- Security hardening: fixed SSO bypass, enforced passwordless policy, added TPM join method and hardware‑key support for agentless connections, and prevented deletion of AWS OIDC integrations used by external audit storage.
- Bug fixes: resolved memory leak in Access List pagination, roles‑filter regression, lingering access requests after expiry, DynamoDB audit event failures, Helm chart sessionRecording bug, and other stability issues.
- Feature enhancements: made podSecurityContext configurable, allowed extra updater volumes, enabled additional Kubernetes labels in Helm chart, added control over SSH config generation in Machine ID outputs, and improved AWS integration t...