What's Changed
- chore(deps): bump helm.sh/helm/v3 from 3.20.1 to 3.20.2 by @dependabot[bot] in #356
- fix: block @file argument injection to prevent arbitrary file reads by @gossion in #352
- fix: move az login and account-set to admin-only access level by @gossion in #353
- fix: move az fleet get-credentials to admin-only access level by @gossion in #354
- Add SafeSkill security badge (92/100 — Verified Safe) by @OyaAIProd in #357
- Chart: support setting podLabels by @audunsolemdal in #363
- fix: block credential-bearing commands in call_az handler by @gossion in #368
- fix(oauth): support external URL override for TLS-terminating proxy d… by @michaelalinks in #364
- fix(oauth): use ExternalURL in WWW-Authenticate header for TLS proxy deployments by @michaelalinks in #369
- feat: add On-Behalf-Of flow for browser-based MCP client support by @Michael-Wilson94 in #370
New Contributors
- @OyaAIProd made their first contribution in #357
- @audunsolemdal made their first contribution in #363
- @michaelalinks made their first contribution in #364
- @Michael-Wilson94 made their first contribution in #370
Full Changelog: v0.0.17...v0.0.18