# Woodpecker CI v3.17.0 — 3.17.0 - Product: Woodpecker CI (https://whatsnew.fyi/product/woodpecker-ci) - Vendor: Woodpecker - Date: 2026-07-31 - Version: v3.17.0 - Original notes: https://github.com/woodpecker-ci/woodpecker/releases/tag/v3.17.0 - Permalink: https://whatsnew.fyi/product/woodpecker-ci/releases/v3.17.0 What's New is an index, not a publisher: every entry below links to the vendor's own release notes, which are the authoritative source. Entries are labelled where they are hand-curated sample data, pre-releases, or drawn from a secondary source such as a developer blog. Reuse: the summaries, labels and curation here are © What's New. Quote freely with attribution and a link back; wholesale republication of the corpus is not permitted — terms: https://whatsnew.fyi/terms. The vendors' own release notes remain their publishers'. --- - **security** — Update module github.com/getkin/kin-openapi to v0.144.0 - **security** — Make grpc secret autogenerated - **security** — Gate Kubernetes nodeSelector backend step config behind agent config - **added** — WebUI: show runtime workflow errors - **added** — Add Docker backend AppArmor profile option - **changed** — Rework k8s utils to handle resource names and labels - **changed** — Make matrix axis permutation order deterministic - **added** — Add unix socket permission option to server - **added** — Add step type label to step-level Prometheus metrics - **changed** — Stamp trusted commit-branch and event pod labels - **changed** — Rename CI_COMMIT_PRERELEASE to CI_PIPELINE_RELEASE_PRE - **changed** — Rework pipeline data structure: Release and Tag - **fixed** — Guard DAG cycle check against filtered-out optional dependencies - **fixed** — All yaml unmarshalling should use maxDepth - **fixed** — Don't count step error as workflow runtime error - **fixed** — Do not allow 0 minute timeout - **fixed** — Fix pipeline queue default template data - **fixed** — Use toLabelValue instead of toDNSName in Kubernetes step label - **fixed** — ReFetch secrets on pipeline restart - **fixed** — Treat 404 on empty repos as empty pull request list in Forgejo ##### [3.17.0](https://github.com/woodpecker-ci/woodpecker/releases/tag/v3.17.0) - 2026-07-31 ###### ❤️ Thanks to all contributors! ❤️ @6543, @AnayGarodia, @DerRockWolf, @Kernald, @Komzpa, @OCram85, @TowyTowy, @cyphercodes, @glitch-ux, @healdropper, @ivanvc, @jleider, @kanywst, @nicolasbatistoni, @qwerty287, @rfinnie, @roian6, @xoxys, @youdie006, @zmully ###### 🔒 Security - Update module github.com/getkin/kin-openapi to v0.144.0 [SECURITY] [[#6896](https://github.com/woodpecker-ci/woodpecker/pull/6896)] - Make grpc secret autogenerated [[#6845](https://github.com/woodpecker-ci/woodpecker/pull/6845)] - Gate Kubernetes nodeSelector backend step config behind agent config [[#6809](https://github.com/woodpecker-ci/woodpecker/pull/6809)] ###### ✨ Features - WebUI: show runtime workflow errors [[#6577](https://github.com/woodpecker-ci/woodpecker/pull/6577)] ###### 📈 Enhancement - Add Docker backend AppArmor profile option [[#6909](https://github.com/woodpecker-ci/woodpecker/pull/6909)] - refactor: rework k8s utils to handle resource names and labels [[#6855](https://github.com/woodpecker-ci/woodpecker/pull/6855)] - Make matrix axis permutation order deterministic [[#6847](https://github.com/woodpecker-ci/woodpecker/pull/6847)] - feat(server): add unix socket permission option [[#6839](https://github.com/woodpecker-ci/woodpecker/pull/6839)] - Add step type label to step-level Prometheus metrics [[#6824](https://github.com/woodpecker-ci/woodpecker/pull/6824)] - Stamp trusted commit-branch and event pod labels [[#6802](https://github.com/woodpecker-ci/woodpecker/pull/6802)] - Rename CI_COMMIT_PRERELEASE to CI_PIPELINE_RELEASE_PRE [[#6794](https://github.com/woodpecker-ci/woodpecker/pull/6794)] - Rework pipeline data structure: Release & Tag [[#6774](https://github.com/woodpecker-ci/woodpecker/pull/6774)] ###### 🐛 Bug Fixes - fix(server): guard DAG cycle check against filtered-out optional dependencies [[#6915](https://github.com/woodpecker-ci/woodpecker/pull/6915)] - all yaml unmarshalling should use maxDepth [[#6911](https://github.com/woodpecker-ci/woodpecker/pull/6911)] - Don't count step error as workflow runtime error [[#6904](https://github.com/woodpecker-ci/woodpecker/pull/6904)] - Do not allow 0 minute timeout [[#6903](https://github.com/woodpecker-ci/woodpecker/pull/6903)] - Fix pipeline queue default template data [[#6906](https://github.com/woodpecker-ci/woodpecker/pull/6906)] - Use toLabelValue instead of toDNSName in Kubernetes step label [[#6890](https://github.com/woodpecker-ci/woodpecker/pull/6890)] - ReFetch secrets on pipeline restart [[#6857](https://github.com/woodpecker-ci/woodpecker/pull/6857)] - fix(forgejo): treat 404 on empty repos as empty pull request list [[#6872](https://github.com/woodpecker-ci/woodpecker/pull/6872)] - fix(github): resolve tag pagination loop in release hook [[#6870](https://github.com/woodpecker-ci/woodpecker/pull/6870)] - Fix CreatePipeline retry [[#6859](https://github.com/woodpecker-ci/woodpecker/pull/6859)] - WebUI: unregister scaffold Tab on unmount and stable Tab order [[#6842](https://github.com/woodpecker-ci/woodpecker/pull/6842)] - WebUI: Fixes three bugs around component unmount and reset in compositions [[#6843](https://github.com/woodpecker-ci/woodpecker/pull/6843)] - fix(server): heal users left on forge_id=0 with closed registration [[#6823](https://github.com/woodpecker-ci/woodpecker/pull/6823)] - Correct forge_id and org handling on user/repo [[#6820](https://github.com/woodpecker-ci/woodpecker/pull/6820)] ###### 🧪 Tests - Add `fuzz` target to make [[#6828](https://github.com/woodpecker-ci/woodpecker/pull/6828)] - Add mock for server scheduler [[#6848](https://github.com/woodpecker-ci/woodpecker/pull/6848)] ###### 📚 Documentation - Remove dependency overrides [[#6912](https://github.com/woodpecker-ci/woodpecker/pull/6912)] - Document CLI configuration [[#6899](https://github.com/woodpecker-ci/woodpecker/pull/6899)] - Update pnpm to v11.17.0 [[#6892](http _[Truncated at 4000 characters — full notes: https://github.com/woodpecker-ci/woodpecker/releases/tag/v3.17.0]_