Stable releases of August 28, 2026¶
Everything that shipped on the stable channel on August 28, 2026 — v2.9.7 through v2.9.18, newest first. v2.9.18 is what you install; the versions below it are how you get there.
Stable v2.9.18¶
- feat(sites): add one-click AI-scraper block preset to nginx directives
Stable v2.9.17¶
- feat(import): add reseller mapping to avoid duplicate resellers on re-import
Stable v2.9.16¶
- feat(packages): derive slice defaults from PHP worker count
- feat(extensions): add arm64 builds for git-deploy, malware-scanner, prestashop-toolkit
Stable v2.9.15¶
- fix(packages): stop tab switches from silently dropping form values
Stable v2.9.14¶
- feat(reseller): full package editor parity with admin, incl. extensions
Stable v2.9.13¶
- fix(extensions): reject path traversal in manifest backend.binary
Stable v2.9.12¶
- fix(extensions): select the right binary architecture on install/update
- docs: document Git Deploy, PrestaShop Toolkit and MCP Server extensions
- feat(mcp-server): add backup, FTP, mail, subdomain, extension and package tools
- fix(infra): correct TEST server IPs from dead .111 to .93/.99
Stable v2.9.11¶
- feat(panel): publish a fixed vulnerability-disclosure contact for enconf itself
- fix(security-advisor): show loading state on the external-query toggle
Stable v2.9.10¶
- refactor(security-advisor): drop the CRA "compliance dashboard" framing
Stable v2.9.9¶
- fix(nginx): /.well-known/ paths other than acme-challenge were 404ing
- fix(security-advisor): lead CRA view with the audience question, not bury it
Stable v2.9.8¶
- fix(wordpress): retrofit matched nested PHP locations, not just top-level
- feat(wordpress): self-heal the wp-admin/includes deny rules on agent start
Stable v2.9.7¶
- fix(mcp-server): audit logging never actually fired
- fix(dashboard): stop the What's New / status-cards row stretching to match heights
- fix(dashboard): stack SSL/Subscriptions/Disk cards beside What's New