- Enhanced OAuth security with a fully server‑side flow, built‑in CSRF/state/PKCE protection, mandatory 2FA for provider logins and a toggleable modern flow setting.
- Added major features such as AI Search with semantic results, FIPS‑compliant mode, offline‑license flag, persistent audio player, alternative apps runtime, inline JSON validation, native Unicode emojis, and numerous new REST endpoints re...
- Fixed many race conditions and stability issues (login token races, Slack importer file handling, password‑policy limits, business‑hour and encryption key races), and deprecated the logoutCleanUp DDP method in favor of server‑side handling.