Skip to main content

v2.7.61

Released July 2026

Safer sign-in and browser sessions

Sign-in callbacks now clear sensitive URL details promptly, and browser security rules have been tightened to reduce the risk of injected scripts accessing account information. Tender and grant search updates now use a safer, bounded synchronization path. This keeps scheduled search refreshes reliable while reducing the chance that malformed requests disrupt indexing.

Transactional email and platform safeguards

Invitation emails now use the intended sender identity. Additional safeguards also improve how developer API traffic and workspace file requests are validated before processing. Payment-service requests now use the API version supported by the deployed Stripe SDK.