- Fixed two medium‑severity security issues: blocked dangerous LD_PRELOAD env vars in SFTP subcommands and prevented IP spoofing on proxies by enforcing the SSH protocol prefix
- Added new features including automatic database user provisioning for Redshift and MariaDB, dynamic credential reloading, and dynamic discovery matching for databases
- Implemented numerous bug fixes and improvements across tbot address selection, access‑request audit logging, operator reconciliation, Kubernetes audit events, UI session handling, and installer scripts