← Back to all sparks
Chamilo logo

Chamilo

EDTECH
Velocity2.5

LMS and EdTech platform: Chamilo

Chamilo tags a 3.0 beta while 2.0 is still in release candidate, with no notes explaining the jump.

lmsplatform-rewritesymfonyrelease-cadenceself-hostedsecurity-maintenance
Current state
Chamilo runs two lines in parallel and has just opened a third. The legacy 1.11 branch keeps taking security and bugfix releases — 1.11.40 in June on top of 1.11.38 — while the Symfony/Vue rewrite has been sitting at 2.0 RC3 since April. On 13 August a v3.0.0-beta.1 tag appeared carrying a single line of text and no changelog.
Where it's heading
The rewrite is the whole story, and its pacing has slipped: RC3 landed in April with the substance that would make 2.0 adoptable — LTI, ONLYOFFICE, restored plugins, a security sweep — and nothing has shipped on that line since. A 3.0 beta tag with no notes reads as either a renumbering of the rewrite or a new branch off it; the entries do not say which, and until release notes appear neither reading can be confirmed.
Prediction
The next informative signal is whether 3.0.0-beta.1 gets a changelog or a follow-up beta. Until then the reliable output remains 1.11 security releases, which have arrived roughly quarterly.

Recent moves

  1. 6d ago

    v3.0.0-beta.1

    A v3.0.0-beta.1 tag with a one-line body — 'Tagging 3.0.0 code - creating Beta 1' — and no release notes. It is the first movement on the rewrite since 2.0 RC3 in April, but nothing in the entry says what 3.0 contains or how it relates to the 2.0 candidate that never reached GA.

    View source ↗
  2. 1mo ago

    Chamilo 1.11.40: security and bugfix maintenance release

    A security and bugfix release on the legacy 1.11 branch, pointing at the external changelog for detail. It is the branch institutions are actually running while the rewrite stalls, and it keeps getting maintained on schedule.

    View source ↗
  3. 4mo ago

    Stop logging AI base-provider fallback events

    An internal change that stops logging AI base-provider fallback events. No user-visible effect; the entry body is scraped GitHub profile chrome rather than release content.

    View source ↗
  4. 4mo ago

    Bump tar dependency 7.5.3 to 7.5.6

    A Dependabot bump of the tar dependency. Routine supply-chain maintenance on the rewrite branch.

    View source ↗
  5. 4mo ago

    Chamilo 2.0 RC3: LTI provider, ONLYOFFICE, and plugin revival

    ⚡ SPARK

    The last substantive release on the rewrite before the line went quiet: LTI provider and client, ONLYOFFICE editing, H5P import, and the legacy plugin set restored on the new architecture, with an eval-based RCE path removed. Four months on it remains the high-water mark for what 2.0 can do.

    View source ↗
  6. 4mo ago

    Chamilo 1.11.38 patches critical security flaws, deprecates AICC

    A 1.11 security release fixing critical vulnerabilities, alongside Moodle export improvements and the deprecation of AICC support in learning paths. The Moodle export work recurs across this branch — migration compatibility is treated as a maintained feature, not a one-off.

    View source ↗