v0.7.0
openclaw/wacliv0.7.0May 6, 2026by github-actions[bot]
AI Summary
A major release adding extensive features such as WhatsApp Channels support, webhooks, stickers, voice notes, message reactions, and history sync, alongside significant security hardening.
Key Highlights
- Added WhatsApp Channels support and webhook signatures
- Added sticker and voice note sending capabilities
- Added message reactions, edits, and quoted text replies
- Added history sync and contact import features
- Security hardening: capped media sizes and validated recipients
New Features
- WhatsApp Channels support
- Webhook signatures
- Sticker messages
- Voice notes
- Message reactions
- Message edits
- History sync
- Contact import
- Chat state commands
- Profile picture setting
- Quoted text replies
- Message list filters
- Presence commands
- Starred message filters
- Session store URI injection protection
Full Release Notes
## Changelog * f77044b67ad426b3acd2d8b922adffc28b8e363e bug: recover per media job so a panic no longer kills the worker (#176) * 9fff67cd3bec1b65079cc920584e6ce347c5777c build: add docs site deployment * b122dfefc9621b8511416f855042509a9ee4055e build: update go dependencies * 866e1b53cf07cbb704e9f0ce7b1b712cf5df4bd6 build: update pnpm metadata * d9fb4268672e640d9686eabe6825a3c527648770 build: update whatsmeow * 4517528d5757b78addf9bc8f4eab4d628e7e8bc0 ci: opt into Node 24 action runtime * 78794f97575fa06a1d402c5ee65452f6d78b2784 ci: sync the Homebrew tap on release * 5c245239784c597686fe679577452e50b755d949 ci: update GitHub actions to Node 24 runtime * 1b529708c7a79e2c3df1609a7c315b4d1791b524 enhance: log stack trace, event type, and counter when recovering sync panics (#178) * 108da989f7bd068b4bb9a70d7419bac849af9734 feat(cli): add NDJSON lifecycle events * b24bfc131559f318c9ca169874e779796f662fd2 feat(messages): add JSON export filters * f1cb39fe8aa76ce0e74d423017a07fef7111aed0 feat(send): add sticker messages * 352caa88d8289f8428cfe12f6f2caf91e1c952f5 feat(store): migrate historical LID rows to phone numbers * b0b7786bb8be1183003b63fcb663ef0638717f25 feat(sync): add webhook signatures * 2c9fe08dd82e0e2b3aaad26e2eea3f9437dbdc51 feat: add WhatsApp channels support * 4aa3ef3afcba35c6264df4aab5e16f4d2a8d3eee feat: add chat state commands * f6a94547d6eb0d6e0bcd2bf1b8649d23798f426e feat: add command safety controls * a2c78030f60b8ed3a4061fdc5170dd5ab62e2769 feat: add history coverage dry-run planning * af671e16a93bf18e5e579f65886e8a51cb86e5ab feat: add local store cleanup commands * dffcda4481dbc51d4213b61a2b772ac31a11c58e feat: add message list filters (#153) (thanks @draix) * de84bd2a687a67f84aba05c8c688e95a0c6ec858 feat: add opt-in message escape decoding * 120805d9d93d7cac985dbac8fdc936a588701d5c feat: add presence commands (#76) (thanks @redemerco) * d08620abf98cc2d79ef3dd4220ad6636caa9ea71 feat: add profile set-picture command * 782c29078c3a3b6a063b03b955289bddea1778b6 feat: add quoted text replies (#154) (thanks @draix) * 91d240a6583846367a2aa7315f2fab67f002a62c feat: add resilient message reactions * ed4df0bf3af3bfed725c61720d350504a013d10a feat: add send text link previews * 09b2efbcaaffe24e2c7cc8c39168baa45d0de126 feat: add send text mentions * da9134e6aead09e041859fcd99fe7d53d2569e0e feat: add sent message edit and delete * cd311e86c469c63c823f81b9cab1ec376c7041ff feat: add starred message filters * d0752dbc2ca0d73a3344ddf95ff0686a5557d543 feat: add voice note sending * ec608225f93f2fafb93c91080da2d4c056f67951 feat: enrich auth and doctor status (#149) * 7533e4bef9246b85d98591f6eeb1a17a876b3684 feat: expose forwarded message metadata * 403fda0fe76a38e2214130cf8dfedc5d559efccb feat: import system contacts * 1e8342fbe7befebd3e0edb02a0950b16333606ec feat: improve auth identity and recipient parsing * a3a620ac739e56ba7833ccfb310e96f4d034ff74 feat: parse WhatsApp Business message text (#79) (thanks @terry-li-hm) * 9856075b49f3856d7ed5a20f3ee75d8630bae776 feat: persist group community hierarchy * eabf8d6eec200bc8c9ab3290557a377e57de1134 feat: print raw auth QR payload * 56f9c26746720f834a95e15367bdd78eea600414 feat: resolve send recipients by name * 372e1fc257ff604621ab05c8d7bbd1be36671013 feat: show full message IDs in table output (#13) (thanks @rickhallett) * 70e5a20cff24d9250a0a5eb09483e2cd12ec6c2f feat: store structured reaction metadata * 31504a8110c46e22ff9076786c526aec5743bd83 feat: support delete-for-me tombstones * e2bebf6eedd9d246ded1b9b77433b372d6d970d5 feat: support phone pairing auth * 3ce15af17e5371047489dc8eb0bfea603a53b428 feat: support quoted file sends * 0826cd4aa1b90d6f8d3c72358aa26001c9ef6737 fix(cli): emit event errors under events mode * eaa7a1b97925d2efba26565f93c115938593620c fix(send): delegate sends during sync * 03e53644f941746b67384047b06f414835bded40 fix(send): store sent reactions locally * 1b464909caf715d3db8066fbc17621c0fb9d094b fix(sync): request app-state recovery on lthash mismatch * a59b960d1c722e6137961cda1c8d75543cbbab95 fix: add sync panic telemetry (#181) (thanks @shaun0927) * ff6334885f24da73bfeb8f40f8d4659469c2c656 fix: add windows lock implementation (#188) (thanks @dinakars777) * 4f45138ad245d7799864b9a676897195c158b85d fix: align docs home CTA heights * 40330f623b7fded63dfdf81c11144a55b2e41956 fix: allow media downloads to shared output dirs * e73dba0ecb11af2f2a5f8a3b1d199cd748b668fb fix: attribute LID group history senders (#19) (thanks @entropyy0) * 515cd43b9fbea376e425a348acbf8c44d00cb33f fix: avoid initial history sync during backfill * 12e8e1a934a2c08decdb008f674ac1c73b00e32a fix: bound media enqueue backpressure (#121) (thanks @jyothepro) * 6fac72ee4d472da8726dc21df9926bda3004ed71 fix: decrypt history sync reactions * 65c9be4e173b82ccf7b44f45170b604c79fc28b6 fix: detect FTS5 on existing databases after migration already applied * 3dfd4f98a799a1a3a99d779165053d1fea751a55 fix: detect existing FTS tables after reopen (#185) (thanks @iamhitarth) * 70f2afd470fd31354ca0aaf1c9c0f89a53373b64 fix: enable UseRetryMessageStore so retry-receipts are handled * 6076deba26e33a2946690d2cb9a06c58058fd44e fix: enforce private directory permissions * 999461ce0effc0134ad017f3645927d2b6ec769e fix: escape wildcard list queries * 7c42182505c343dbf52014067013f32173ed916a fix: guard WA client lazy initialization * b4ca2e35b0039e6597db3f372d12b24f90efcfe6 fix: include image metadata for sends * 4481fc8d61ad53adc2674489c951835d4061ffb6 fix: include mapped LID chats in message filters * 42eb6260d7e4ca186ba0049bd5a89fa53d8fc987 fix: keep media workers alive after panics (#179) (thanks @shaun0927) * ad1f47740b55dcc64e1ae932ef6798d1f763eb05 fix: keep send alive