🆕 Changelog
Security
- Hardened manifest update validation by rejecting manifest updates that are missing a
sessionKeywhen apublicKeyis configured, preventing unauthorized or tampered manifest delivery. - Strengthened bundle ID validation by rejecting invalid
.bundle identifiers, ensuring more reliable app identity verification. - Restricted updater delete operations to the updater sandbox directory, reducing the risk of files outside the sandbox being affected.
🔗 Full Changelog: 8.51.22...8.51.23