ESS Community Helm Chart 26.10.0 (2026-10-09)
Removed / Breaking Changes
-
serverNameis now required whenmatrixRTC.enabled=true, as the MatrixRTC Authorisation Service always runs as an application service.If
initSecretsis disabled,matrixRTC.appserviceRegistrationmust now be provided. (#1626)
Changed
-
Run the MatrixRTC Authorisation Service as an application service so that it can authenticate to Synapse on behalf of users, e.g. to manage their MSC4140 delayed leave events.
When Synapse is deployed by the chart, the registration is generated by
initSecretsand loaded by Synapse, which also gets themsc4502_enabledandmsc4512_enabledexperimental features.When Synapse is not deployed by the chart, the registration is also generated. Your homeserver must then load it, e.g. copied from the generated Secret. (#1626)
-
Upgrade Element Admin to v0.1.15.
Highlights:
- Bump base image
Full Changelogs:
(#1632)
-
Use specific minor version for Postgres container image. (#1634)
-
Use specific patch version for Valkey container image. (#1634)
-
Use specific patch version for HAProxy container image. (#1634)
-
Remove obsolete
feature_new_room_decoration_uisetting from Element Web. (#1639) -
Upgrade MatrixRTC SFU to v1.13.9.
Full Changelogs:
(#1641)
-
Route Synapse's
/auth_metadataendpoint to theclient-readerworker so that clients can refresh tokens while the main Synapse process is unavailable. (#1644) -
Upgrade MatrixRTC Authoriser to v0.8.0.
Highlights:
- Update the Client-Server and Server-Server
/get_tokenendpoints to the latest MSC4195 format, replacing thememberobject with a flatmember_idparameter - Remove the deprecated
delay_timeoutparameter from the Client-Server/delegate_delayed_leaveendpoint. The service now looks up the delay itself - Validate the OpenID response in the deprecated
/get_tokenand/sfu/getendpoints
Full Changelogs
(#1645)
- Update the Client-Server and Server-Server
Fixed
- Fix the Matrix RTC SFU's multiplexed UDP port being exposed as TCP when using
HostPort. (#1633)
Internal
- Introduce basic end-to-end playwright tests. (#1636, #1647, #1651, #1652, #1654)
- CI: Fix flakes when uploading media. (#1637)
- CI: Export
kubectl top podscommand result to exported logs. (#1640, #1642) - CI: Export the docker containers attached to the k3d network and their logs, and skip with a warning k3d steps if k3d is not running. (#1646)
- CI: Implement a hack workaround of
asyncio-cooperativehiding fixture errors. (#1650)