for retry receipts * 894bc5d1acdb080b8dbeaca380a375865d372cfc fix: keep sync idle timer on message events (#119) (thanks @jyothepro) * b2935c1eacb17829e1f664c73549d5d3d2741e6a fix: make message ordering deterministic * 95f2136887f92287807ad7c3291b17c3bc713fe6 fix: mark missing groups left on refresh * 21063d810a64154a634bbce25ecaa8fc15b3e653 fix: normalize identities and group left state * 3e17ff0ae2b728aefdba9a2d51eaf1831c7f0ac3 fix: normalize phone recipients with plus prefix (#74) (thanks @FrederickStempfle) * 4eaad5f85f34d22c192a1bf1945583f81b8d7b60 fix: persist retry messages (#186) (thanks @SimDamDev) * 3a633d5712491e2707bbf4334106c1b78120db58 fix: reject cgo-disabled cli builds * 787cfd599c8993803dc6ddcba74a9933472c1dda fix: resolve historical LID sender names * fca5b9613840993b0f6511cb36d25a712ef2ab62 fix: resolve live LID messages before storage * 66c6d41ff69d4d694a45d3ea3b9e95f352feef3e fix: resolve mapped LID chats in chat output * 87095bd48a5b9642d5d5226d92bade4ef9b8938e fix: resolve mapped chat aliases for message show * 716e7a8496379a3b695fc8e7b59b2a9a381cc7c3 fix: restrict sqlite database file permissions (#147) (thanks @draix) * 3031a34ff20ef8c6d8cf7c0696b7e9535aefcf29 fix: retry transient auth pairing drops * 3077e626a3d1311f2dd34e08c02a627d72769439 fix: send OGG audio with WhatsApp codec * a022c493990da73cc5693c0a3ba5fa5454bf016c fix: show display text in message context (#183) (thanks @fuleinist) * 6400f5d4a73f337eb91b56ffe624380ba4270419 fix: show rich message details * 02f98c3ed05021110cf3ae5a014c58bd61212cf7 fix: show stored sender names in messages * 9568cbfb427b69ed09d880304fe83b86e41b4dd9 fix: surface QR pairing failures * 0ce920839ec022b8ecde8aa65928313caa67f059 fix: surface doctor lock owner state (#105) (thanks @artemgetmann) * fa1c800e72f87479c6ddebf67b569da0646ddbc3 fix: use XDG state dir on Linux * 54d44b34fca51a112fc32e8b7e894f4950f34ed8 fix: validate message search media filters (#128) * f8ce9eedd1c65a61933c7669dfcc20658c0a1033 fix: warn on encrypted reaction decrypt failures * 2f294e2bb6fa28048587baae999e920c8836a676 fix: warn on rapid send commands * 259bcf22a800c089e9028179022ad688b8606342 messages context: prefer DisplayText over raw Text (issue #173) * cd98a9d46d480d8bb5c4c57dafe649780c9a21c3 refactor: centralize table output helpers * 86a43def24bb79c3f7a4c09b9c047de8745abc16 refactor: split WhatsApp message parsing * 3c8de4d9b137eafbc8d700cc83cd5b7569e70b3d refactor: split core store schema * a03b0e9ddad0faf8c136c143316aa9de9746225a refactor: split message output formatting * bd92cc49a76d1dc9c8c88c848e027021d5ad78c3 refactor: split store chat contact and group methods * 668d7e5762a97ddaffc5a099cc2e9a2edd7dc84e refactor: split sync event and idle loops * fae308a2b9bb63690e712babbc2b6a35042c9dd2 refactor: split whatsapp jid and session helpers * 83d89da3417ac91af5bd3b9e4d59ad483fa02f7d security: cap media transfer sizes * d410e9f76e8b9d763f05adebadcc2dbda0be3823 security: cap sync storage growth * ea4ca18438110d38e38de5f9479af4bdf1903387 security: reject '?' and '#' in StorePath for whatsmeow session store (#177) * 2c09f129c364836cd02ea14e99ad30f7693f46cf security: reject session store URI injection (#180) (thanks @shaun0927) * 318421d4158f1e01ccc8340f08a09bb6dcded48e security: validate phone recipients (#144)