.5.28 introduces schema-upgrade data-loss rejection). Upgrade path: ① First backup verify; ② First upgrade to v2026.4.9 (includes Memory system compatibility layer); ③ Then upgrade to v2026.5.28. Direct skip-level upgrade may cause schema incompatibility."
}
},
{
"@type": "Question",
"name": "What is the role of Codex Supervisor plugin?",
"acceptedAnswer": {
"@type": "Answer",
"text": "Codex Supervisor is the plugin package newly added by OpenClaw v2026.5.28, used for delegated Codex workflows. Simple: ① Main Codex session monitoring; ② Sub Codex session delegated execution; ③ Failure auto-retry + reporting. Suitable for complex multi-step Codex tasks."
}
}
]
}