- Added Device Bound Session Credentials for application access cookies, improving protection against session hijacking and cookie theft (security).
- Enabled high DPI mode for Windows remote desktop sessions and introduced Sub‑CA support for Windows Desktop and Database client CAs (new features).
- Improved auth service performance for large MFA‑enabled app fleets, added clearer "client too old" errors for legacy agents, and fixed various resolution and resource‑usage issues (bugfixes and optimizations).