- Patched numerous security issues including SSRF, reflected XSS, AQL injection, and multiple CVEs (2025‑70952, 2026‑33937, 2026‑22732) with expanded denylists and stricter ACL checks.
- Resolved various bugs such as layout import corruption, ASI refactoring failures, super‑user race condition, missing datasource fields, UI scrollbar styling, and email Unicode normalization.
- Updated dependencies (handlebars to 4.7.9) and CI workflow (replaced PAT with GitHub token) to enhance security and reliability.