- Added ability to hide client scopes in the discovery endpoint, introduced a rate limiter for verification‑email updates, and enabled role‑based authorization for workflows.
- Fixed a wide range of bugs: attribute‑group persistence, user‑profile update errors, DEBUG port handling regression, FGAP permission regressions, LDAP username case issues, memory leaks in KeycloakSession handling, and various UI/API inc...