# Changelog

What changed on the Roma MCP server, newest first. A client that connected before a change keeps the tool list it fetched; refresh the connector and start a new conversation to see new tools.

## 2026-09-30

- **A REST API** at `/api/v1`: the MCP server's operations over plain HTTP for Zapier, Make, n8n and scripts, with `POST /quick-add` and an OpenAPI document at `/api/v1/openapi.json`. [REST API](/developers/api).
- **API keys** beside OAuth: a person creates a `roma_` key under Settings, then Connections, and an agent without a browser sends it as a bearer token. Creating a new key replaces the old one; revocable at any time. [Authentication](/developers/authentication#api-keys).
- These developer docs. Every page is also Markdown (add `.md` to its address) and listed in [llms.txt](/llms.txt).
- The tool reference is generated from the server's live registration.

## 2026-09-23

- Writes made through MCP are recorded in the person's event log as their own actions, marked as coming through the connection. Before this they read as system activity.

## 2026-09-18

- `get_context` replaces `get_hub`. One call returns the person, today in their timezone, memory (read-only), projects, what is due, unsorted tasks, recent notes, collections with columns, automations with their last run and three days of activity.
- `create_project` and `update_project` are new.
- `update_task` accepts `projectId` to move a task; `null` moves it to unsorted.
- `list_automations`, `get_automation_runs` and `run_automation` are new.
- Every tool states all three of `readOnlyHint`, `destructiveHint` and `openWorldHint` explicitly, and carries a title.
- `update_task` retries once on a write conflict with a background pass, so an edit right after a create lands.

## 2026-09-04

- `list_tasks` and `list_notes` gain time windows (`createdAfter`, `updatedAfter`, `completedAfter` and their upper bounds) and a `sort` parameter.

## 2026-08-14

- `create_image_upload` is new: pre-signed slots for raw image bytes, for rows whose images come from a source without a stable URL.
- Row tools report every image that could not be ingested, per URL and with a reason.

## 2026-08-13

- Collections have full create, update and delete. The trash covers collections and rows.
- `list_deleted` and `restore_deleted` are new: every soft delete is now recoverable from a client.

## 2026-08-05

- Collections are on the server: `list_collections`, `get_collection_items`, `add_collection_items`, `update_collection_items`.

## 2026-06-29

- Notes and search: `search`, `get_note`, `list_notes`, `create_note`, `update_note`.
- Soft deletes: `delete_task`, `delete_note`.
- Every tool carries annotations and an output schema; results return both text and structured content.
- Tokens are verified locally; a rate limit of 60 requests a minute per token.

## 2026-06

- First release: tasks and projects over OAuth 2.1 at `https://api.roma.app/mcp`.
