2.79.2 (2026-08-22)
Bug Fixes
- api: confine browse-page session tokens and gate the SBOM (7f3fc6e)
- api: end browse-page session tokens when every session is logged out (4040773)
- attachments: collect cid references in one pass instead of scanning the HTML per attachment (9dd6b0c)
- deps: refresh dependencies (6e11a55)
- gmail: stop a killer history entry from looping forever and apply the text size limit on API accounts (cb6ca8a)
- imap: recover addresses when the ENVELOPE reports none (1e83178)
- mcp: advertise only the tools a credential can actually call (abeb137)
- mcp: carry the required cache hints on modern-era results (6dd70b9)
- mcp: close the defects a deep review found in the MCP surface (c3fc7ba)
- mcp: make connecting an agent a one-step operation (914dff5)
- mcp: make token restrictions work over MCP and tighten the OAuth edges (b1f1dc0)
- mcp: narrow the agent tool schemas, and let webSafeHtml skip inlined images (e381af0)
- mcp: offer three access levels when connecting an agent, and make its tokens findable (15e7bda)
- mcp: position MCP support as a labeled beta (a19a612)
- mcp: return web-safe bodies and infer the bound account (923bb25)
- mcp: serve the Model Context Protocol at /mcp as an opt-in beta (1907015)
- mcp: show the tool count wherever an mcp token is minted (a85d8f6)
- mcp: tell agents how to reply to and forward a message (a3f17ad)
- mcp: update the consent integration test for the access-level radio (f4b6b18)
- submit: stop a reply borrowing recipients it should not have (1032605)
- ui: count the MCP tools a bound token actually receives (5bbdee3)
- ui: explain the OAuth connector form on the MCP config page (b7db99a)
- ui: give MCP tokens their own access-level editor on the token form (308a217)
- ui: make the MCP pages vendor-neutral and the consent wording plain (f0f0e8e)
- ui: nest the MCP OAuth switch under the endpoint switch (bb619b4)
- ui: pick an account in the send-test dialog too (6dcdbb5)
- ui: pick an account instead of typing its id (11be805)
- ui: render the MCP client consent page as an authorization prompt (4626123)
- ui: separate the collapsible cards on the MCP config page (691f0d4)
- ui: show each app's client id in the OAuth2 apps listing (0cc36e0)
- ui: split the MCP connect tab into connection-method sub-tabs (ec632bd)
- ui: split the MCP page into Settings and Connect an agent tabs (301c7d0)
- ui: stack the agent generator fields in one column (9a1ab8e)
- windows: set CompanyName and ship a multi-size icon in the exe (33b7842)