- Restored ability to disable MFA for local users and added resource label configuration in the operator chart.
- Updated a dependency to address CVE‑2024‑53259 and fixed several bugs (proxy listener address, incorrect tsh warning, CockroachDB timeout, panic in login rule parser, Postgres permission error).
- Added multiple feature enhancements: trusted‑device status in Connect, expanded Kubernetes token audience, searchable session recordings, long‑running kube exec/port‑forward support, Jamf audit attribution, Entra ID nested groups, and re...