- Added multiple security fixes addressing CVE‑2026‑27586 through CVE‑2026‑27585, including TLS client auth and host/path matcher hardening.
- Introduced new features such as automatic Encrypted ClientHello key rotation, time‑rolling log options, server header customization, and OpenTelemetry auto‑export.
- Enhanced logging and proxy behavior (request/response body logging, Host header rewrite for HTTPS upstreams, SIGUSR1 reload support) along with numerous bug fixes and minor improvements.