2.0.0-alpha.2 (2026-03-26)
Bug Fixes
- add agent name validation to prevent arbitrary module imports (be094f7)
- add protection for arbitrary module imports (0019801), closes #4947
- Default to ClusterIP so GKE deployment isn't publicly exposed by default (27aed23)
- enforce allowed file extensions for GET requests in the builder API (68ece4e)
- Exclude compromised LiteLLM versions from dependencies pin to 1.82.6 (79ed953)
- gate builder endpoints behind web flag (584283e)
- Update eval extras to Vertex SDK package version with constrained LiteLLM upperbound (a86d0aa)